cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
569
Views
0
Helpful
2
Replies

Switch interface configuration for ISE dot1x while the windows 7 endpoint in VM

netquestfun
Level 1
Level 1

Hi Expertz,

I have my ISE and windows 7 endpoint deployed in the same ESXI server, and both are connected to a same switch in the same subnet. The Server connects to switch ports (g1/0/10 and g1/0/11). So now, Which switch port should i configure dot1x commands to test wired dot.x access for this windows 7 endpoint. When i configured dot1x commands on g1/0/10 and/or g1/0/11, ports go down and i lose access to ESXI server. Pls suggest

Thanks,
Raj

1 Accepted Solution

Accepted Solutions

Jason Kunst
Cisco Employee
Cisco Employee

Just to keep things simple you should make sure you have a separate network for your window client.

They should be on separate VLANs.

You would map your windows VM through a dedicated NIC to your switch port and map physical status through to your client. The switch port that is directly mapped would be the only port you would configure dot1 on.

Make sure you are connecting to your ESXI host and VM using the console (not an RDP session as it would be dropped). This connection would be on a different network or switch port so that you don’t take down connectivity

View solution in original post

2 Replies 2

Jason Kunst
Cisco Employee
Cisco Employee

Just to keep things simple you should make sure you have a separate network for your window client.

They should be on separate VLANs.

You would map your windows VM through a dedicated NIC to your switch port and map physical status through to your client. The switch port that is directly mapped would be the only port you would configure dot1 on.

Make sure you are connecting to your ESXI host and VM using the console (not an RDP session as it would be dropped). This connection would be on a different network or switch port so that you don’t take down connectivity

paul
Level 10
Level 10

If you are using open mode with no PreAuth ACL you shouldn't lose any connectivity and be able to test whatever you want. 

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: