cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
767
Views
0
Helpful
1
Replies

Disabling NAC from 802.1x wired access authentication

l.buschi
Level 2
Level 2

Hi all,

I would like to disable NAC policy control from my ACS 4.0.

I would like only 802.1x AAA on my switch ports.

Also I'd like to assign a different VLAN to different MAB devices by RADIUS user attribute, in order to differentiate vlan for printers, clocks and so on.

can anybody help me or suggest me a document for ACS 4.0?

Thanks

Johnny

1 Reply 1

Bernardo Gaspar
Cisco Employee
Cisco Employee

Hello,

I would like to disable NAC policy control from my ACS 4.0.

I would like only 802.1x AAA on my switch ports.

Not sure what you mean by this... Can you egive more details about it?

Also I'd like to assign a different VLAN to different MAB devices by RADIUS user attribute, in order to differentiate vlan for printers, clocks and so on.

For this, you can separate the different devices per user groups, ie have one group for the printers, another for clocks, etc.

Then you can configure each group with the needed RADIUS attributes to do vlan assignment:

- 64 Tunnel-Type => VLAN

- 65 Tunnel-Medium-Type => 802

- 81 Tunnel-Private-Group-ID => "Vlan number"

I hope this helps.

Best regards,

Bernardo