Additional data for Identity-Management from NAC's DHCP\Kerberos snooping - how it works?
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎05-25-2017 06:37 AM
Hello, everybody,
I've configured IM on Summits and send the data to Netsight. I get IP, MAC, sometimes hostnames and usernames. It works fine!
I've been told that if I connect NAC appliance to my Netsight and attach one of its interfaces to the network where DHCP works, I could have also Device Type and Operating System data.
I did, but there is no additional data received. From Netsight I see NAC as "green" device and it seems like everything is OK. But in NAC appliance I see the strange message: "Problems Detected (appliance cannot connect to management server".
How can I fix this? Is it related to absense of additional data in Netsight from IM?
Many thanks in advance,
Ilya
I've configured IM on Summits and send the data to Netsight. I get IP, MAC, sometimes hostnames and usernames. It works fine!
I've been told that if I connect NAC appliance to my Netsight and attach one of its interfaces to the network where DHCP works, I could have also Device Type and Operating System data.
I did, but there is no additional data received. From Netsight I see NAC as "green" device and it seems like everything is OK. But in NAC appliance I see the strange message: "Problems Detected (appliance cannot connect to management server".
How can I fix this? Is it related to absense of additional data in Netsight from IM?
Many thanks in advance,
Ilya
7 REPLIES 7
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎05-25-2017 07:59 AM
I've found one more possible reason for it doesn't work...
I deleted and added appliance again, but it didn't help...
I deleted and added appliance again, but it didn't help...
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎05-25-2017 07:27 AM
Hi Ilya
When you complete the installation wizard for NAC it asks for the IP address of NMS.
Did you correctly enter the NMS IP?
I would run nacconfig again and ensure that these are set correctly.
Also what interface did you connect to the vlan with the DHCP.
I have found that the best way would be to just add the NAC as an additional IP helper address on the vlan interface. This way not additional NAC interfaces is required.
Thx
Andre
When you complete the installation wizard for NAC it asks for the IP address of NMS.
Did you correctly enter the NMS IP?
I would run nacconfig again and ensure that these are set correctly.
Also what interface did you connect to the vlan with the DHCP.
I have found that the best way would be to just add the NAC as an additional IP helper address on the vlan interface. This way not additional NAC interfaces is required.
Thx
Andre
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎05-25-2017 07:27 AM
Hello, Andre!
Could you please explain that: "add the NAC as an additional IP helper address on the vlan interface."
At the moment I have just VLAN1 and one subnet 192.168.12.0/23... Both NAC and DHCP Server (WS 2012) are on the same subnet.
Please?
Could you please explain that: "add the NAC as an additional IP helper address on the vlan interface."
At the moment I have just VLAN1 and one subnet 192.168.12.0/23... Both NAC and DHCP Server (WS 2012) are on the same subnet.
Please?
