05-11-2018 11:09 AM
I have a customer that manages a highly secure network and they are now being asked to implement dot1x on switches that are providing network access to their servers. The switches that they use are 3100 series Nexus switches.
I checked the latest compatibility matrix for ISE and those switches are not listed. The NX-OS documentation does indicate that there is some support for dot1x but I saw no references that would indicate support for CoA:
So, here are my questions:
Thank you!
Neno
Solved! Go to Solution.
05-11-2018 02:39 PM
No first hand experience. However, looks like you shouldn’t have a problem with 802.1x https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus3000/sw/security/7x/b_Cisco_n3k_Security_Config_7x/b_Cisco_n3k_Security_Config_7x_chapter_010000.html I would not have any expectation that these switches support CoA.
Regarding your question on a better or different approach, you’d have to provide more details in order to get relevant responses.
George
05-11-2018 12:19 PM
I moved this from Identity Services Engine (ISE) to Data Center as the inquiries are specific to NX-OS.
Network Infrastructure at SalesConnect has a Customer Facing Content on Nexus 9000 Greensboro - NX-OS 7.0(3)I7(1) Release TDM Deck, which has a couple of slides showing 802.1X configuration, but nothing on RADIUS CoA. Anything further, please check with the NX-OS support teams.
05-11-2018 02:39 PM
No first hand experience. However, looks like you shouldn’t have a problem with 802.1x https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus3000/sw/security/7x/b_Cisco_n3k_Security_Config_7x/b_Cisco_n3k_Security_Config_7x_chapter_010000.html I would not have any expectation that these switches support CoA.
Regarding your question on a better or different approach, you’d have to provide more details in order to get relevant responses.
George
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide