<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco Phone is trying to atuhenticate on data vlan in IP Telephony and Phones</title>
    <link>https://community.cisco.com/t5/ip-telephony-and-phones/cisco-phone-is-trying-to-atuhenticate-on-data-vlan/m-p/4121030#M390292</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cisco Phone is trying to atuhenticate on data vlan even port is configured with voice vlan.&lt;/P&gt;&lt;P&gt;Only Radius and Device Sensor are used.&lt;/P&gt;&lt;P&gt;PC and Phone are authenticated using MAB.&lt;/P&gt;&lt;P&gt;Access Device: WS-C2960S-F24PS-L()(15.2(2)E9)&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;Port-Config:&lt;/P&gt;&lt;P&gt;interface FastEthernet1/0/12&lt;BR /&gt;switchport access vlan 100&lt;BR /&gt;switchport mode access&lt;BR /&gt;switchport nonegotiate&lt;BR /&gt;switchport block multicast&lt;BR /&gt;switchport block unicast&lt;BR /&gt;&lt;FONT color="#000000"&gt;&lt;STRONG&gt;switchport voice vlan 400&lt;/STRONG&gt;&lt;/FONT&gt;&lt;BR /&gt;ip device tracking maximum 2&lt;BR /&gt;ip arp inspection limit rate 40&lt;BR /&gt;small-frame violation-rate 2000&lt;BR /&gt;srr-queue bandwidth share 10 10 60 20&lt;BR /&gt;priority-queue out&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server dead action authorize vlan 100&lt;BR /&gt;authentication event server dead action authorize voice&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;&lt;STRONG&gt;authentication host-mode multi-domain&lt;/STRONG&gt;&lt;BR /&gt;authentication order dot1x mab&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication port-control auto&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity server&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;snmp trap mac-notification change added&lt;BR /&gt;snmp trap mac-notification change removed&lt;BR /&gt;mls qos trust device cisco-phone&lt;BR /&gt;mls qos trust cos&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 7&lt;BR /&gt;dot1x max-req 3&lt;BR /&gt;auto qos voip cisco-phone&lt;BR /&gt;storm-control broadcast level 5.00&lt;BR /&gt;storm-control multicast level 5.00&lt;BR /&gt;storm-control unicast level pps 10k 9k&lt;BR /&gt;storm-control action shutdown&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;spanning-tree bpduguard enable&lt;BR /&gt;service-policy input AutoQoS-Police-CiscoPhone&lt;BR /&gt;ip verify source tracking&lt;BR /&gt;ip dhcp snooping limit rate 10&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;device-sensor filter-list lldp list lldp-list&lt;BR /&gt;device-sensor filter-list cdp list cdp-list&lt;BR /&gt;device-sensor filter-list dhcp list dhcp-list&lt;BR /&gt;device-sensor filter-spec dhcp include list dhcp-list&lt;BR /&gt;device-sensor filter-spec lldp include list lldp-list&lt;BR /&gt;device-sensor filter-spec cdp include list cdp-list&lt;BR /&gt;device-sensor accounting&lt;BR /&gt;device-sensor notify all-changes&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;Switch-S1#sh mac address-table interface fastEthernet 1/0/12&lt;BR /&gt;Mac Address Table&lt;BR /&gt;-------------------------------------------&lt;/P&gt;&lt;P&gt;Vlan Mac Address Type Ports&lt;BR /&gt;---- ----------- -------- -----&lt;BR /&gt;100 c8cb.b821.1db5 STATIC Fa1/0/12&lt;BR /&gt;&lt;FONT color="#000000"&gt;&lt;STRONG&gt;400 c414.3c8a.82f5 DYNAMIC Drop&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;%AUTHMGR-5-SECURITY_VIOLATION: Security violation on the interface FastEthernet1/0/12, new MAC address (c414.3c8a.82f5) is seen.AuditSessionID 0A706FF2000002FE0215E2EB&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;If I do change to authentication host-mode multi-auth, then both PC and Phone do authenticate properly&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;Switch-S1(config)#interface fastEthernet 1/0/12&lt;BR /&gt;Switch-S1(config-if)#&lt;STRONG&gt;authentication host-mode multi-auth&lt;/STRONG&gt;&lt;BR /&gt;Switch-S1(config-if)#shu&lt;BR /&gt;Switch-S1(config-if)#no shu&lt;BR /&gt;007601: Jul 18 12:46:17.656 EEST: %SWITCH_QOS_TB-5-TRUST_DEVICE_LOST: cisco-phone no longer detected on port Fa1/0/12, operational port trust state is now untrusted.&lt;BR /&gt;007602: Jul 18 12:46:18.222 EEST: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet1/0/12, changed state to down&lt;BR /&gt;007606: Jul 18 12:46:28.457 EEST: %ILPOWER-7-DETECT: Interface Fa1/0/12: Power Device detected: IEEE PD&lt;BR /&gt;007607: Jul 18 12:46:29.180 EEST: %ILPOWER-5-POWER_GRANTED: Interface Fa1/0/12: Power granted&lt;BR /&gt;007609: Jul 18 12:46:34.591 EEST: %LINK-3-UPDOWN: Interface FastEthernet1/0/12, changed state to up&lt;BR /&gt;007611: Jul 18 12:46:35.593 EEST: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet1/0/12, changed state to up&lt;BR /&gt;007620: Jul 18 12:46:52.633 EEST: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet1/0/12, changed state to up&lt;BR /&gt;007621: Jul 18 12:46:53.860 EEST: %SWITCH_QOS_TB-5-TRUST_DEVICE_DETECTED: cisco-phone detected on port Fa1/0/12, port's configured trust state is now operational.&lt;BR /&gt;007634: Jul 18 12:47:13.165 EEST: %DOT1X-5-FAIL: Authentication failed for client (c8cb.b821.1db5) on Interface Fa1/0/12 AuditSessionID 0A706FF2000003020217B991&lt;BR /&gt;007635: Jul 18 12:47:13.197 EEST: %EPM-6-POLICY_REQ: IP 10.112.111.27| MAC c8cb.b821.1db5| AuditSessionID 0A706FF2000003020217B991| EVENT APPLY&lt;BR /&gt;007636: Jul 18 12:47:13.202 EEST: %EPM-6-AUTH_ACL: POLICY Auth-Default-ACL| EVENT ATTACH-SUCCESS&lt;BR /&gt;007637: Jul 18 12:47:13.202 EEST: %EPM-6-POLICY_APP_SUCCESS: Policy Application succeded for Client [10.112.111.27] MAC [c8cb.b821.1db5] AuditSession ID [0A706FF2000003020217B991] for POLICY_TYPE [Named Acl] POLICY_NAME [xACSACLx-IP-PERMIT_ALL_TRAFFIC-57f6b0d3]&lt;BR /&gt;007638: Jul 18 12:47:13.212 EEST: %EPM-6-POLICY_REQ: IP 10.112.111.27| MAC c8cb.b821.1db5| AuditSessionID 0A706FF2000003020217B991| EVENT APPLY&lt;BR /&gt;007639: Jul 18 12:47:15.220 EEST: %DOT1X-5-FAIL: Authentication failed for client (c414.3c8a.82f5) on Interface Fa1/0/12 AuditSessionID 0A706FF2000003030217C28F&lt;BR /&gt;007640: Jul 18 12:47:15.252 EEST: %EPM-6-POLICY_REQ: IP 0.0.0.0| MAC c414.3c8a.82f5| AuditSessionID 0A706FF2000003030217C28F| EVENT APPLY&lt;BR /&gt;007641: Jul 18 12:47:15.252 EEST: %EPM-6-AAA: POLICY xACSACLx-IP-LIMITED_DOMAIN-5e4fed2f| EVENT DOWNLOAD_REQUEST&lt;BR /&gt;007642: Jul 18 12:47:15.257 EEST: %EPM-6-POLICY_REQ: IP 0.0.0.0| MAC c414.3c8a.82f5| AuditSessionID 0A706FF2000003030217C28F| EVENT APPLY&lt;BR /&gt;007643: Jul 18 12:47:15.262 EEST: %EPM-6-AAA: POLICY xACSACLx-IP-LIMITED_DOMAIN-5e4fed2f| EVENT DOWNLOAD-SUCCESS&lt;BR /&gt;007644: Jul 18 12:47:15.346 EEST: %EPM-6-IPEVENT: IP 0.0.0.0| MAC c414.3c8a.82f5| AuditSessionID 0A706FF2000003030217C28F| EVENT IP-WAIT&lt;BR /&gt;007646: Jul 18 12:47:19.111 EEST: %EPM-6-IPEVENT: IP 10.112.111.141| MAC c414.3c8a.82f5| AuditSessionID 0A706FF2000003030217C28F| EVENT IP-ASSIGN&lt;BR /&gt;007647: Jul 18 12:47:19.116 EEST: %EPM-6-POLICY_APP_SUCCESS: Policy Application succeded for Client [10.112.111.141] MAC [c414.3c8a.82f5] AuditSession ID [0A706FF2000003030217C28F] for POLICY_TYPE [Named Acl] POLICY_NAME [xACSACLx-IP-PERMIT_ALL_TRAFFIC-57f6b0d3]&lt;BR /&gt;007648: Jul 18 12:47:19.116 EEST: %EPM-6-IPEVENT: IP 10.112.111.141| MAC c414.3c8a.82f5| AuditSessionID 0A706FF2000003030217C28F| EVENT IP-ASSIGN&lt;BR /&gt;!&lt;/P&gt;&lt;P&gt;Switch-S1#sh mac address-table interface fastEthernet 1/0/12&lt;BR /&gt;Mac Address Table&lt;BR /&gt;-------------------------------------------&lt;/P&gt;&lt;P&gt;Vlan Mac Address Type Ports&lt;BR /&gt;---- ----------- -------- -----&lt;BR /&gt;100 c8cb.b821.1db5 STATIC Fa1/0/12&lt;BR /&gt;400 c414.3c8a.82f5 STATIC Fa1/0/12&lt;BR /&gt;Total Mac Addresses for this criterion: 2&lt;BR /&gt;Switch-S1#&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;Switch-S1#sh authentication sessions interface fastEthernet 1/0/12 details&lt;BR /&gt;Interface: FastEthernet1/0/12&lt;BR /&gt;MAC Address: c8cb.b821.1db5&lt;BR /&gt;IPv6 Address: Unknown&lt;BR /&gt;IPv4 Address: 10.112.111.27&lt;BR /&gt;User-Name: C8-CB-B8-21-1D-B5&lt;BR /&gt;Status: Authorized&lt;BR /&gt;Domain: DATA&lt;BR /&gt;Oper host mode: multi-auth&lt;BR /&gt;Oper control dir: both&lt;BR /&gt;Session timeout: N/A&lt;BR /&gt;Restart timeout: N/A&lt;BR /&gt;Periodic Acct timeout: 172800s (local), Remaining: 172768s&lt;BR /&gt;Session Uptime: 55s&lt;BR /&gt;Common Session ID: 0A706FF2000003020217B991&lt;BR /&gt;Acct Session ID: 0x0000058B&lt;BR /&gt;Handle: 0xC00002F6&lt;BR /&gt;Current Policy: POLICY_Fa1/0/12&lt;/P&gt;&lt;P&gt;Local Policies:&lt;BR /&gt;Service Template: DEFAULT_LINKSEC_POLICY_SHOULD_SECURE (priority 150)&lt;/P&gt;&lt;P&gt;Server Policies:&lt;BR /&gt;ACS ACL: xACSACLx-IP-PERMIT_ALL_TRAFFIC-57f6b0d3&lt;/P&gt;&lt;P&gt;Method status list:&lt;BR /&gt;Method State&lt;/P&gt;&lt;P&gt;dot1x Stopped&lt;BR /&gt;mab Authc Success&lt;/P&gt;&lt;P&gt;----------------------------------------&lt;BR /&gt;Interface: FastEthernet1/0/12&lt;BR /&gt;MAC Address: c414.3c8a.82f5&lt;BR /&gt;IPv6 Address: Unknown&lt;BR /&gt;IPv4 Address: 10.112.111.141&lt;BR /&gt;User-Name: &lt;STRONG&gt;C4-14-3C-8A-82-F5&lt;/STRONG&gt;&lt;BR /&gt;Status: Authorized&lt;BR /&gt;Domain: VOICE&lt;BR /&gt;Oper host mode: multi-auth&lt;BR /&gt;Oper control dir: both&lt;BR /&gt;Session timeout: N/A&lt;BR /&gt;Restart timeout: N/A&lt;BR /&gt;Periodic Acct timeout: 172800s (local), Remaining: 172770s&lt;BR /&gt;Session Uptime: 31s&lt;BR /&gt;Common Session ID: 0A706FF2000003030217C28F&lt;BR /&gt;&lt;BR /&gt;Acct Session ID: 0x0000058C&lt;BR /&gt;Handle: 0x550002F7&lt;BR /&gt;Current Policy: POLICY_Fa1/0/12&lt;/P&gt;&lt;P&gt;Local Policies:&lt;BR /&gt;Service Template: DEFAULT_LINKSEC_POLICY_SHOULD_SECURE (priority 150)&lt;/P&gt;&lt;P&gt;Server Policies:&lt;BR /&gt;ACS ACL: &lt;STRONG&gt;xACSACLx-IP-PERMIT_ALL_TRAFFIC-57f6b0d3&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Method status list:&lt;BR /&gt;Method State&lt;/P&gt;&lt;P&gt;dot1x Stopped&lt;BR /&gt;mab Authc Success&lt;/P&gt;&lt;P&gt;Switch-S1#&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cisco ISE 2.7 Patch 1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any help would be appreciated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
    <pubDate>Sat, 18 Jul 2020 10:07:28 GMT</pubDate>
    <dc:creator>Eugen Bitca</dc:creator>
    <dc:date>2020-07-18T10:07:28Z</dc:date>
    <item>
      <title>Cisco Phone is trying to atuhenticate on data vlan</title>
      <link>https://community.cisco.com/t5/ip-telephony-and-phones/cisco-phone-is-trying-to-atuhenticate-on-data-vlan/m-p/4121030#M390292</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cisco Phone is trying to atuhenticate on data vlan even port is configured with voice vlan.&lt;/P&gt;&lt;P&gt;Only Radius and Device Sensor are used.&lt;/P&gt;&lt;P&gt;PC and Phone are authenticated using MAB.&lt;/P&gt;&lt;P&gt;Access Device: WS-C2960S-F24PS-L()(15.2(2)E9)&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;Port-Config:&lt;/P&gt;&lt;P&gt;interface FastEthernet1/0/12&lt;BR /&gt;switchport access vlan 100&lt;BR /&gt;switchport mode access&lt;BR /&gt;switchport nonegotiate&lt;BR /&gt;switchport block multicast&lt;BR /&gt;switchport block unicast&lt;BR /&gt;&lt;FONT color="#000000"&gt;&lt;STRONG&gt;switchport voice vlan 400&lt;/STRONG&gt;&lt;/FONT&gt;&lt;BR /&gt;ip device tracking maximum 2&lt;BR /&gt;ip arp inspection limit rate 40&lt;BR /&gt;small-frame violation-rate 2000&lt;BR /&gt;srr-queue bandwidth share 10 10 60 20&lt;BR /&gt;priority-queue out&lt;BR /&gt;authentication event fail action next-method&lt;BR /&gt;authentication event server dead action authorize vlan 100&lt;BR /&gt;authentication event server dead action authorize voice&lt;BR /&gt;authentication event server alive action reinitialize&lt;BR /&gt;&lt;STRONG&gt;authentication host-mode multi-domain&lt;/STRONG&gt;&lt;BR /&gt;authentication order dot1x mab&lt;BR /&gt;authentication priority dot1x mab&lt;BR /&gt;authentication port-control auto&lt;BR /&gt;authentication periodic&lt;BR /&gt;authentication timer reauthenticate server&lt;BR /&gt;authentication timer inactivity server&lt;BR /&gt;authentication violation restrict&lt;BR /&gt;mab&lt;BR /&gt;snmp trap mac-notification change added&lt;BR /&gt;snmp trap mac-notification change removed&lt;BR /&gt;mls qos trust device cisco-phone&lt;BR /&gt;mls qos trust cos&lt;BR /&gt;dot1x pae authenticator&lt;BR /&gt;dot1x timeout tx-period 7&lt;BR /&gt;dot1x max-req 3&lt;BR /&gt;auto qos voip cisco-phone&lt;BR /&gt;storm-control broadcast level 5.00&lt;BR /&gt;storm-control multicast level 5.00&lt;BR /&gt;storm-control unicast level pps 10k 9k&lt;BR /&gt;storm-control action shutdown&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;spanning-tree bpduguard enable&lt;BR /&gt;service-policy input AutoQoS-Police-CiscoPhone&lt;BR /&gt;ip verify source tracking&lt;BR /&gt;ip dhcp snooping limit rate 10&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;device-sensor filter-list lldp list lldp-list&lt;BR /&gt;device-sensor filter-list cdp list cdp-list&lt;BR /&gt;device-sensor filter-list dhcp list dhcp-list&lt;BR /&gt;device-sensor filter-spec dhcp include list dhcp-list&lt;BR /&gt;device-sensor filter-spec lldp include list lldp-list&lt;BR /&gt;device-sensor filter-spec cdp include list cdp-list&lt;BR /&gt;device-sensor accounting&lt;BR /&gt;device-sensor notify all-changes&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;Switch-S1#sh mac address-table interface fastEthernet 1/0/12&lt;BR /&gt;Mac Address Table&lt;BR /&gt;-------------------------------------------&lt;/P&gt;&lt;P&gt;Vlan Mac Address Type Ports&lt;BR /&gt;---- ----------- -------- -----&lt;BR /&gt;100 c8cb.b821.1db5 STATIC Fa1/0/12&lt;BR /&gt;&lt;FONT color="#000000"&gt;&lt;STRONG&gt;400 c414.3c8a.82f5 DYNAMIC Drop&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;%AUTHMGR-5-SECURITY_VIOLATION: Security violation on the interface FastEthernet1/0/12, new MAC address (c414.3c8a.82f5) is seen.AuditSessionID 0A706FF2000002FE0215E2EB&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;If I do change to authentication host-mode multi-auth, then both PC and Phone do authenticate properly&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;Switch-S1(config)#interface fastEthernet 1/0/12&lt;BR /&gt;Switch-S1(config-if)#&lt;STRONG&gt;authentication host-mode multi-auth&lt;/STRONG&gt;&lt;BR /&gt;Switch-S1(config-if)#shu&lt;BR /&gt;Switch-S1(config-if)#no shu&lt;BR /&gt;007601: Jul 18 12:46:17.656 EEST: %SWITCH_QOS_TB-5-TRUST_DEVICE_LOST: cisco-phone no longer detected on port Fa1/0/12, operational port trust state is now untrusted.&lt;BR /&gt;007602: Jul 18 12:46:18.222 EEST: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet1/0/12, changed state to down&lt;BR /&gt;007606: Jul 18 12:46:28.457 EEST: %ILPOWER-7-DETECT: Interface Fa1/0/12: Power Device detected: IEEE PD&lt;BR /&gt;007607: Jul 18 12:46:29.180 EEST: %ILPOWER-5-POWER_GRANTED: Interface Fa1/0/12: Power granted&lt;BR /&gt;007609: Jul 18 12:46:34.591 EEST: %LINK-3-UPDOWN: Interface FastEthernet1/0/12, changed state to up&lt;BR /&gt;007611: Jul 18 12:46:35.593 EEST: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet1/0/12, changed state to up&lt;BR /&gt;007620: Jul 18 12:46:52.633 EEST: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet1/0/12, changed state to up&lt;BR /&gt;007621: Jul 18 12:46:53.860 EEST: %SWITCH_QOS_TB-5-TRUST_DEVICE_DETECTED: cisco-phone detected on port Fa1/0/12, port's configured trust state is now operational.&lt;BR /&gt;007634: Jul 18 12:47:13.165 EEST: %DOT1X-5-FAIL: Authentication failed for client (c8cb.b821.1db5) on Interface Fa1/0/12 AuditSessionID 0A706FF2000003020217B991&lt;BR /&gt;007635: Jul 18 12:47:13.197 EEST: %EPM-6-POLICY_REQ: IP 10.112.111.27| MAC c8cb.b821.1db5| AuditSessionID 0A706FF2000003020217B991| EVENT APPLY&lt;BR /&gt;007636: Jul 18 12:47:13.202 EEST: %EPM-6-AUTH_ACL: POLICY Auth-Default-ACL| EVENT ATTACH-SUCCESS&lt;BR /&gt;007637: Jul 18 12:47:13.202 EEST: %EPM-6-POLICY_APP_SUCCESS: Policy Application succeded for Client [10.112.111.27] MAC [c8cb.b821.1db5] AuditSession ID [0A706FF2000003020217B991] for POLICY_TYPE [Named Acl] POLICY_NAME [xACSACLx-IP-PERMIT_ALL_TRAFFIC-57f6b0d3]&lt;BR /&gt;007638: Jul 18 12:47:13.212 EEST: %EPM-6-POLICY_REQ: IP 10.112.111.27| MAC c8cb.b821.1db5| AuditSessionID 0A706FF2000003020217B991| EVENT APPLY&lt;BR /&gt;007639: Jul 18 12:47:15.220 EEST: %DOT1X-5-FAIL: Authentication failed for client (c414.3c8a.82f5) on Interface Fa1/0/12 AuditSessionID 0A706FF2000003030217C28F&lt;BR /&gt;007640: Jul 18 12:47:15.252 EEST: %EPM-6-POLICY_REQ: IP 0.0.0.0| MAC c414.3c8a.82f5| AuditSessionID 0A706FF2000003030217C28F| EVENT APPLY&lt;BR /&gt;007641: Jul 18 12:47:15.252 EEST: %EPM-6-AAA: POLICY xACSACLx-IP-LIMITED_DOMAIN-5e4fed2f| EVENT DOWNLOAD_REQUEST&lt;BR /&gt;007642: Jul 18 12:47:15.257 EEST: %EPM-6-POLICY_REQ: IP 0.0.0.0| MAC c414.3c8a.82f5| AuditSessionID 0A706FF2000003030217C28F| EVENT APPLY&lt;BR /&gt;007643: Jul 18 12:47:15.262 EEST: %EPM-6-AAA: POLICY xACSACLx-IP-LIMITED_DOMAIN-5e4fed2f| EVENT DOWNLOAD-SUCCESS&lt;BR /&gt;007644: Jul 18 12:47:15.346 EEST: %EPM-6-IPEVENT: IP 0.0.0.0| MAC c414.3c8a.82f5| AuditSessionID 0A706FF2000003030217C28F| EVENT IP-WAIT&lt;BR /&gt;007646: Jul 18 12:47:19.111 EEST: %EPM-6-IPEVENT: IP 10.112.111.141| MAC c414.3c8a.82f5| AuditSessionID 0A706FF2000003030217C28F| EVENT IP-ASSIGN&lt;BR /&gt;007647: Jul 18 12:47:19.116 EEST: %EPM-6-POLICY_APP_SUCCESS: Policy Application succeded for Client [10.112.111.141] MAC [c414.3c8a.82f5] AuditSession ID [0A706FF2000003030217C28F] for POLICY_TYPE [Named Acl] POLICY_NAME [xACSACLx-IP-PERMIT_ALL_TRAFFIC-57f6b0d3]&lt;BR /&gt;007648: Jul 18 12:47:19.116 EEST: %EPM-6-IPEVENT: IP 10.112.111.141| MAC c414.3c8a.82f5| AuditSessionID 0A706FF2000003030217C28F| EVENT IP-ASSIGN&lt;BR /&gt;!&lt;/P&gt;&lt;P&gt;Switch-S1#sh mac address-table interface fastEthernet 1/0/12&lt;BR /&gt;Mac Address Table&lt;BR /&gt;-------------------------------------------&lt;/P&gt;&lt;P&gt;Vlan Mac Address Type Ports&lt;BR /&gt;---- ----------- -------- -----&lt;BR /&gt;100 c8cb.b821.1db5 STATIC Fa1/0/12&lt;BR /&gt;400 c414.3c8a.82f5 STATIC Fa1/0/12&lt;BR /&gt;Total Mac Addresses for this criterion: 2&lt;BR /&gt;Switch-S1#&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;Switch-S1#sh authentication sessions interface fastEthernet 1/0/12 details&lt;BR /&gt;Interface: FastEthernet1/0/12&lt;BR /&gt;MAC Address: c8cb.b821.1db5&lt;BR /&gt;IPv6 Address: Unknown&lt;BR /&gt;IPv4 Address: 10.112.111.27&lt;BR /&gt;User-Name: C8-CB-B8-21-1D-B5&lt;BR /&gt;Status: Authorized&lt;BR /&gt;Domain: DATA&lt;BR /&gt;Oper host mode: multi-auth&lt;BR /&gt;Oper control dir: both&lt;BR /&gt;Session timeout: N/A&lt;BR /&gt;Restart timeout: N/A&lt;BR /&gt;Periodic Acct timeout: 172800s (local), Remaining: 172768s&lt;BR /&gt;Session Uptime: 55s&lt;BR /&gt;Common Session ID: 0A706FF2000003020217B991&lt;BR /&gt;Acct Session ID: 0x0000058B&lt;BR /&gt;Handle: 0xC00002F6&lt;BR /&gt;Current Policy: POLICY_Fa1/0/12&lt;/P&gt;&lt;P&gt;Local Policies:&lt;BR /&gt;Service Template: DEFAULT_LINKSEC_POLICY_SHOULD_SECURE (priority 150)&lt;/P&gt;&lt;P&gt;Server Policies:&lt;BR /&gt;ACS ACL: xACSACLx-IP-PERMIT_ALL_TRAFFIC-57f6b0d3&lt;/P&gt;&lt;P&gt;Method status list:&lt;BR /&gt;Method State&lt;/P&gt;&lt;P&gt;dot1x Stopped&lt;BR /&gt;mab Authc Success&lt;/P&gt;&lt;P&gt;----------------------------------------&lt;BR /&gt;Interface: FastEthernet1/0/12&lt;BR /&gt;MAC Address: c414.3c8a.82f5&lt;BR /&gt;IPv6 Address: Unknown&lt;BR /&gt;IPv4 Address: 10.112.111.141&lt;BR /&gt;User-Name: &lt;STRONG&gt;C4-14-3C-8A-82-F5&lt;/STRONG&gt;&lt;BR /&gt;Status: Authorized&lt;BR /&gt;Domain: VOICE&lt;BR /&gt;Oper host mode: multi-auth&lt;BR /&gt;Oper control dir: both&lt;BR /&gt;Session timeout: N/A&lt;BR /&gt;Restart timeout: N/A&lt;BR /&gt;Periodic Acct timeout: 172800s (local), Remaining: 172770s&lt;BR /&gt;Session Uptime: 31s&lt;BR /&gt;Common Session ID: 0A706FF2000003030217C28F&lt;BR /&gt;&lt;BR /&gt;Acct Session ID: 0x0000058C&lt;BR /&gt;Handle: 0x550002F7&lt;BR /&gt;Current Policy: POLICY_Fa1/0/12&lt;/P&gt;&lt;P&gt;Local Policies:&lt;BR /&gt;Service Template: DEFAULT_LINKSEC_POLICY_SHOULD_SECURE (priority 150)&lt;/P&gt;&lt;P&gt;Server Policies:&lt;BR /&gt;ACS ACL: &lt;STRONG&gt;xACSACLx-IP-PERMIT_ALL_TRAFFIC-57f6b0d3&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Method status list:&lt;BR /&gt;Method State&lt;/P&gt;&lt;P&gt;dot1x Stopped&lt;BR /&gt;mab Authc Success&lt;/P&gt;&lt;P&gt;Switch-S1#&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cisco ISE 2.7 Patch 1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any help would be appreciated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Sat, 18 Jul 2020 10:07:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/ip-telephony-and-phones/cisco-phone-is-trying-to-atuhenticate-on-data-vlan/m-p/4121030#M390292</guid>
      <dc:creator>Eugen Bitca</dc:creator>
      <dc:date>2020-07-18T10:07:28Z</dc:date>
    </item>
  </channel>
</rss>

