Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 278
  • Last Modified:

CISCO ACS-802.1x Question

Do any of you RADIUS experts out there know the best way to configure a group in Cisco Secure ACS that ONLY has rights to login via 802.1x/PEAP on access points? I thought that you would enforce a specific port-type but that attribute is nowhere to be found in ACS. Basically how is PEAP/802.1x login access separated from SSH/Telnet/Enable administrative access in most environments?
0
imreble1
Asked:
imreble1
  • 3
  • 2
1 Solution
 
mikebernhardtCommented:
I use Windows IAS and it supports a NAS-Port-Type of 802.11. If you can find it, that's what you want.
0
 
imreble1Author Commented:
If i can find it?? Do you know off hand where it is?

Thanks in Advance

RDC
0
 
mikebernhardtCommented:
I don't know Secure ACS unfortunately, but I know RADIUS. It would be the type of client or device that is sending the authentication request (the NAS). Keep in mind that it will be 802.11, not 802.1x.
0
 
imreble1Author Commented:
I will award half the points to you since you couldnt provide the specific answer but lead me in the right direction.

Thanks again
Dustin
0
 
mikebernhardtCommented:
I'm not sure you can do that. But you can just lower the grade from "A" to "B" or something. Did you solve the problem?
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

  • 3
  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now