ā09-28-2018 01:03 PM
ā07-12-2021 07:05 PM
Hi Tomasz,
Yes, your comment is accurate. But I also noticed in thread that the protocol auth order needed to change to MAC first, then dot1x? That part didnāt make too much sense to me.
Thanks,
ā07-12-2021 02:37 PM
Hi Chad,
If I understood the thread well, isnāt these two bundled together what you may need?
Hope that helps,
Tomasz
ā07-07-2021 08:39 PM
Interesting discussion. Thank you all for this.
in ERS, there is a fail open config:
https://extremeportal.force.com/ExtrArticleDetail?an=000086929
I was trying to find the same on EXOS and stumbled on this thread.
on exos 30.4, I guess the commands were removed:
configure netlogin authentication failure ā¦.
configure netlogin authentication service-unavailable ā¦.
I canāt find them. So I guess this thread is the only method to get something similar to ERS Failopen.
My only question here is that the protocol-order was changed to MAC firstā¦ Wouldnāt that mean that MAC auth would be preferred over DOT1X? Wouldnāt we need to keep order as DOT1X then MAC so that if user has 802.1X, then it uses DOT1X first; If not, MAC auth would kick in and use default policy?
Thanks for any clarification on what I missed.
ā10-08-2018 10:11 AM
ā10-08-2018 10:11 AM