Monitoring and Maintaining NAC
Monitoring and Maintaining NAC
You can perform the tasks in these sections to monitor and maintain NAC:
•
•
Clearing Table Entries
To clear client entries in the EAPoUDP session table, use the clear eou privileged EXEC command.
After the entries are removed, they are created only after the switch receives an ARP packet from the
host or after it creates a DHCP binding entry for the host.
To clear entries in the IP device tracking table on the switch, use the clear ip device tracking privileged
EXEC command.
Displaying NAC Information
To display NAC information, perform one of the following tasks:
Command
Router# show dot1x [all | interface interface_id |
statistics interface interface_id ]
Router# show eou {all | authentication {clientless |
eap | static} | interface interface_id | ip
ip_address | mac mac_address | posturetoken name }
Router# show ip admission {[cache] [configuration]
[eapoudp]}
Router# show ip device tracking {all | interface
interface_id | ip ip_address | mac mac_address }
For additional information (including configuration examples and troubleshooting information), see the
Tip
documents listed on this page:
http://www.cisco.com/en/US/products/hw/routers/ps368/tsd_products_support_series_home.html
Cisco 7600 Series Router Cisco IOS Software Configuration Guide, Release 12.2SX
45-22
Clearing Table Entries, page 45-22
Displaying NAC Information, page 45-22
Chapter 45
Purpose
Displays IEEE 802.1x statistics, administrative status, and
operational status.
Displays information about the EAPoUDP configuration or
session cache entries.
Displays the NAC configuration or network admission cache
entries.
Displays information about the entries in the IP device
tracking table.
Configuring Network Admission Control
OL-4266-08