<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Misconfigured Network Device Detected in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/3812245#M484698</link>
    <description>&lt;P&gt;Looking for a wider opinion.&amp;nbsp; I have several routers that I use ISE RADIUS for device management. I do not have a TACACS license.&amp;nbsp; I just use ISE to login in to them. I have ISE generating misconfigured alarms for some of my routers. &lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have two ASRs in the network and one constantly generates these alarms while the other one does not.&amp;nbsp; They both have the same AAA config and are at the same version of code.&amp;nbsp; Not understanding why one alarms and the other does not.&amp;nbsp; There are a few switches that give this error as well.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;TAC has told me a few things.&amp;nbsp; 1) My configuration looks OK. 2) If the devices aren't on the ISE compatibility list, then I can expect these types of problems.&amp;nbsp; I generally thought the compatibility list was for user auth feature/functionality, not console login compatibility.&amp;nbsp; 3) I should disable these alarms because they are prone to false errors and considered unreliable.&amp;nbsp;&amp;nbsp; I'm really not able to get assistance to troubleshoot why the error is happening.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Has anybody else run across this error and if so, did you disable the alarm?&lt;/P&gt;
&lt;P&gt;Alarm Name : &lt;BR /&gt;Misconfigured Network Device Detected&lt;/P&gt;
&lt;P&gt;Details : &lt;BR /&gt;Misconfigured NAS Detected with NAS IP Address=192.168.1.1&lt;/P&gt;
&lt;P&gt;Description : &lt;BR /&gt;ISE has detected misconfigured parameters on the NAS, or RADIUS accounting updates occur too frequently&lt;/P&gt;
&lt;P&gt;Severity : &lt;BR /&gt;Warning&lt;/P&gt;
&lt;P&gt;Suggested Actions : &lt;BR /&gt;Verify that parameters on the NAS are properly configured. Verify that the shared secret on the NAS is correct.&lt;/P&gt;
&lt;P&gt;*** This message is generated by Cisco Identity Services Engine (ISE) ***&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Ryan&lt;/P&gt;</description>
    <pubDate>Fri, 01 Mar 2019 02:48:03 GMT</pubDate>
    <dc:creator>hcrtechnology</dc:creator>
    <dc:date>2019-03-01T02:48:03Z</dc:date>
    <item>
      <title>Misconfigured Network Device Detected</title>
      <link>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/3812245#M484698</link>
      <description>&lt;P&gt;Looking for a wider opinion.&amp;nbsp; I have several routers that I use ISE RADIUS for device management. I do not have a TACACS license.&amp;nbsp; I just use ISE to login in to them. I have ISE generating misconfigured alarms for some of my routers. &lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have two ASRs in the network and one constantly generates these alarms while the other one does not.&amp;nbsp; They both have the same AAA config and are at the same version of code.&amp;nbsp; Not understanding why one alarms and the other does not.&amp;nbsp; There are a few switches that give this error as well.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;TAC has told me a few things.&amp;nbsp; 1) My configuration looks OK. 2) If the devices aren't on the ISE compatibility list, then I can expect these types of problems.&amp;nbsp; I generally thought the compatibility list was for user auth feature/functionality, not console login compatibility.&amp;nbsp; 3) I should disable these alarms because they are prone to false errors and considered unreliable.&amp;nbsp;&amp;nbsp; I'm really not able to get assistance to troubleshoot why the error is happening.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Has anybody else run across this error and if so, did you disable the alarm?&lt;/P&gt;
&lt;P&gt;Alarm Name : &lt;BR /&gt;Misconfigured Network Device Detected&lt;/P&gt;
&lt;P&gt;Details : &lt;BR /&gt;Misconfigured NAS Detected with NAS IP Address=192.168.1.1&lt;/P&gt;
&lt;P&gt;Description : &lt;BR /&gt;ISE has detected misconfigured parameters on the NAS, or RADIUS accounting updates occur too frequently&lt;/P&gt;
&lt;P&gt;Severity : &lt;BR /&gt;Warning&lt;/P&gt;
&lt;P&gt;Suggested Actions : &lt;BR /&gt;Verify that parameters on the NAS are properly configured. Verify that the shared secret on the NAS is correct.&lt;/P&gt;
&lt;P&gt;*** This message is generated by Cisco Identity Services Engine (ISE) ***&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Ryan&lt;/P&gt;</description>
      <pubDate>Fri, 01 Mar 2019 02:48:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/3812245#M484698</guid>
      <dc:creator>hcrtechnology</dc:creator>
      <dc:date>2019-03-01T02:48:03Z</dc:date>
    </item>
    <item>
      <title>Re: Misconfigured Network Device Detected</title>
      <link>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/3812455#M484701</link>
      <description>&lt;P&gt;oh yeah, this old chestnut.&amp;nbsp; It has to do with the fact that the NAS sends too many Radius Accounting packets in a certain time period.&amp;nbsp; it's a ridiculous message and has nothing to do with a mis-configured client.&lt;/P&gt;
&lt;P&gt;If you take a tcpdump from ISE's perspective, then count the number of radius accounting packets that the NAS sends in a 5 min period (because ISE doesn't let you capture for longer than 5 minutes ... don't get me started on THAT!! &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;cheers&lt;/P&gt;
&lt;P&gt;Arne&lt;/P&gt;</description>
      <pubDate>Fri, 01 Mar 2019 11:51:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/3812455#M484701</guid>
      <dc:creator>Arne Bier</dc:creator>
      <dc:date>2019-03-01T11:51:37Z</dc:date>
    </item>
    <item>
      <title>Re: Misconfigured Network Device Detected</title>
      <link>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/3813781#M484703</link>
      <description>&lt;P&gt;Thanks.&amp;nbsp; I would like to have it stop rather than disabling the alarm.&lt;/P&gt;</description>
      <pubDate>Mon, 04 Mar 2019 19:52:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/3813781#M484703</guid>
      <dc:creator>scamarda</dc:creator>
      <dc:date>2019-03-04T19:52:58Z</dc:date>
    </item>
    <item>
      <title>Re: Misconfigured Network Device Detected</title>
      <link>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/4089633#M560554</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/158532"&gt;@Arne Bier&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You might be right but in our case it actually impacting dot1x.&lt;/P&gt;&lt;P&gt;When I login and run show authentication session command on the switch&lt;/P&gt;&lt;P&gt;I see domain UNKNOW for all the authentication session.&lt;/P&gt;&lt;P&gt;and If I check radius server status on the switch it will be down.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Then as soon as I enter the radius shared secret key it works untill switch reboots (I save the configuration)&lt;/P&gt;&lt;P&gt;It seems happen more on Cat9200 and Cat 9300 running Fuji.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Has any one run into this before?&lt;/P&gt;</description>
      <pubDate>Wed, 20 May 2020 22:06:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/4089633#M560554</guid>
      <dc:creator>Nayan.Patel85</dc:creator>
      <dc:date>2020-05-20T22:06:33Z</dc:date>
    </item>
    <item>
      <title>Re: Misconfigured Network Device Detected</title>
      <link>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/4089636#M560555</link>
      <description>&lt;P&gt;The issue you are seeing has nothing to do with the misconfigured network device alarm.&amp;nbsp; As has been said that is only related to accounting messages.&amp;nbsp; It is our standard practice to disable that alarm and in over 100 installs I have never seen a reason to enable it.&amp;nbsp; Sounds like you are running into a bug maybe.&amp;nbsp; What version of code on you switches?&lt;/P&gt;</description>
      <pubDate>Wed, 20 May 2020 22:09:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/4089636#M560555</guid>
      <dc:creator>paul</dc:creator>
      <dc:date>2020-05-20T22:09:53Z</dc:date>
    </item>
    <item>
      <title>Re: Misconfigured Network Device Detected</title>
      <link>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/4090345#M560597</link>
      <description>Its mix on Cat 9200 - 16.12.1 and 16.11.1 on Cat 9300 - 16.9.5. this happens to all the Cat 9K switches on our network.&lt;BR /&gt;We have around 500 switches majority is 2960X and 3850S, we have only 8 Cat 9Ks and this "Mis Configured NAS detected alarm" comes only for these 8 Cat 9K switches.</description>
      <pubDate>Thu, 21 May 2020 20:49:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/misconfigured-network-device-detected/m-p/4090345#M560597</guid>
      <dc:creator>Nayan.Patel85</dc:creator>
      <dc:date>2020-05-21T20:49:47Z</dc:date>
    </item>
  </channel>
</rss>

