Many
Manuals
search
Kategorien
Marken
Startseite
HP
PC / Workstation Barebones
3350 - Cisco NAC Appliance
Spezifikationen
HP 3350 - Cisco NAC Appliance Spezifikationen Seite 306
Herunterladen
Teilen
Teilen
Zu meinen Handbüchern hinzufügen
Drucken
Seite
/
681
Inhaltsverzeichnis
FEHLERBEHEBUNG
LESEZEICHEN
Bewertet
.
/ 5. Basierend auf
Kundenbewertungen
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
499
500
501
502
503
504
505
506
507
508
509
510
511
512
513
514
515
516
517
518
519
520
521
522
523
524
525
526
527
528
529
530
531
532
533
534
535
536
537
538
539
540
541
542
543
544
545
546
547
548
549
550
551
552
553
554
555
556
557
558
559
560
561
562
563
564
565
566
567
568
569
570
571
572
573
574
575
576
577
578
579
580
581
582
583
584
585
586
587
588
589
590
591
592
593
594
595
596
597
598
599
600
601
602
603
604
605
606
607
608
609
610
611
612
613
614
615
616
617
618
619
620
621
622
623
624
625
626
627
628
629
630
631
632
633
634
635
636
637
638
639
640
641
642
643
644
645
646
647
648
649
650
651
652
653
654
655
656
657
658
659
660
661
662
663
664
665
666
667
668
669
670
671
672
673
674
675
676
677
678
679
680
681
8-30
Cisco NAC Appliance - Clean A
ccess Manager Configuration Guide
OL-28003-01
Chapter 8 Use
r Management: Tra
ffic Control, Bandwidth, Sc
hedule
Troubleshooting Host-Base
d Policies
1
2
...
301
302
303
304
305
306
307
308
309
310
311
...
680
681
Manager Configuration Guide
1
CONTENTS
3
Contents
10
OL-28003-01
10
About This Guide
19
Document Organization
20
Document Conventions
21
New Features in this Release
21
Product Documentation
22
Documentation Updates
23
Introduction
25
Chapter 1 Introduction
26
Clean Access Manager (CAM)
29
Clean Access Server (CAS)
29
Client Login Overview
30
Cisco NAC Appliance Agents
38
Cisco NAC Web Agent
40
Network Scanner
41
Managing Users
44
Publishing Information
47
Admin Console Summary
48
Servers, Adding Filters
51
Global and Local Settings
59
Adding Multiple Entries
62
Figure 2-6 Endpoint Summary
69
Configure Device Filters
70
Figure 2-7 New Device Filter
71
Test Device Filter Policies
75
Configure Subnet Filters
77
Limitations
79
Map Endpoint Policies
83
View Rules
85
Edit Rules
85
Delete Rules
86
Order Rules
86
Cisco ISE is not reachable
89
Deployment
91
In-Band Versus Out-of-Band
92
Out-of-Band Requirements
92
Flow for OOB VGW Mode
98
Deployment Modes
100
L3 Out-of-Band Deployment
103
Configure Your Switches
104
• Switch configuration level:
108
CAT 2950
109
Internet
109
CAT 3550
109
Switch Configuration
111
CAM/CAS Configuration
111
List of MIBs and OIDs
112
Configure Group Profiles
118
Add Group Profile
119
Edit Group Profile
119
Configure Switch Profiles
120
Add Switch Profile
121
Configure Port Profiles
123
Add Port Profile
124
Configure VLAN Profiles
130
Add VLAN Profile
132
Edit VLAN Profile
133
Configure SNMP Receiver
134
Advanced Settings
135
To Change Default SNMP
136
Add and Manage Switches
138
Add New Switch
139
Search New Switches
140
Verify Devices
141
Discovered Clients
142
Manage Switch Ports
144
Figure 3-34 Ports Tab
145
• Profile (2)
150
Config Tab
153
Advanced
154
Linkdown Traps
154
Port Security
155
Enabling Port Security
155
Re-Enabling MAC Notification
156
Figure 3-41 Config Group
157
• L2 OOB Real IP Gateway
157
Out-of-Band Users
158
OOB Troubleshooting
161
Troubleshooting SNMP
162
Unknown User Name
163
Wrong Digest
163
Authorization Error
163
Unsupported Security Level
163
No Access
163
OOB Client MAC/IP Not Found
164
Additional Information
164
Overview
165
DHCP Bridging Mode
167
SNMP Control
168
SNMP Trap
183
Discovered Wireless Clients
188
Figure 4-22 Config > Group
190
Wireless Out-of-Band Users
191
User Login Page
193
Proxy Settings
194
Add Default Login Page
195
Agent Login
198
Web Login
198
Customize Login Page Content
200
Upload a Resource File
205
Customize Login Page Styles
206
Guest User Access
209
Local Users
215
Create User Roles
216
User Role Types
217
Normal Login Role
218
Session Timeouts
220
Default Login Page
221
Traffic Policies for Roles
221
Adding a New User Role
221
Role Properties
223
Editing an Existing Role
228
Create Local User Accounts
229
Local Authentication
233
Providers
233
Mapping Rules
233
FIPS 140-2 Compliance
233
Kerberos
235
Set Up the IPSec Tunnel
239
(Figure 7-8)
243
Click Add
243
Windows NT
245
Multiple Domain SSL
251
Windows NetBIOS SSO
252
Cisco VPN SSO
254
Add Cisco VPN SSO Auth Server
255
Allow All
256
AD/LDAP Configuration Example
259
Configure Mapping Rule
262
Add Mapping Rule to Role (B)
265
Editing Mapping Rules
267
Auth Test
269
Authentication Successful
270
Authentication Failed
270
RADIUS Accounting
271
Data Fields
273
Logout Event Data Fields
274
Figure 7-39 Login Events
276
Figure 7-40 Logout Events
276
Figure 7-41 Shared Events
276
Schedule
277
Traffic Policy Priority
278
Global vs. Local Scope
279
Add IP-Based Policy
280
Edit IP-Based Policy
283
Enable Default Allowed Hosts
285
Add Allowed Host
286
Control Bandwidth Usage
289
Session Timer
291
Heartbeat Timer
291
In-Band (L2) Sessions
292
Example Traffic Policies
300
Microsoft Xbox
301
Other Game Ports
301
Unauthenticated Role
303
Agent Temporary Role
303
Quarantine Role
303
Step 7 Click Update
311
Configure Out-of-Band Logoff
312
Network Requirements
313
Feature Limitations
314
Enable Out-of-Band Logoff
315
Troubleshooting OOB Logoff
315
View Current Updates
318
Agent Distribution
324
Installation Page
326
• nac_logo.gif
339
• nac_login.xml
339
• nacStrings_xx.xml
339
Agent Login Screen
340
Cisco NAC Agent MSI Installer
343
Role Mapping
346
AV Rules and AS Rules
349
Verify AV/AS Support Info
350
Create an AV Rule
353
Create an AS Rule
359
Prerequisites
364
Custom Requirements
377
Custom Rules
378
Custom Checks
379
Copying Checks and Rules
379
Configuration Summary
380
Create Custom Check
380
Registry Checks
381
File Checks
382
Service Check
383
Create a Custom Rule
384
Validate Rules
386
Create a Custom Requirement
387
Map Requirements to Rules
397
Validate Requirements
400
Figure 9-48 Requirement List
401
Downgrading the Agent
408
Configure Agent Auto-Upgrade
409
Uninstalling the Agent
410
Uninstall Cisco NAC Agent
411
Uninstall Mac OS X Agent
411
Versioning
413
Cisco Updates
413
Cisco NAC Agent Download
415
Cisco NAC Agent
416
Figure 10-2 Login Page
417
System Requirements
439
Mac OS X Cisco NAC Agent
457
Mac OS X Agent Prerequisites
458
Mac OS X Agent Restrictions
462
CAM/CAS Restrictions
462
CCAAgent.app (Figure 10-76)
476
Viewing Agent Reports
480
Exporting Agent Reports
484
Manage Certified Devices
489
Add Exempt Device
491
Add Floating Devices
495
Report Settings
497
CCA Servers
499
Managed Switches
499
Authentication Servers
500
Custom Reports
501
Figure 11-20 Generate Reports
502
Generating a Report
503
Scheduling Report Generation
504
View Saved Templates
505
View Executive Summary
505
Configuration
506
User Activity Log Files
506
Online Users list
507
Interpreting Active Users
508
View Online Users
509
In-Band Users
510
Log Users Off the Network
513
Display Settings
514
Agent Troubleshooting
515
Cisco NAC Web Agent Logs
516
Client Cannot Connect/Login
517
AV/AS Rule Troubleshooting
519
Background
520
Workaround
520
Option 2
521
Configuring Network Scanning
522
User Page Summary
525
Configure the Quarantine Role
527
Uploading Plugins
528
Deleting Plugins
529
Configure General Setup
530
Apply Plugins
531
Configure Plugin Options
533
Test Scanning
537
View Scan Reports
538
Monitoring Event Logs
546
Interpreting Event Logs
549
Table 13-2 Log Viewer Page
550
Event Log Example
552
Configuring Syslog Logging
554
Cisco NAC Appliance Log Files
556
Enable SNMP Polling/Alerts
558
Add New Trapsink
560
SNMP on Individual CAS
562
Add New Trapsink to CAS
563
Administering the CAM
564
Failover
567
Set System Time
568
Manage CAM SSL Certificates
570
Viewing Trusted CAs
580
Removing Trusted CAs
581
System Upgrade
587
Licensing
588
Remove Product Licenses
590
Remove Legacy License Keys
590
Policy Import/Export
591
Example Scenarios
592
Before You Start
593
Configure the Master
595
Configure the Receiver
598
Perform Policy Sync
599
Perform Manual Sync
600
Perform Auto Sync
601
View History Logs
602
Support Logs
605
Agent Logs
609
Admin Users
610
Figure 14-33 Admin Groups
611
Figure 14-34 New Admin Group
612
Login/Logout an Admin User
614
Add an Admin User
614
Edit an Admin User
615
Active Admin User Sessions
616
Manage System Passwords
619
Backing Up the CAM Database
621
Database Recovery Tool
627
API Support
628
Error and Event Log Messages
630
CAM Event Log Messages
631
Authentication Requirements
637
Device Filter Operations
638
Appendix B API Support
639
User Operations
644
Guest Access Operations
647
Report Operations
649
MIB Support
658
Table C-1 CLEAN ACCESS - MIB
659
Table C-2 SNMPv2-MIB
660
Table C-3 RFC1213-MIB
660
Table C-4 IP-MIB
661
Table C-4 IP-MIB (continued)
662
Ta b l e C - 5 U D P - M I B
664
Table C-6 HOST-RESOURCES-MIB
664
Appendix C MIB Support
665
Ta b l e C - 7 M TA- M I B
666
Table C-8 IF-MIB
666
Table C-9 DISMAN-EVENT-MIB
667
Table C-8 IF-MIB (continued)
667
Table C-12 UCD-DLMOD-MIB
670
Table C-13 NET-SNMP-AGENT-MIB
671
Table C-16 SNMP-MPD-MIB
671
Table C-17 SNMP-TARGET-MIB
672
OpenSSL/Open SSL Project
674
Original SSLeay License:
675
Kommentare zu diesen Handbüchern
Keine Kommentare
Publish
Verwandte Produkte und Handbücher für PC / Workstation Barebones HP 3350 - Cisco NAC Appliance
PC / Workstation Barebones HP Officejet 5610 Bedienungsanleitung
(136 Seiten)
PC / Workstation Barebones HP rp2450 Bedienungsanleitung
(8 Seiten)
PC / Workstation Barebones HP t5630 Thin Client Anleitung zur Fehlerbehebung
(73 Seiten)
PC / Workstation Barebones HP t5745 - Thin Client Bedienungsanleitung
(14 Seiten)
PC / Workstation Barebones HP Capio 325 Bedienungsanleitung
(406 Seiten)
PC / Workstation Barebones HP Compaq t5125 Bedienungsanleitung
(24 Seiten)
PC / Workstation Barebones HP ProDesk 405 G1 Hauptspezifikationen
(57 Seiten)
PC / Workstation Barebones HP Presario 5900T Spezifikationen
(71 Seiten)
PC / Workstation Barebones HP Vectra VL 6 Betriebsanweisung
(20 Seiten)
PC / Workstation Barebones HP Compaq Presario,Presario 5203 Spezifikationen
(113 Seiten)
PC / Workstation Barebones HP NetServer LH 6000 Bedienungsanleitung
(6 Seiten)
PC / Workstation Barebones HP rp2450 Bedienungsanleitung
(6 Seiten)
PC / Workstation Barebones HP Workstation x1000 Bedienungsanleitung
(4 Seiten)
PC / Workstation Barebones HP t5740 Bedienungsanleitung
(3 Seiten)
PC / Workstation Barebones HP T1000 - Windows-based Terminals - 32 MB RAM Spezifikationen
(320 Seiten)
PC / Workstation Barebones HP Pavilion v5000 - Desktop PC Bedienungsanleitung
(2 Seiten)
PC / Workstation Barebones HP Pavilion d4600 - Desktop PC Bedienungsanleitung
(2 Seiten)
PC / Workstation Barebones HP Pavilion 9880 Technical Information
(175 Seiten)
PC / Workstation Barebones HP Pavilion t3300 - Desktop PC Bedienungsanleitung
(158 Seiten)
PC / Workstation Barebones HP xw6000 Betriebsanweisung
(83 Seiten)
Dokument drucken
Seite drucken 306
Kommentare zu diesen Handbüchern