Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi CommunitySomeone know how to deploy Storm-Control Features in a SDA deployment? Just using CLI Templates?What about the feature Dynamic ARP Inspection? Just wondering how to deploy these features. Anything on the roadmap for newer DNA release? Kin...
Hi allSD-Access Fabric running with some Extended Nodes (C3560CX).Clients (Windows) complain about Duplicate IP Adresse. The weird thing is, that the reported MAC address is the MAC address from the Exteneded Nodes - Uplink Interface to the Edge Node...
Does anyone know how to implement this feature on the C9800 ?Need this for a PWLAN service where I have to source the radius request from the same interface as the clients are in...At the moment the only way I see is to create this SSID for every int...
Hi community I missing the feature "AAA source interface overwrite" in the new C9800.Anyone knows if this feature is coming? Or how can I work around this, if I need to point to a radius server with a different interface for a specific SSID? Any hint...
Hi If you have an IP-ACL on an SVI Interface today. How can I implement it into a SD-Access Fabric?I'm not meaning a micro segmentation. Just for example deny any icmp traffic for a specific device.No Firewall in front of the site. Do DACL does the j...
Hi DuNguyen1212
So for MAB, ISE is still in place, so you need 802.1x configuration on the switches for wired authentication.
What I did so far in my deployments, you can change the order for the closed authentication template.MAB first, then 802.1x....
4500-X are not supported devices.
For the 9300 did you ever stopped the LAN Automation? IS-IS configuration is done through the process of stopping the LAN Automation.
Just facing the same issue after upgrading the WLC to 17.6.3https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwb68720 Try the workaround mentioned in the bug notice:remove switchport authentication will avoid the issue
If it's a new deployment probably the new Lisp Pub/Sub with default dynamic Border is something to look at.If BGP Handoff is used the you need to have iBGP configured between the two Borders.If you're prefer to have a stack, keep in mind that the SW ...