07-18-2023 07:28 AM
We currently have some switches setup with all interfaces to go to a Radius server. We want to introduce a new Radius server, can we have different interfaces go to this new Radius server while leave some going to the current one?
The only way I was thinking it would work was to create two Radius groups and have the group applied to their specific interfaces? Not sure how that configuration would look but any suggestions?
07-18-2023 10:10 AM
- You cannot separate the authentication request on the basis of switchports on a switch. There is no such feature available on interface configuration , the typical AAA model and subsequent authentications based on radius apply to the whole switch ,
M.
07-18-2023 10:18 AM
You use ISE ?
07-18-2023 10:49 AM
you might want to consider a load balancer.
can you also share your config from switch to see how its configured ?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide