<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 5238 Endpoint authentication problem was fixed in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461707#M518197</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm using ISE 2.4 but I got this message too while trying to test BYOD with an Android device and Cisco WLC 2504. &lt;/P&gt;&lt;P&gt;&lt;IMG alt="wlc2.png" class="image-1 jive-image" src="https://community.cisco.com/legacyfs/online/fusion/117489_wlc2.png" style="height: auto;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I checked the WLC and enabling/disabling the features on the WLC had no effect. How can I get rid of this problem?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 08 Jun 2018 12:20:28 GMT</pubDate>
    <dc:creator>ciscoworlds</dc:creator>
    <dc:date>2018-06-08T12:20:28Z</dc:date>
    <item>
      <title>5238 Endpoint authentication problem was fixed</title>
      <link>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461702#M518187</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am seeing a lot of these lately ... I did a google search and I saw a comment from the Support Forum that it relates to clients that were being suppressed, and are now authenticating again.&amp;nbsp; I have no idea what that means ... and the LiveLog detail below doesn't tell me which client or endpoint has been 'fixed'.&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any clues?&amp;nbsp; The image below has not been edited - it's a straight copy and paste.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG class="image-1 jive-image" src="https://community.cisco.com/legacyfs/online/fusion/114905_pastedImage_0.png" style="max-height: 900px; max-width: 1200px;" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 30 Jan 2018 04:19:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461702#M518187</guid>
      <dc:creator>Arne Bier</dc:creator>
      <dc:date>2018-01-30T04:19:08Z</dc:date>
    </item>
    <item>
      <title>Re: 5238 Endpoint authentication problem was fixed</title>
      <link>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461703#M518190</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Arne-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Which version of ISE are you running?&lt;/P&gt;&lt;P&gt;If you click on the "Misconfigured Supplicant" alarm from the home page, it will give you a lot more information see example below:&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;Endpoint Id: 14:B0:1F:20:F0:10&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;Username: 14:B0:1F:20:F0:10&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;Radius Username: 14:B0:1F:20:F0:10&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;Network Device Name: Switch name&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;Access Type: All Device Types#Switches&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;Location: All Locations#Department&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;NAS IP: x.x.x.x 15039 Rejected per authorization profile &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;Selected Authorization Profile contains ACCESS_REJECT attribute&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;Authorization Profile with ACCESS_REJECT attribute was selected as a result of the matching authorization rule. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;Check the appropriate Authorization policy rule-results.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;The "silent" means that it has been a quite device and there is no real impact.&amp;nbsp; You may want to check the "Anomolous Client Suppression" settings for the version you are using&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;HTH&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 13.3333px;"&gt;Vince&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 30 Jan 2018 14:49:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461703#M518190</guid>
      <dc:creator>vrostowsky</dc:creator>
      <dc:date>2018-01-30T14:49:49Z</dc:date>
    </item>
    <item>
      <title>Re: 5238 Endpoint authentication problem was fixed</title>
      <link>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461704#M518192</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI Vince&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;using 2.3 patch 1 in production. Not patched to patch 2 yet. &lt;/P&gt;&lt;P&gt;I’ll have a look at my settings. But I was mostly questioning the quite useless LiveLog entry that doesn’t tell me what endpoint it’s referring to. &lt;/P&gt;&lt;P&gt;Does your version populate the endpoint for that LiveLog entry which then correlated to the Alarm data you mentioned?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 30 Jan 2018 19:37:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461704#M518192</guid>
      <dc:creator>Arne Bier</dc:creator>
      <dc:date>2018-01-30T19:37:49Z</dc:date>
    </item>
    <item>
      <title>Re: 5238 Endpoint authentication problem was fixed</title>
      <link>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461705#M518193</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Arne-&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am running 2.3 patch 2, but i do not even see those events in my Radius live logs,&lt;/P&gt;&lt;P&gt;i go into the Alarm panel from home and view the events through there.&amp;nbsp; That is where all the details show&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Vince&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 30 Jan 2018 21:26:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461705#M518193</guid>
      <dc:creator>vrostowsky</dc:creator>
      <dc:date>2018-01-30T21:26:15Z</dc:date>
    </item>
    <item>
      <title>Re: 5238 Endpoint authentication problem was fixed</title>
      <link>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461706#M518195</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;CSCvg36508 is an existing defect. It will take about 1 day for review before external accessible, as I just updated it.&lt;/P&gt;&lt;P&gt;It's addressed in ISE 2.4 only at the moment.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 03 Feb 2018 23:40:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461706#M518195</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2018-02-03T23:40:35Z</dc:date>
    </item>
    <item>
      <title>Re: 5238 Endpoint authentication problem was fixed</title>
      <link>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461707#M518197</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm using ISE 2.4 but I got this message too while trying to test BYOD with an Android device and Cisco WLC 2504. &lt;/P&gt;&lt;P&gt;&lt;IMG alt="wlc2.png" class="image-1 jive-image" src="https://community.cisco.com/legacyfs/online/fusion/117489_wlc2.png" style="height: auto;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I checked the WLC and enabling/disabling the features on the WLC had no effect. How can I get rid of this problem?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jun 2018 12:20:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461707#M518197</guid>
      <dc:creator>ciscoworlds</dc:creator>
      <dc:date>2018-06-08T12:20:28Z</dc:date>
    </item>
    <item>
      <title>Re: 5238 Endpoint authentication problem was fixed</title>
      <link>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461708#M518199</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;In your case, the report has an endpoint ID. Thus, it's not the same.&lt;/P&gt;&lt;P&gt;Please run RADIUS error report and RADIUS auth report on that endpoint ID. If that is not giving you enough info, please engage Cisco TAC.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Jun 2018 13:10:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/3461708#M518199</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2018-06-08T13:10:21Z</dc:date>
    </item>
    <item>
      <title>Re: 5238 Endpoint authentication problem was fixed</title>
      <link>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/4824286#M581443</link>
      <description>&lt;P&gt;Found good information regarding this functionality in the following link:&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.networkworld.com/article/3053669/troubleshooting-ciscos-ise-without-tac.html" target="_blank"&gt;https://www.networkworld.com/article/3053669/troubleshooting-ciscos-ise-without-tac.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 28 Apr 2023 15:54:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/5238-endpoint-authentication-problem-was-fixed/m-p/4824286#M581443</guid>
      <dc:creator>rezaalikhani</dc:creator>
      <dc:date>2023-04-28T15:54:59Z</dc:date>
    </item>
  </channel>
</rss>

