04-28-2020 03:50 AM
I tried to apply low impact mode on wired non-domain devices but connected to my network how to authenticate them?
And if I apply the ACL on the switch on these devices is it enough or not?
Solved! Go to Solution.
04-28-2020 05:36 PM
This question is quite broad and general, but if the endpoint does not support 802.1x you would typically have a MAB 'fall-through' authentication policy (Internal Endpoints with the 'If user not found = CONTINUE' option).
You would then have an authorisation policy that uses either Profiling conditions or statically assign the MAC addresses to an Endpoint Identity Group and use that as a matching condition.
See the Secure Wired Access Prescriptive Deployment Guide for more information.
04-28-2020 05:36 PM
This question is quite broad and general, but if the endpoint does not support 802.1x you would typically have a MAB 'fall-through' authentication policy (Internal Endpoints with the 'If user not found = CONTINUE' option).
You would then have an authorisation policy that uses either Profiling conditions or statically assign the MAC addresses to an Endpoint Identity Group and use that as a matching condition.
See the Secure Wired Access Prescriptive Deployment Guide for more information.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide