<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic RE: NAC - VSP/ERS switch management using LDAP credentials in ExtremeSwitching (VSP/Fabric Engine)</title>
    <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8777#M358</link>
    <description>Hi,&lt;BR /&gt;
I guess the RADIUS server has to send back the RADIUS Attribute "Filter-ID" with the following information (for Enterasys switches):&lt;BR /&gt;
Enterasys:version=1:mgmt=su:Detailed information may be availabe if you search for "filter-id" in the knowledge base (i.e.:&lt;BR /&gt;
&lt;A href="https://gtacknowledge.extremenetworks.com/articles/Q_A/What-filter-id-is-required-for-administrative-login/?q=filter-id&amp;amp;#38;l=en_US&amp;amp;#38;fs=Search&amp;amp;#38;pn=1" target="_blank" rel="nofollow noreferrer noopener"&gt;https://gtacknowledge.extremenetworks.com/articles/Q_A/What-filter-id-is-required-for-administrative...&lt;/A&gt;&lt;BR /&gt;
&lt;BR /&gt;
Hope this will be helpful.&lt;BR /&gt;
Regards,&lt;BR /&gt;
Axel&lt;BR /&gt;</description>
    <pubDate>Mon, 11 Jun 2018 19:42:00 GMT</pubDate>
    <dc:creator>ar1</dc:creator>
    <dc:date>2018-06-11T19:42:00Z</dc:date>
    <item>
      <title>NAC - VSP/ERS switch management using LDAP credentials</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8772#M353</link>
      <description>I am trying to use NAC to allow switch management access (SSH/Telnet/Web) for an LDAP group. &lt;BR /&gt;
Currently the VSP/ERS switches have been added to XMC NAC and I am able to backup configs, use scripts, etc. I am also able to assign VLANs to the ports via LDAP authentication.&lt;BR /&gt;
Does anyone have instructions on how to configure NAC Policy to send the correct values to the VSP/ERS switches to allow management access?</description>
      <pubDate>Mon, 11 Jun 2018 19:07:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8772#M353</guid>
      <dc:creator>Jay6</dc:creator>
      <dc:date>2018-06-11T19:07:00Z</dc:date>
    </item>
    <item>
      <title>RE: NAC - VSP/ERS switch management using LDAP credentials</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8773#M354</link>
      <description>Hello James,&lt;BR /&gt;
&lt;BR /&gt;
Give this article a shot: &lt;BR /&gt;
&lt;BR /&gt;
&lt;A href="https://gtacknowledge.extremenetworks.com/articles/How_To/allowing-mangement-access-to-Avaya-switches-via-NAC-access-control-setup" target="_blank" rel="nofollow noreferrer noopener"&gt;https://gtacknowledge.extremenetworks.com/articles/How_To/allowing-mangement-access-to-Avaya-switche...&lt;/A&gt;&lt;BR /&gt;
&lt;BR /&gt;
:edit: you'll need to create a rule with an LDAP user group criteria, but this article details the AVP that should work for management login :edit:&lt;BR /&gt;
&lt;BR /&gt;
Thanks&lt;BR /&gt;
-Ryan</description>
      <pubDate>Mon, 11 Jun 2018 19:37:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8773#M354</guid>
      <dc:creator>Ryan_Yacobucci</dc:creator>
      <dc:date>2018-06-11T19:37:00Z</dc:date>
    </item>
    <item>
      <title>RE: NAC - VSP/ERS switch management using LDAP credentials</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8774#M355</link>
      <description>Ryan,&lt;BR /&gt;
Thank you. This is what I was looking for.&lt;BR /&gt;
Is there a way we can append an article to add the VSP/ERS RADIUS commands?</description>
      <pubDate>Mon, 11 Jun 2018 19:37:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8774#M355</guid>
      <dc:creator>Jay6</dc:creator>
      <dc:date>2018-06-11T19:37:00Z</dc:date>
    </item>
    <item>
      <title>RE: NAC - VSP/ERS switch management using LDAP credentials</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8775#M356</link>
      <description>Hello James,&lt;BR /&gt;
&lt;BR /&gt;
It can be appended, do you have a working configuration I can use to add content to the article?&lt;BR /&gt;
&lt;BR /&gt;
Thanks&lt;BR /&gt;
-Ryan</description>
      <pubDate>Mon, 11 Jun 2018 19:37:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8775#M356</guid>
      <dc:creator>Ryan_Yacobucci</dc:creator>
      <dc:date>2018-06-11T19:37:00Z</dc:date>
    </item>
    <item>
      <title>RE: NAC - VSP/ERS switch management using LDAP credentials</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8776#M357</link>
      <description>Yes, Below are the commands for VSP8284 v7.0.&lt;BR /&gt;
enable&lt;BR /&gt;
config terminal&lt;BR /&gt;
radius server host &lt;NAC ip=""&gt; key &lt;SHARED secret=""&gt; used-by cli enable&lt;BR /&gt;
(optional) radius reachability mode status-server&lt;BR /&gt;
radius enable&lt;BR /&gt;
&lt;BR /&gt;&lt;/SHARED&gt;&lt;/NAC&gt;</description>
      <pubDate>Mon, 11 Jun 2018 19:37:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8776#M357</guid>
      <dc:creator>Jay6</dc:creator>
      <dc:date>2018-06-11T19:37:00Z</dc:date>
    </item>
    <item>
      <title>RE: NAC - VSP/ERS switch management using LDAP credentials</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8777#M358</link>
      <description>Hi,&lt;BR /&gt;
I guess the RADIUS server has to send back the RADIUS Attribute "Filter-ID" with the following information (for Enterasys switches):&lt;BR /&gt;
Enterasys:version=1:mgmt=su:Detailed information may be availabe if you search for "filter-id" in the knowledge base (i.e.:&lt;BR /&gt;
&lt;A href="https://gtacknowledge.extremenetworks.com/articles/Q_A/What-filter-id-is-required-for-administrative-login/?q=filter-id&amp;amp;#38;l=en_US&amp;amp;#38;fs=Search&amp;amp;#38;pn=1" target="_blank" rel="nofollow noreferrer noopener"&gt;https://gtacknowledge.extremenetworks.com/articles/Q_A/What-filter-id-is-required-for-administrative...&lt;/A&gt;&lt;BR /&gt;
&lt;BR /&gt;
Hope this will be helpful.&lt;BR /&gt;
Regards,&lt;BR /&gt;
Axel&lt;BR /&gt;</description>
      <pubDate>Mon, 11 Jun 2018 19:42:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-vsp-fabric/nac-vsp-ers-switch-management-using-ldap-credentials/m-p/8777#M358</guid>
      <dc:creator>ar1</dc:creator>
      <dc:date>2018-06-11T19:42:00Z</dc:date>
    </item>
  </channel>
</rss>

