Hi All


Does anyone have a solution for integrating firewall with NAC so as to
allow policy to be enforced to username? I remember a beta phase with Palo
Alto where an Agent-ID could be integrated with an API to provide NAC with
username to IP mappings after which NAC can enforce username based policy.
I have a customer that would like to achieve the same using a Cisco
ASA5515x firewall. The customer is currently running 802.1x as
authentication method through NPS back to AD. A Cisco context directory
agent has been deployed and the ultimate requirement would be for the
agent and NAC to communicate user-to-IP-mappings.



Please advise if anyone’s aware of a solution or similar workaround.









Francois Scheün

Duxbury Networking
Specialist Networking Distributor
tel:        +27 (0) 11 351 9800
fax:       +27 (0) 11 646 3079
email:     <mailto:[email protected]> [email protected]
web:       <http://www.duxbury.co.za/> www.duxbury.co.za

 <https://www.facebook.com/duxburynetgear>
cid:[email protected]






---
To unsubscribe from enterasys, send email to [email protected] with the body: 
unsubscribe enterasys [email protected]

<<image001.jpg>>

Reply via email to