cancel
Showing results for 
Search instead for 
Did you mean: 

NAC authentication and mgmt authentication with the same radius servers

NAC authentication and mgmt authentication with the same radius servers

JohanHendrikx
Contributor II
In my test environment I have a switch (X440G2 22.7.1.2) configured for NAC with two radius servers.

In the AAA configuration I see two netlogin radius entry’s and the radius mgmt.-access is disabled and the policy works fine.

As expansion on the configuration I want also that management requests are done by the radius servers.
So I configure the same radius server as for authentication .

Now I see in the AAA configuration that the netlogin rules are replaced by mgmt.-access rules and that the radius netlogin is disabled.

Cann’t I use the same radius servers for mgmt. as for authentication?
Johan Hendrik System Architect Audax
1 ACCEPTED SOLUTION

JohanHendrikx
Contributor II
Ryan,

I will test it
Johan Hendrik System Architect Audax

View solution in original post

7 REPLIES 7

Ryan_Yacobucci
Extreme Employee
Hello Johan,

I'm not sure what you mean by config rules for netlogin.

Are you referring to XMC control rules that determine authorization levels?

Are you referring to switch configuration to enable netlogin for mac/802.1x auth on a per port or global basis?


Thanks
-Ryan

JohanHendrikx
Contributor II
When I change the auth Access type to any access, the only configuration rule are the radius mgmt-access rules .
radius mgmt-access and radius netlogin are enabled.
There are no config rules for netlogin.
Johan Hendrik System Architect Audax

Ryan_Yacobucci
Extreme Employee
Hello,

You can use the same RADIUS server fore mgmt and network authentication. You must set the Au

Make sure that the X440G2 is set to "Any Access":

5bc5befc98c645b5b4eb31f635b68323_194c928e-d0c2-4a96-a934-30fa6f793ed0.png

GTM-P2G8KFN