collapse

Search


User Info

 
 
Welcome, Guest. Please login or register.
Did you miss your activation email?

Author Topic: dot1x wired config  (Read 7666 times)

Offline Ted

  • Cisco Newbie
  • *
  • Posts: 10
  • Reputation: 0
  • Certification: CCNP
dot1x wired config
« on: April 02, 2014, 05:35:00 AM »
Hi All,

This is regarding ise dotx configs for a switch. If the switch is already being managed by ACS using tacacs for authorization is it possible to have the tacacs and radius working together for authorization?
ex-
aaa group server radius ISE_GROUP
server nme psn01
server name psn 02

aaa authorization network default group ISE_GROUP group tacacs+ local

Thanks
G

Offline MC

  • Global Moderator
  • Cisco Guru
  • *****
  • Posts: 391
  • Reputation: 606
  • CCIE x3 (RS,Sec,SP)
  • Certification: CCIE
Re: dot1x wired config
« Reply #1 on: April 02, 2014, 12:05:45 PM »
Authorization for device admin (eg. exec, command) is different from dot1x authorization (eg. network) so you would only use Tacacs for the former and RADIUS for the latter. So.. Yes.. They can co-exist.

 

Related Topics

  Subject / Started by Replies Last post
3 Replies
7950 Views
Last post June 19, 2015, 10:01:35 PM
by MC
8 Replies
15789 Views
Last post April 23, 2016, 08:59:15 AM
by gvoden
8 Replies
12703 Views
Last post August 31, 2016, 03:21:42 AM
by amsa
1 Replies
7381 Views
Last post September 11, 2016, 11:48:36 AM
by MC
1 Replies
8583 Views
Last post December 15, 2020, 02:06:56 AM
by JarvisDashiell

SimplePortal 2.3.7 © 2008-2022, SimplePortal