14-6
User Guide for Cisco Security MARS Local Controller
78-17020-01
Chapter 14 Configuring AAA Devices
Bootstrap Cisco Secure ACS
•
Enable the authentication method that best supports the 802.1x functionality that you want to enable.
This option is selected in the Using Authentication box.
•
Enable logging of watchdog packets, interim updates. Select the Log Update/Watchdog Packets
from this AAA Client check box. This option ensures that interim updates are sent from the
Cisco Secure ACS to MARS.
To enable 802.1x logging support, the following configuration must also be completed.
•
Ensure DHCP snooping is enabled on each network access device that you plan to define as an
802.1x client in MARS
Note
The attack path can not be calculated for a NAC 802.1x security incident when the events triggering the
incident are reported to the MARS Appliance by Cisco Secure ACS. However, the MARS Appliance
knows the switch port to block so you can mitigate without the attack path.
Figure 14-1
displays example settings for such a client.
Figure 14-1
Configure a AAA Client to Support 802.1x
For more information on defining AAA clients, see the following URL:
http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_user_guide_chapter09186a00
802335ef.html#wp342084
Содержание CS-MARS-20-K9 - Security MARS 20
Страница 20: ...Contents xx User Guide for Cisco Security MARS Local Controller 78 17020 01 ...
Страница 356: ...17 16 User Guide for Cisco Security MARS Local Controller 78 17020 01 Chapter 17 Network Summary Summary Page ...
Страница 420: ...20 28 User Guide for Cisco Security MARS Local Controller 78 17020 01 Chapter 20 Queries and Reports Reports ...
Страница 580: ...Glossary GL 4 User Guide for Cisco Security MARS Local Controller 78 17020 01 ...