cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
432
Views
0
Helpful
2
Replies

Placing clients in untrusted after log off of AS SSO

sganpat
Level 1
Level 1

I have a L3 OOB NAC deployment with AD SSO. Users are mapped to different roles depending on OU membership and then to different VLANs. What happens is that if a user with a certain role logs on to a client and is palced in his VLAN, say VLAN10, and then logs off the PC, the PC stays in VLAN10.

Another user from a different role now comes along and logs onto that same PC stays in that same VLAN, but really needs to move to another VLAN because he/she has a different role.

If the system is rebooted then everything works fine as the SNMP linkdown trap is sent to the NAM.

How can I cause the clients using AD SSO change the role of the port to unauthenticated when they log off the system? I know that this can work with in-band but i don't know if it can be done with OOB.

1 Accepted Solution

Accepted Solutions

Faisal Sehbai
Level 7
Level 7

Sachin,

OOB Logoff feature is coming in 4.8, due out in late summer. Currently what you're looking to do can't be done.

HTH,

Faisal

View solution in original post

2 Replies 2

Faisal Sehbai
Level 7
Level 7

Sachin,

OOB Logoff feature is coming in 4.8, due out in late summer. Currently what you're looking to do can't be done.

HTH,

Faisal

Thanks for the info. I'll look out for that.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: