[c-nsp] 802.1x solution

Asbjorn Hojmark - Lists Lists at Hojmark.ORG
Wed Nov 9 14:01:54 EST 2005


> My client has built a network with some catalysts 2970 and 
> some APs 1130.
> Now, it's looking for a solution in order to increase
> "mobility" to its users. "Mobility" means not impotant where
> user's computer is connected - after 802.1x authorisation
> catalyst/ap gets "port autoconfiguration" (vlan acls etc)
> Does cisco have a product/solution like this?

Yes...

The 802.1x feature list is quite long on the 2970 and includes
VLAN assignment, per-user ACLs, guest and restricted VLAN etc.

However, you should plan on doing quite a lot of testing, as the
technology is still somewhat young. For example, guess what will
happen, if you use user-based VLAN assignment with Windows? Well,
even simple stuff like logon scripts will fail. There are tons of
other problems, including all the devices that simply don't do
802.1x.

-A




More information about the cisco-nsp mailing list