<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: UNKNOWN Domain radius server dead in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/3994514#M455378</link>
    <description>&lt;P&gt;Try the following:&lt;/P&gt;
&lt;P&gt;authentication event server dead action reinitialize {ACCESS_VLAN}&lt;/P&gt;
&lt;P&gt;authentication event server dead action authorize voice&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/security-documents/top-ten-mis-configured-cisco-ios-switch-settings-for-ise/ta-p/3643912#toc-hId--651964017" target="_blank" rel="noopener"&gt;https://community.cisco.com/t5/security-documents/top-ten-mis-configured-cisco-ios-switch-settings-for-ise/ta-p/3643912#toc-hId--651964017&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 06 Dec 2019 00:31:03 GMT</pubDate>
    <dc:creator>howon</dc:creator>
    <dc:date>2019-12-06T00:31:03Z</dc:date>
    <item>
      <title>UNKNOWN Domain radius server dead</title>
      <link>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/3991858#M455285</link>
      <description>&lt;P&gt;Currently have an issue when our edge switch reboots the authentication sessions on the switch come back with "UNKNOWN" domain.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The AAA server is marked as "alive" but these auth session stay in an "UNKNOWN" Domain and failed Authentication .&lt;/P&gt;&lt;P&gt;Shouldn't these port "reinitialize" when the AAA server become reachable again?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture1.PNG" style="width: 746px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/62550iC74C8BD86539DCA7/image-size/large?v=v2&amp;amp;px=999" role="button" title="Capture1.PNG" alt="Capture1.PNG" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture2.PNG" style="width: 494px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/62549iAC3067F379E33500/image-size/large?v=v2&amp;amp;px=999" role="button" title="Capture2.PNG" alt="Capture2.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture3.PNG" style="width: 521px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/62551iB6295F63EC966846/image-size/large?v=v2&amp;amp;px=999" role="button" title="Capture3.PNG" alt="Capture3.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 02 Dec 2019 03:27:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/3991858#M455285</guid>
      <dc:creator>x00008037</dc:creator>
      <dc:date>2019-12-02T03:27:47Z</dc:date>
    </item>
    <item>
      <title>Re: UNKNOWN Domain radius server dead</title>
      <link>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/3994502#M455288</link>
      <description>&lt;P&gt;It may be possible that since this is due to switch reload rather than AAA down scenario, the reinitialization is not being triggered. It has been a while, but I recall suggesting to recycle the interface (shut/no shut) after such incident to get the authentication working, which can be scripted via management tool.&lt;/P&gt;</description>
      <pubDate>Thu, 05 Dec 2019 23:33:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/3994502#M455288</guid>
      <dc:creator>howon</dc:creator>
      <dc:date>2019-12-05T23:33:11Z</dc:date>
    </item>
    <item>
      <title>Re: UNKNOWN Domain radius server dead</title>
      <link>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/3994508#M455377</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks for the reply, but even when the radius server is marked down the session on the switch ports fail into an authorized state with DOMAIN UNKNOWN. When the server becomes reachable again the Domain stays in UNKNOWN state,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a mechanism to re-initilise the ports without a shut no shut? I would of though the switch port config "alive action re-initilize" as enough?&lt;/P&gt;&lt;P&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 05 Dec 2019 23:53:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/3994508#M455377</guid>
      <dc:creator>x00008037</dc:creator>
      <dc:date>2019-12-05T23:53:46Z</dc:date>
    </item>
    <item>
      <title>Re: UNKNOWN Domain radius server dead</title>
      <link>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/3994514#M455378</link>
      <description>&lt;P&gt;Try the following:&lt;/P&gt;
&lt;P&gt;authentication event server dead action reinitialize {ACCESS_VLAN}&lt;/P&gt;
&lt;P&gt;authentication event server dead action authorize voice&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/security-documents/top-ten-mis-configured-cisco-ios-switch-settings-for-ise/ta-p/3643912#toc-hId--651964017" target="_blank" rel="noopener"&gt;https://community.cisco.com/t5/security-documents/top-ten-mis-configured-cisco-ios-switch-settings-for-ise/ta-p/3643912#toc-hId--651964017&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 06 Dec 2019 00:31:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/3994514#M455378</guid>
      <dc:creator>howon</dc:creator>
      <dc:date>2019-12-06T00:31:03Z</dc:date>
    </item>
    <item>
      <title>Re: UNKNOWN Domain radius server dead</title>
      <link>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/4024701#M455379</link>
      <description>&lt;P&gt;Still an issue,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Ports are being marked in an UNKNOWN state when the radius server is marked DEAD. Then when radius server comes back online the DOMAIN remains in UNKNOWN state&lt;/P&gt;</description>
      <pubDate>Thu, 06 Feb 2020 06:46:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/4024701#M455379</guid>
      <dc:creator>x00008037</dc:creator>
      <dc:date>2020-02-06T06:46:18Z</dc:date>
    </item>
    <item>
      <title>Re: UNKNOWN Domain radius server dead</title>
      <link>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/5196580#M591894</link>
      <description>&lt;P&gt;Did you find a resolution for the UNKNOWN state after RAIDUS servers were down?&lt;/P&gt;</description>
      <pubDate>Thu, 19 Sep 2024 19:53:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/unknown-domain-radius-server-dead/m-p/5196580#M591894</guid>
      <dc:creator>Captain82</dc:creator>
      <dc:date>2024-09-19T19:53:45Z</dc:date>
    </item>
  </channel>
</rss>

