Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I am setting up a pilot group for wired 802.1x testing. I have it working correctly on a C2950 and C3550s. I am having trouble with the RADIUS failover on my CATOS C4006 series switches. When I disable the primary RADIUS Server to test failover, t...
Hi all. I hope this will be an easy one for you. I currently have AAA enabled on my switches and routers. The methods list is using the TACACS+ server first, then local as the failover. What I would like the switch to do is provide an alternate l...
I have two groups defined in my CiscoSecure ACS server. Network Admins are mapped to the Network Admins NT group with no NARs. Information Protection is mapped to the NT group Information Protection with limited access to a few network devices usin...
Senerio:We have on site contractors that are trying to use a VPN to establish a connection to their HQ through our guest network. The contractors on our site are at site B and our internet router is at site A?the two site Guest Network is connected ...
Hi all,I currently have in place wired Dot1x on an IOS switch. I have the following method list configured.AAA new-modelAAA group server radius radserv Server XX.XX.XX.XXAAA authentication dot1x default group radserv noneAs I understand it, this con...
I just wanted to follow up, as I have found the resolution. I was surpised that TAC did not have the answer either.I entered the command:set feature dot1x-radius-keepalive enableEverything works great now. Thanks for the ideas.
No dice. This is message I received:C4K> (enable) set dot1x radius-keep-alive enableUnknown command "set dot1x radius-keep-alive". Use 'set dot1x help' for more ino.Here are my options:C4K> (enable) set dot1x ? max-req quiet-pe...