02-18-2021 09:14 PM
I have set up our X460 G2 switches with RADIUS login through our NAC. This works well however is it possible to also have the local accounts available? XMC uses a local account to login and if the NAC were to fail local account login we be needed. When I enable RADIUS mgmt-access the local accounts are no longer able to login.
We are running ver 30.7
Thank you,
Chris
Solved! Go to Solution.
02-18-2021 09:26 PM
I think when NAC is unavailable a local login is possible. Also when you are connected via serial it should be possible (maybe only after a few tries if I remember correctly).
Why does your XMC uses local switch accounts and no radius-account? (you could also create one local account in the NAC if you don’t want to use an AD-Account.)
02-18-2021 10:06 PM
Hello,
Stefan is right, in case the NAC (or another Radius server) is not reachable the local database is used for authentication. The RADIUS server take precedence over privileges configured in the local database.
02-18-2021 09:26 PM
I think when NAC is unavailable a local login is possible. Also when you are connected via serial it should be possible (maybe only after a few tries if I remember correctly).
Why does your XMC uses local switch accounts and no radius-account? (you could also create one local account in the NAC if you don’t want to use an AD-Account.)