Does Cisco support the agent on VMware or Shared Drivers?
A. This is what is supported or is not supported by the NAC agent on VMware: • VMware in NAT Mode The NAC agent is not supported irrespective of Inband or OOB because, with VMware NAT mode, all the VMs show up with same IP and MAC. Therefore, you cannot differentiate between the different VMs for auth/posture purposes. • VMware in Bridge Mode (L2 separation between the images, different IP/MAC addresses) • The NAC agent is supported in Inband mode because unique IP and MAC addresses for the VMs can be obtained. • The NAC agent is not supported in OOB mode because, with OOB mode, you have to restrict one MAC address per switchport. Multiple MAC addresses behind a switchport is not supported with OOB. (IP Phones and PCs connected to the IP Phones are supported.) Hence, the summary is that the NAC agent is supported on VMware if : • NAC is in Inband mode. • VMware is in bridged mode. For all other modes, it is unsupported. Q. The Cisco Clean Access Agent displays either the “SecureSmart i