Preparation for NAC Controller Initialization
Figure 6-6 Layer 3 Out-Of-Band Management
Preparation for NAC Controller Initialization
Before starting the NAC Controller initialization:
•Setup a PC capable of SSH. PuTTY, an SSH client, can be used on a machine running Microsoft Windows for SSH. PuTTY can be downloaded from the following link: http://www.chiark.greenend.org.uk/~sgtatham/putty/download.html.
•Connect the PC to the NAC Controller Engine 10/100 port with the supplied cross‐over capable.
•Open an SSH session to the NAC Controller Engine. The default static private IP address is 169.254.1.1, so the PC must be configured appropriately with an IP address on the 169.254.0.0/16 subnet. The IP address 169.254.2.1 must not be used.
•For a Layer 3 NAC Controller, connect the downlink port into the network topology on the VLAN spanning the two routers where the NAC Controller will be deployed inline, but do not connect in the uplink port yet, so the NAC Controller has connection into the network but not placed inline with network traffic. Otherwise, make note of all MAC addresses associated to all directly connected router interfaces where the NAC Controller will be positioned.
Note: Should you need to reinitialize a NAC Controller that has already been initialized, perform a clear config all on the PEP to assure a default configuration when performing an initialization of the NAC Controller.