11-01-2022 03:43 AM
Hi,
Is there any way, using the Catalyst 9800 WLC's to configure a critical access policy to enable clients that authenticate with 802.1X to access the network when the RADIUS server is down? On the wired, we can select this to place users in a certain VLAN or apply a certain ACL depending on the critical auth configuration.
Many thanks
11-01-2022 04:47 AM
>... 802.1X authentication does not work unless the network access device can
route packets to the configured authentication RADIUS server
It is better to consider this as a none-issue because usually at least two radius servers are configured and used for a WLAN.
M.
11-01-2022 05:25 AM
Thank you - so there is NO fallback for 802.1X. This is more around the capability, rather than the possibility of the RADIUS server going down.
An additional question - if we're not using 802.1X, but MAB with Layer 2 Filtering - is there a way to fall back to a locally configured list of devices if the RADIUS server is down?
Thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide