Configuring IEEE 802.1x Port-Based Authentication
Does any successfuly configuringed IEEE 802.1x Port-Based Authentication
(note it is not VLAN auth) with MS NPS(Radius)? Is there any documentation
on how to do it?
From Cisco documentatio..
Radius send to the switch vendor specific attributes with values that tell
the switch how to ACL the port (Port per-user access control lists). The
per-user ACL attributes are retrieved from the RADIUS server and are applied
for the duration of the user session. RADIUS supports per-user attributes,
including vendor-specific attributes. These vendor-specific attributes
(VSAs) are in octet-string format and are passed to the switch during the
authentication process. The VSAs used for per-user ACLs are inacl#<n> for
ingress direction and outacl#<n> for egress direction.....
|