20
© 2006 Cisco Systems, Inc. All rights reserved.
Cisco Public
25482.CL
ETMG_01_06
NAC Framework Deployment Options
• Two NAC Framework Deployment Options:
LAN Port 802.1X Basic (LP1X)—Available on Cat 3K and 2K
Carries credentials inside EAPoL along with user
authentication
Triggered by normal 802.1X exchange
Enforcement policy is RADIUS VLAN Assignment
Requires an enhanced supplicant with CTA built-in
LAN Port IP (LPIP)—Available on Cat 3K Only
Carries credentials inside EAPoUDP, completely independent
of any user authentication
Triggered by ARP or DHCP traffic from the host
Enforcement policy is RADIUS IP Downloadable ACLs
Can be used with or without CTA (clientless host)