Chapter30 Network Admission Con trol
Create NAC Tab
30-2
Cisco Router and Security Device Manager 2.5 User’s Guide
OL-4015-12
The NAC configuration on the router is only one part of a complete NAC
implementation. Click Other Tasks in a NAC Implementation to learn the tasks
that must be performed on other devices in order to implement NAC.

Enable AAA Button

Authentication, authorization, and accounting (AAA) must be enabled on the
router before you can configure NAC. If AAA is not enabled, click the Enable
AAA button. If AAA has already been configured on the router, this button is not
displayed.

Launch NAC Wizard Button

Click this button to launch the NAC wizard. The wizard divides NAC
configuration into a series of screens in which you complete a si ngle
configuration task.

How Do I List

If you want to create a configuration that this wizard does not guide you through,
click the button next to this list. It lists other types of configurations that you
might want to perform. If you want to learn how to create one of the
configurations listed, choose the configuration and click Go.
Other Tasks in a NAC Implementation
A full NAC implementation includes the following configuration steps:
Step1 Install and configure the Cisco Trust Agent (CTA) software on network hosts.
This provides hosts with a posture agent capable of responding to EAPoUDP
queries by the router. See the links after these steps to obtain the CTA software
and learn how to install and configure it.
Step2 Install and configure an AAA authentication EAPoUDP server. This server must
be a Cisco Secure Access Control Server (ACS) using the RADIUS protocol. Cisco
Secure Access Control Server software version 3.3 is required. See the links after
these steps to learn more about installing and configuring ACS.