Chapter22 Network Admission Con trol
Create NAC Tab
22-28
Cisco Router and Security Device Manager Version 2.2 Users Guide
OL-4015-08

Access Rule Field

Enter the name of the access rule that you want to use, or click the button to the
right of this field and browse for the access rule, or create a new access rule. The
access rule must contain permit entries that specify the IP addresses that hosts on
the exception list can connect to. The access rule must be a named ACL;
numbered ACLs are not supported.

Redirect URL Field

Enter an URL that contains the remediation information for your network. This
information might contain instructions for downloading virus definition files.
A remediation URL might look like the following:
http://172.23.44.9/update
Agentless Host Policy
If a policy for agentless hosts exists on the ACS server, the router can use that
policy to handle hosts without installed posture agents. This method of handling
agentless hosts can be used as an alternative or as a complement to a NAC
exception list. If you do not need to configure a agentless ho st policy, you can
click Next without entering information in this window.

Allow agentless host checkbox

Check this box to indicate that you want to use the agentless h osts policy on the
ACS serve r.

Username and Password Fields

Some Cisco IOS images require a username and password be supplied along with
the request to the ACS server. If this is required, enter the username and password
configured on the ACS server for this purpose. If the Cisco IOS image do es not
require this information, these fields do not appear.