C H A P T E R 7

Integrating with Cisco NAC Appliance

This chapter describes the following:

Adding Clean Access Manager Entries

Editing Clean Access Manager Entries

Deleting Clean Access Manager Entries

Configuring the CAM for Reporting

Guest users commonly authenticate to networks via a captive portal through which they provide their authentication details using a web browser. Cisco NAC Appliance provides a secure guest user access portal which administrators can customize.

The Cisco NAC Guest Server integrates with the Clean Access Manager through the use of the Cisco NAC Appliance API. This is an HTTPS-based API that requires the Guest Server to communicate with the Clean Access Manager, also known as the Clean Access Manager (CAM).

Note Refer to the “API Support” section of the applicable Cisco NAC Appliance - Clean Access Manager Installation and Configuration Guide for details on the Cisco NAC Appliance API.

The Cisco NAC Guest Server creates the guest user accounts on the CAM as Local User accounts assigned to a specific role that you define for guest users. The Guest Server creates new accounts that are valid every minute. Every minute it also removes accounts that have expired. When accounts are suspended, the Guest Server removes both the accounts from the CAM and the guest users from the network if they are logged in.

The Clean Access Manager can also send accounting information to the Cisco NAC Guest Server via RADIUS accounting. This information is used for reporting and tracking of guests by access time and IP address.

You may add multiple Clean Access Managers to the Cisco NAC Guest Server. When accounts are provisioned they are created on all active Clean Access Managers that are defined.

Adding Clean Access Manager Entries

The following steps describe how to configure the Cisco NAC Guest Server and Cisco NAC Appliance Manager so that they can communicate with one another. You must add API information to the Cisco NAC Guest Server for each Clean Access Manager on which you want the Guest Server to create accounts.

Cisco NAC Guest Server Installation and Configuration Guide

 

OL-15986-01

7-1

 

 

 

Page 71
Image 71
Cisco Systems OL-15986-01 manual Integrating with Cisco NAC Appliance, Adding Clean Access Manager Entries

OL-15986-01 specifications

Cisco Systems OL-15986-01 refers to a specific online training course offered by Cisco, primarily focusing on the implementation and configuration of Cisco routers and switches. This course is part of the larger Cisco Networking Academy program, designed to equip individuals with the necessary skills to enter and succeed in the networking field.

One of the main features of OL-15986-01 is its comprehensive curriculum that covers a wide range of networking concepts including IP addressing, routing protocols, switching technologies, and network management. The coursework emphasizes practical, hands-on experience, allowing students to work with various Cisco technologies, whether through simulations or actual equipment. This aligns with Cisco's commitment to experiential learning, enabling students to apply theoretical knowledge in real-world scenarios.

The course also incorporates advanced technologies and methodologies. For example, it delves into IPv6 addressing and its significance in modern networking, alongside traditional IPv4. Routing protocols such as OSPF, EIGRP, and BGP are discussed in detail, providing learners with insights into how data is routed efficiently across different networks. Additionally, the course covers switching technologies, including VLANs, STP, and EtherChannel, which are essential for configuring robust and efficient local area networks (LANs).

Another noteworthy characteristic of OL-15986-01 is its focus on network security. Students learn about the vulnerabilities that networks face and how to implement security measures to protect network infrastructure. Topics include secure access methods, firewall configurations, and the use of VPNs for secure remote access.

Furthermore, the course emphasizes troubleshooting techniques, empowering students with the skills to identify and resolve network issues effectively. Practical lab sessions and assessments allow learners to demonstrate their comprehension of networking principles and their ability to apply them in various situations.

Ultimately, Cisco Systems OL-15986-01 is designed for individuals seeking to boost their networking knowledge and skillset, paving the way for careers in IT infrastructure management, network engineering, and other technology-related fields. By completing this course, participants gain a solid foundation in networking that can lead to valuable Cisco certifications, enhancing their professional credibility in a competitive job market.