Specifications
3-60
Cisco NAC Appliance - Clean Access Manager Configuration Guide
OL-28003-01
Chapter 3 Switch Management: Configuring Out-of-Band Deployment
Configure OOB Switch Management on the CAM
Note The MAC address(es) connected to a particular port may not be available when the Access
VLAN of the port does not exist in the VLAN database. This occurs on some models of Cisco
switches (e.g. 6506, IOS Version 12.2(18) SXD3).
• Profile (2)
To control a port from the CAM, select a managed port profile from the dropdown menu, then click
Update and Setup. Apply managed port profiles to ports on which clients are attached in order to
get and set the SNMP traps from those ports. Profiles can also be applied to trunk ports. All other
ports should be unmanaged. Port Profiles must already be configured under OOB Management >
Profiles > Port > New (see Configure Port Profiles, page 3-33). There are always two default
dropdown options: uncontrolled, and Default []. All ports are initially assigned the
Default[uncontrolled] Port Profile. You can change the Default [] Port Profile assignment from the
OOB Management > Devices > Config tab.
Note Because Cisco NAC Appliance OOB can control switch trunk ports, when upgrading, make sure
uplink ports for managed switches are configured as “uncontrolled” ports. You can do this before
upgrade by making sure the Default Port Profile for the entire switch is “uncontrolled” under
OOB Management > Devices > Devices > List > Config[Switch_IP] > Default Port Profile
(see Config Tab, page 3-63), or, after upgrade, you can change the Profile here in the Ports
config page to “uncontrolled” for the applicable uplink ports of the switch.This will prevent
unnecessary issues when the Default Port Profile for the switch has been configured as a
managed/controlled port profile.
• Note
This field allows you enter an optional description for ports you configure. Clicking Update saves
the note for the port on the CAM.
Manage Individual Ports (Linkup/Linkdown)
If the switch does not support MAC change notification/MAC move notification traps, the Mac Notif.
column and Setup button are not displayed on this page (Figure 3-35). In this case, linkup/linkdown
traps must be supported and configured on the switch and Clean Access Manager.
See Advanced, page 3-64 for additional information on the use of linkup/linkdown traps.