It most likely is...We bought in at the 1500 user license but the most I've 
ever seen in Cisco NAC is around 450...

[cid:[email protected]]<mailto:[email protected]>

From: Cisco Clean Access Users and Administrators 
[mailto:[email protected]] On Behalf Of Schwind, Dennis C. Jr.
Sent: Monday, September 13, 2010 8:19 AM
To: [email protected]
Subject: Re: Wildcard MAC address filters

I suspect our issues were traffic/unique host related.  What is your high water 
user count?

Dennis

From: Cisco Clean Access Users and Administrators 
[mailto:[email protected]] On Behalf Of Kyle Torkelson
Sent: Monday, September 13, 2010 8:42 AM
To: [email protected]
Subject:

We are running in-band with 3140 hardware, one CAS and one CAM, and have 33 
wildcard filters (I just counted) for all of our Game Console Mac Addresses...I 
was not aware of a limit of 32 at all...

From: Cisco Clean Access Users and Administrators 
[mailto:[email protected]] On Behalf Of Schwind, Dennis C. Jr.
Sent: Sunday, September 12, 2010 9:13 PM
To: [email protected]
Subject:

Hello,

How many CCA shops are extensively using wildcard MAC address filtering for in 
band deployments with 3140 appliances?  We attempted this and paid a pretty 
heavy price, eventually causing us to abandon the practice.  The symptom was 
CAS units disconnecting from the CAM.  Cisco has stated there is a 32 wildcard 
limit.

I was just curious to see how others have fared attempting this.


Dennis Schwind
Senior Security Engineer
513 529-9670
Miami University
Oxford, Ohio

<<inline: image001.jpg>>

Reply via email to