01-02-2015 11:20 AM
01-22-2015 08:58 AM
- is it possible that Enterasys NAC with Netsight also can switch VLAN on a ciso switch to bring a device with a new mac into a Isolation VLAN ??-> Yes see above
- i have a SSA 150 as a core device .. can i configure all the ciscos to act as dumb forwarding NAC Requests to this SSA and make there on the port also multiple Request with MAC Auth and 802.3 Auth and WEB Auth ? because the SSA 150 can have multiple Kind of authenthification on one port.i could connect every cisco Switch on one port of the ssa 150 and acctivate the multile Auth on this Port ... to use the Ciscos only as dumb forwarders... ( i this right ? )-> For MAC Authentication yes. You get a problem if you want to use IEEE 802.1X because in this case the EAPoL Protocol works just from Access Switch to Client and not between the SSA and the Client if there is another switch in between.
As I understood this feature of multiple policys on one port is only valid for Enterasys B-Series and above but would it work if a Cisco switch with 24 Ports will connect to one port of a SSA150 ?The SSA can assign more than 24 individual Policys per port -> so yes you can 🙂 B-Series is limited to 8 individual Authentications. It depends on the Switch type.