collapse

Search


User Info

 
 
Welcome, Guest. Please login or register.
Did you miss your activation email?

Author Topic: dot1x wired config  (Read 9899 times)

Offline Ted

  • Cisco Newbie
  • *
  • Posts: 10
  • Reputation: 0
  • Certification: CCNP
dot1x wired config
« on: April 02, 2014, 05:35:00 AM »
Hi All,

This is regarding ise dotx configs for a switch. If the switch is already being managed by ACS using tacacs for authorization is it possible to have the tacacs and radius working together for authorization?
ex-
aaa group server radius ISE_GROUP
server nme psn01
server name psn 02

aaa authorization network default group ISE_GROUP group tacacs+ local

Thanks
G

Offline MC

  • Global Moderator
  • Cisco Guru
  • *****
  • Posts: 400
  • Reputation: 606
  • CCIE x3 (RS,Sec,SP)
  • Certification: CCIE
Re: dot1x wired config
« Reply #1 on: April 02, 2014, 12:05:45 PM »
Authorization for device admin (eg. exec, command) is different from dot1x authorization (eg. network) so you would only use Tacacs for the former and RADIUS for the latter. So.. Yes.. They can co-exist.

 

Related Topics

  Subject / Started by Replies Last post
3 Replies
10322 Views
Last post June 19, 2015, 10:01:35 PM
by MC
8 Replies
19615 Views
Last post April 23, 2016, 08:59:15 AM
by gvoden
8 Replies
17480 Views
Last post August 31, 2016, 03:21:42 AM
by amsa
1 Replies
9774 Views
Last post September 11, 2016, 11:48:36 AM
by MC
1 Replies
13224 Views
Last post December 15, 2020, 02:06:56 AM
by JarvisDashiell

SimplePortal 2.3.7 © 2008-2024, SimplePortal