collapse

Search


User Info

 
 
Welcome, Guest. Please login or register.
Did you miss your activation email?

Author Topic: dot1x wired config  (Read 9669 times)

Offline Ted

  • Cisco Newbie
  • *
  • Posts: 10
  • Reputation: 0
  • Certification: CCNP
dot1x wired config
« on: April 02, 2014, 05:35:00 AM »
Hi All,

This is regarding ise dotx configs for a switch. If the switch is already being managed by ACS using tacacs for authorization is it possible to have the tacacs and radius working together for authorization?
ex-
aaa group server radius ISE_GROUP
server nme psn01
server name psn 02

aaa authorization network default group ISE_GROUP group tacacs+ local

Thanks
G

Offline MC

  • Global Moderator
  • Cisco Guru
  • *****
  • Posts: 400
  • Reputation: 606
  • CCIE x3 (RS,Sec,SP)
  • Certification: CCIE
Re: dot1x wired config
« Reply #1 on: April 02, 2014, 12:05:45 PM »
Authorization for device admin (eg. exec, command) is different from dot1x authorization (eg. network) so you would only use Tacacs for the former and RADIUS for the latter. So.. Yes.. They can co-exist.

 

Related Topics

  Subject / Started by Replies Last post
3 Replies
10004 Views
Last post June 19, 2015, 10:01:35 PM
by MC
8 Replies
19306 Views
Last post April 23, 2016, 08:59:15 AM
by gvoden
8 Replies
16706 Views
Last post August 31, 2016, 03:21:42 AM
by amsa
1 Replies
9438 Views
Last post September 11, 2016, 11:48:36 AM
by MC
1 Replies
12655 Views
Last post December 15, 2020, 02:06:56 AM
by JarvisDashiell

SimplePortal 2.3.7 © 2008-2024, SimplePortal