Hi all, There is the following situation in medical center with network: router firewall switches(802.1x) and on the switches - users(staff, doctors and etc), servers(PACS, lab and etc.), wireless APs(802.1x) The idea is to create different VLANs for the servers, and others for the different kind of users. The role of the SA is to check and authenticate users and give them access only to the resources they need (access to different VLANs). So I heard opinions that this could happened ("All they need is AAA and 802.1x switch") also this is impossible as this is internal network. So I look at brochures, data sheets, learning ... and all I see is diagrams for remote users, partners, public computers and etc. Nothing is mentioned for internal lan. So is this possible or not ? And if possible where should they deploy the SA?
... View more