cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
499
Views
4
Helpful
3
Replies

How can I add a field in Cisco ACS 3.3 with VLAN?

jorge.s
Level 1
Level 1

I'm trying to do Dynamic VLAN Assignment, could you describe what's the best way?

and if possible, how do I set the VLAN fiedl in ACS?

3 Replies 3

darpotter
Level 5
Level 5

In ACS group setup, use RADIUS attributes

64, Tunnel-Type = VLAN

65, Tunnel-Medium-Type = 802

81, Tunnel-Private-Group-Id =

Darran

and how do I do to use only Macaddress authentication?

Well it depends on whether your access device supports it.

Aironet APs support mac auth, where you put mac addresses instead of userids into ACS.

In NAC, to authenticate clientless endpoints, the switch/router has a feature called "mac auth bypass" where a pre-configured userid+password is sent to ACS along with the client mac address. ACS then applies NARs to filter on mac address.

Its a shame ACS doesnt have a true mac authentication feature.

So the answer really depends on your access device.