Hello everyone,
Are there any restriction on using non-managed switches with the NAC?
We have some offices with non-managed switches (TP-link), each switch is connected to a Cisco managed switch to an "access port", the cisco managed switch port configured with a " authentication host-mode multi-auth" to support multi device authenticating. and actually it works, I can connect 10 or more users to the non managed switch and they can all authenticate using Dot1X.
however sometimes I found that they can't connect smoothly and I have to restart the non-managed switch and may be restart the cisco switch port.
the question is: is the non-managed switch "officially" not supported or not recommended by the NAC solutions? if not, so what is the " authentication host-mode multi-auth" and "authentication host-mode multi-domain" configured on the switch port is used for? also the IP-phones has a built-in non managed switch that is connected to the co-exist PC, what is the difference between the IP phone non-managed switch and the TP link non managed switch?
Would there be any loss of features or increased vulnerability if non-managed switches are utilized with the NAC?
Thanks.