<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Wired EAP-FAST User Machine authentication in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/wired-eap-fast-user-machine-authentication/m-p/3829448#M474334</link>
    <description>&lt;P&gt;Dears,&lt;/P&gt;&lt;P&gt;I am trying to authenticate my domain PC's/users with ISE and am using Any-connect 4.2 with eap-fast user and machine authentication.&lt;/P&gt;&lt;P&gt;Everything was working with window 7 until I re-image two nodes from 1.4 to 2.2 and restore ISE configs. I have window 7 which is in process to upgrade to window 10.&lt;/P&gt;&lt;P&gt;ISSUE:&lt;BR /&gt;1. After signing out window 10 machine authentication is happening and getting right result but after signing in with domain user posture is not working after looping its saying no policy server found. For it to work i have to click on NAM profile once more to re authenticate and in that case its starting its posture check.&lt;/P&gt;&lt;P&gt;2. Some machines are not even authenticating even i did restart, sign out. No session is showing on switch-port.&lt;BR /&gt;3. Some machine on authentication getting IPV6 logo only because we are not using IPv6 in the environment.&lt;/P&gt;</description>
    <pubDate>Sun, 31 Mar 2019 08:15:22 GMT</pubDate>
    <dc:creator>ansarjavaid54</dc:creator>
    <dc:date>2019-03-31T08:15:22Z</dc:date>
    <item>
      <title>Wired EAP-FAST User Machine authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/wired-eap-fast-user-machine-authentication/m-p/3829448#M474334</link>
      <description>&lt;P&gt;Dears,&lt;/P&gt;&lt;P&gt;I am trying to authenticate my domain PC's/users with ISE and am using Any-connect 4.2 with eap-fast user and machine authentication.&lt;/P&gt;&lt;P&gt;Everything was working with window 7 until I re-image two nodes from 1.4 to 2.2 and restore ISE configs. I have window 7 which is in process to upgrade to window 10.&lt;/P&gt;&lt;P&gt;ISSUE:&lt;BR /&gt;1. After signing out window 10 machine authentication is happening and getting right result but after signing in with domain user posture is not working after looping its saying no policy server found. For it to work i have to click on NAM profile once more to re authenticate and in that case its starting its posture check.&lt;/P&gt;&lt;P&gt;2. Some machines are not even authenticating even i did restart, sign out. No session is showing on switch-port.&lt;BR /&gt;3. Some machine on authentication getting IPV6 logo only because we are not using IPv6 in the environment.&lt;/P&gt;</description>
      <pubDate>Sun, 31 Mar 2019 08:15:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/wired-eap-fast-user-machine-authentication/m-p/3829448#M474334</guid>
      <dc:creator>ansarjavaid54</dc:creator>
      <dc:date>2019-03-31T08:15:22Z</dc:date>
    </item>
    <item>
      <title>Re: Wired EAP-FAST User Machine authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/wired-eap-fast-user-machine-authentication/m-p/3830031#M474339</link>
      <description>Try using NAM profile editor to change configuration.xml to enable port exceptions (allow data traffic before authentication). Are you performing VN or vlan changes during the authz process? For example, restricted access in one vlan until posture status is compliant.</description>
      <pubDate>Mon, 01 Apr 2019 15:26:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/wired-eap-fast-user-machine-authentication/m-p/3830031#M474339</guid>
      <dc:creator>Mike.Cifelli</dc:creator>
      <dc:date>2019-04-01T15:26:52Z</dc:date>
    </item>
    <item>
      <title>Re: Wired EAP-FAST User Machine authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/wired-eap-fast-user-machine-authentication/m-p/3830877#M474345</link>
      <description>&lt;P&gt;Hi Mike.&lt;/P&gt;&lt;P&gt;Thank you for the reply. Yes suggested option is already enabled and am using dACL to restrict instead of VLAN.&lt;/P&gt;</description>
      <pubDate>Tue, 02 Apr 2019 18:25:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/wired-eap-fast-user-machine-authentication/m-p/3830877#M474345</guid>
      <dc:creator>bassam</dc:creator>
      <dc:date>2019-04-02T18:25:41Z</dc:date>
    </item>
    <item>
      <title>Re: Wired EAP-FAST User Machine authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/wired-eap-fast-user-machine-authentication/m-p/3830879#M474351</link>
      <description>"Ansar"</description>
      <pubDate>Tue, 02 Apr 2019 18:32:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/wired-eap-fast-user-machine-authentication/m-p/3830879#M474351</guid>
      <dc:creator>ansarjavaid54</dc:creator>
      <dc:date>2019-04-02T18:32:09Z</dc:date>
    </item>
  </channel>
</rss>

