<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi Jean- in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/problems-with-re-authentication-of-users-and-high-availability/m-p/2828427#M40424</link>
    <description>&lt;P&gt;Hi Jean-&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="text-decoration: underline;"&gt;&lt;STRONG&gt;For #1:&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;- What do you have configured in your WLC for:&lt;/P&gt;
&lt;P&gt;1. Controller &amp;gt;&amp;nbsp;User Idle Timeout (Seconds)&lt;/P&gt;
&lt;P&gt;2. WLANs &amp;gt; Name of the SSID &amp;gt; Advanced &amp;gt; Enable Session Timeout&lt;/P&gt;
&lt;P&gt;- What attributes are you returning in the &lt;STRONG&gt;Authorization Profile&lt;/STRONG&gt; for those users&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="text-decoration: underline;"&gt;&lt;STRONG&gt;For #2:&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;- What happens if you: Disable Client's wireless adapter &amp;gt; remove the client session from the WLC, re-enable the client's adapter and reconnect again?&lt;/P&gt;
&lt;P&gt;- Do you have the ISE PSNs configured in a Node Group&lt;/P&gt;
&lt;P&gt;- Under the WLC, what do you have configured for Security &amp;gt; RADIUS &amp;gt; Fallback&lt;/P&gt;
&lt;P&gt;- Under the SSID, what do you have configured for Security &amp;gt; AAA Servers (attach screen shot)&lt;/P&gt;
&lt;P&gt;- How is your DNS configured for resolving the PSNs to the Gust portal&lt;/P&gt;
&lt;P&gt;I know there are a lot of questions but we need more details before we can help &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Sat, 13 Feb 2016 05:12:43 GMT</pubDate>
    <dc:creator>nspasov</dc:creator>
    <dc:date>2016-02-13T05:12:43Z</dc:date>
    <item>
      <title>Problems with re-authentication of users and High Availability</title>
      <link>https://community.cisco.com/t5/network-access-control/problems-with-re-authentication-of-users-and-high-availability/m-p/2828426#M40423</link>
      <description>&lt;P&gt;I have a network with a centralized ISE server and several distributed WLCs, these controllers assigned IP, but they consult the user and password to the database server ISE 1.4&amp;nbsp;redirecting&amp;nbsp;the users&amp;nbsp;to &amp;nbsp;sponsor portal. I have some problems with this:&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;1. the Network requests AUTHENTICATION every day when people connect and passwords are configured to remain 30 days. Why is this happening? and how I can fix it?&lt;/P&gt;
&lt;P&gt;2. I have the ISE Cluster Server and Active passive, but the problem is, when&amp;nbsp;&amp;nbsp; the active server fails, the&amp;nbsp;passive goes up but continues redirected to the IP of this portal to the firts server and shows misleads users.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;How can I fix this to get high availability?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 06:28:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/problems-with-re-authentication-of-users-and-high-availability/m-p/2828426#M40423</guid>
      <dc:creator>Jean Paul Vanegas B</dc:creator>
      <dc:date>2019-03-11T06:28:58Z</dc:date>
    </item>
    <item>
      <title>Hi Jean-</title>
      <link>https://community.cisco.com/t5/network-access-control/problems-with-re-authentication-of-users-and-high-availability/m-p/2828427#M40424</link>
      <description>&lt;P&gt;Hi Jean-&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="text-decoration: underline;"&gt;&lt;STRONG&gt;For #1:&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;- What do you have configured in your WLC for:&lt;/P&gt;
&lt;P&gt;1. Controller &amp;gt;&amp;nbsp;User Idle Timeout (Seconds)&lt;/P&gt;
&lt;P&gt;2. WLANs &amp;gt; Name of the SSID &amp;gt; Advanced &amp;gt; Enable Session Timeout&lt;/P&gt;
&lt;P&gt;- What attributes are you returning in the &lt;STRONG&gt;Authorization Profile&lt;/STRONG&gt; for those users&lt;/P&gt;
&lt;P&gt;&lt;SPAN style="text-decoration: underline;"&gt;&lt;STRONG&gt;For #2:&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;- What happens if you: Disable Client's wireless adapter &amp;gt; remove the client session from the WLC, re-enable the client's adapter and reconnect again?&lt;/P&gt;
&lt;P&gt;- Do you have the ISE PSNs configured in a Node Group&lt;/P&gt;
&lt;P&gt;- Under the WLC, what do you have configured for Security &amp;gt; RADIUS &amp;gt; Fallback&lt;/P&gt;
&lt;P&gt;- Under the SSID, what do you have configured for Security &amp;gt; AAA Servers (attach screen shot)&lt;/P&gt;
&lt;P&gt;- How is your DNS configured for resolving the PSNs to the Gust portal&lt;/P&gt;
&lt;P&gt;I know there are a lot of questions but we need more details before we can help &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 13 Feb 2016 05:12:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/problems-with-re-authentication-of-users-and-high-availability/m-p/2828427#M40424</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2016-02-13T05:12:43Z</dc:date>
    </item>
    <item>
      <title>thank you Neno, for you assap</title>
      <link>https://community.cisco.com/t5/network-access-control/problems-with-re-authentication-of-users-and-high-availability/m-p/2828428#M40425</link>
      <description>&lt;P&gt;thank you Neno, for you assap anwer,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;The ISE 1.4 server is migrated from version 1.2 with an SSID do not ask credentials daily, only weekly or when you stopped connect to the network for more than three days, and controllers were had the same configuration, I mean I think, that the Parameters to the controllers are not.&lt;/P&gt;
&lt;P&gt;I therefore believe that the parameter must be configured in the ISE. and these parameters have not found. Previous version was in a parameter of Client timeout in this not see it.&lt;/P&gt;
&lt;P&gt;for part two. I think the problem is the DNS resolution, and that this network is not internal but it is not public. I will review it and respond well after.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Mon, 15 Feb 2016 16:32:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/problems-with-re-authentication-of-users-and-high-availability/m-p/2828428#M40425</guid>
      <dc:creator>Jean Paul Vanegas B</dc:creator>
      <dc:date>2016-02-15T16:32:15Z</dc:date>
    </item>
  </channel>
</rss>

