beautypg.com

3 deployment of the network infrastructure – IBM Tivoli and Cisco User Manual

Page 309

background image

Chapter 7. Network enforcement subsystem implementation

291

12.For this scenario, we selected the Quarantine_L2IP_RAC and

Quarantine_ACL as the Shared RAC and Downloadable ACL to be applied in
case a condition is not defined or there is no matched condition (Figure 7-69).

Figure 7-69 Completed L2IP Authorization rules

13.Click Submit.

14.Click Apply and Restart.

This concludes the changes that needed to be made to the previous section to
configure the ACS for a NAC deployment using L2IP or L3

without

IEEE 802.1x.

7.1.3 Deployment of the network infrastructure

In this section we describe how to configure the Cisco Catalyst 3750 switch
acting as the NAD for both NAC L2 802.1x and NAC L2 IP implementations, and
a Cisco IOS router for NAC L3 IP implementation.