cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
800
Views
0
Helpful
1
Replies

Dot1x OPort Control & Quarantine VLAN

bradleyordner
Level 3
Level 3

Hi,

I was wondering if it is possible to use Dot1X Port Control on a Wireless Network.

What we would like is when a user trys to authenticate with PEAP-MSCHAPV2, if they pass they are allowed access to the WLAN. If they fail authentication they are moved to a Quarantine VLAN.

Is this possible with configuration, like dot1x port control on a switch or do we need a NAC Appliance?

Thanks in advance,

Brad

1 Reply 1

George Stefanick
VIP Alumni
VIP Alumni

Yes, you can do something like you proposed without NAC. The question is what you mean by "Quarantine". The user would just get dumped in a hole until his logon was corrected. He wouldnt get a "deny" screen or anything pretty ....

"Satisfaction does not come from knowing the solution, it comes from knowing why." - Rosalind Franklin
___________________________________________________________
Review Cisco Networking for a $25 gift card