07-31-2007 08:37 AM - edited 03-05-2019 05:36 PM
Hi. I want to buy a switch for ethernet workgroups with some security features:
- IEEE 802.1x with dinamic vlan;
- PEAP, EAP-TLS, EAP-TTLS;
- User's traffic profile;
- Guest vlan;
- Users can be assigned a VLAN upon authentication;
- Isolated vlan for workstation without security policies (Quarentine solution).
Is it good?
Sugestions?
Which switch?
Thks guy.
Paulo Maur?cio
07-31-2007 09:02 AM
Paulo,
All the Cisco enteprise level switches supports these features. You need Cisco ACS (AAA Server) to achieve all these fatures on the Cisco switches. For IBNS (Identity based network service) like 802.1x with dynamic vlan and guest vlan assignment, user vlan assignment on autehntication you need to configure 802.1x on switches with AAA along with the Cisco ACS.
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat2960/12225see/scg/sw8021x.htm
For Querntine Vlan, all the Cisco switches support NAC (network admission control) and you probably need a NAC server to filter out the user traffic.
http://www.cisco.com/en/US/partner/products/ps6128/index.html
HTH,Please rate if it does.
-amit singh
07-31-2007 10:15 AM
Thks Amit.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide