Is it possible for LibreNMS to show authenticated users via 802.1x authentication on switch ports ? Would be really helpful if that feature is possible
+1 to this. I’m soon to implement 802.1x on our switches so if this is supported that would be good.
This feature is already supported. Under Ports tab you can find NAC.
if its not there , enable NAC under poller modules
Anything else to enable ? Ive got the NAC enable under poller modules. Showing up as enabled too on the device Modules as well. However nothing shows up if I go to the Ports tab of the device
Anything else to enable ?
Device must also support NAC polling. Some of the Ciscos, Aruba and Dell are supported others are probably not. What’s the make and model you are interested about?
HP Procurve and Aruba mostly the 2510’s, 2530’s,2810’s, and 3800’s. Got Meraki switch as well. Meraki MS225-48LP Cloud Managed PoE Switch and Meraki MS225-24P Cloud Managed PoE Switch.
Weve got 802.1X authentication enabled and working on these switch ports
Capture the poller debug logs and look for the lines below to see if switch is responding to NAC module polling
#### Load poller module nac ####
Module enabled: Global + | OS | Device | Manual
Thanks @RR1. Ive run that capture and I never see that line
Even though if I go to the device itself I can see it enabled on the module of that device
So this means that the device doesnt support NAC ?
I beleive it only works with Cisco gears. Even our old Cisco 3750 switches showing that Load poller module nac line on the poller result. Unfortuntely my Meraki switch doesnt support it as well from the poller capture result
So, apart from Meraki, you can see the NAC details for other cisco devices ?
Can only see it on Cisco 3750 and the Cisco Nexus 9000 we have. Dont see it on Meraki and HP Procurve/Aruba switches
NAC SNMP support is vendor specific. No standard MIB for that. So the support for each vendor must be written in LibreNMS. Cisco, Huawei, HP Procurve, Dell are supported currently (and I have no experience with the 2 later).
You need to write (or wait for somebody to write) support in LibreNMS for your devices.
Thanks. Yeah Ive seeks assitance from Arubanetworks support
I think PipoCanaja meant someone has to write the support for LibreNMS if your device provides it already.
Thanks for the clarification
Got it thanks.
Thank you for the clarification