<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 802.1X authentication not happening in Voice Domain for IP P in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652838#M5202</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Firstly thank you for responding&lt;/P&gt;&lt;P class="MsoPlainText"&gt;With regards to your statement about following Step 4 in the hyperlink, assuming it is described as "&lt;SPAN class="content"&gt;Define the Internet Engineering Task Force (IETF) attributes &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;STRONG&gt;64&lt;/STRONG&gt;, &lt;STRONG&gt;65&lt;/STRONG&gt; and &lt;STRONG&gt;81&lt;/STRONG&gt; and then click &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;STRONG&gt;Submit + Restart&lt;/STRONG&gt;.&lt;/SPAN&gt;", then I have a concern.&amp;nbsp; The very first line above it in the doc says: "&lt;SPAN class="content"&gt;&lt;STRONG&gt;Note: &lt;/STRONG&gt;For &lt;STRONG&gt;IP Phones&lt;/STRONG&gt; group configuration alone, skip &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; the next step, step 4, and go to step 5.&lt;/SPAN&gt;&lt;!--[if gte mso 10]&gt;
&lt;style&gt;
 /* Style Definitions */
 table.MsoNormalTable
	{mso-style-name:"Table Normal";
	mso-tstyle-rowband-size:0;
	mso-tstyle-colband-size:0;
	mso-style-noshow:yes;
	mso-style-priority:99;
	mso-style-qformat:yes;
	mso-style-parent:"";
	mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
	mso-para-margin:0cm;
	mso-para-margin-bottom:.0001pt;
	mso-pagination:widow-orphan;
	font-size:11.0pt;
	font-family:"Calibri","sans-serif";
	mso-ascii-font-family:Calibri;
	mso-ascii-theme-font:minor-latin;
	mso-fareast-font-family:"Times New Roman";
	mso-fareast-theme-font:minor-fareast;
	mso-hansi-font-family:Calibri;
	mso-hansi-theme-font:minor-latin;}
&lt;/style&gt;
&lt;![endif]--&gt;"&amp;nbsp;&amp;nbsp; Step 5 is where the, cisco-avpair="device-traffic-class=voice" , is defined which I have already done.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My belief is the dynamic VLAN assignment is incorrect for Voice devices, the RADIUS server just informs the switch that the device is a voice type, and the switch places it in the voice vlan which the switch already knows about.&amp;nbsp; Do you have a different understanding?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 29 Jan 2011 10:55:56 GMT</pubDate>
    <dc:creator>Nicholas Poole</dc:creator>
    <dc:date>2011-01-29T10:55:56Z</dc:date>
    <item>
      <title>802.1X authentication not happening in Voice Domain for IP Phone</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652836#M5200</link>
      <description>&lt;P&gt;I am trying to lab as many scenarios as I can for 802.1x.&amp;nbsp; I seem to have hit a problem with IP Phones running EAP-MD5 authentication.&amp;nbsp; The phone sare always being authenticated in the Data Domain.&amp;nbsp; This is regardless of whether or no the port configuration is in: host-mode multi-auth&amp;nbsp; ,or, host-mode multi-domain.&amp;nbsp; After a while of both ports appearing to authenticate in the data VLAN, neither the PC or Phone will work&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have checked that my ACS5.1 server is sending the appropriate AV pair of "device-traffic-class=voice" as I can see it in a wireshark trace.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What other aspects might i need to check to get the phone to authenticate itself properly?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The problem shows itself as:&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier; font-size: 10pt;"&gt;C3750G#sh authentication sessions int gi 1/0/16&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Interface:&amp;nbsp; GigabitEthernet1/0/16&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; MAC Address:&amp;nbsp; 001d.452d.53e0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; IP Address:&amp;nbsp; Unknown&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; User-Name:&amp;nbsp; CP-7942G-SEP001D452D53E0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Status:&amp;nbsp; Authz Success&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;SPAN style="color: #ff0000;"&gt;&lt;STRONG&gt;Domain:&amp;nbsp; DATA&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Security Policy:&amp;nbsp; Should Secure&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Security Status:&amp;nbsp; Unsecure&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Oper host mode:&amp;nbsp; multi-domain&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Oper control dir:&amp;nbsp; both&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Authorized By:&amp;nbsp; Authentication Server&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Vlan Group:&amp;nbsp; N/A&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Session timeout:&amp;nbsp; N/A&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Idle timeout:&amp;nbsp; N/A&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Common Session ID:&amp;nbsp; C0A8FE2500000014000F6B8F&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Acct Session ID:&amp;nbsp; 0x00000036&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Handle:&amp;nbsp; 0xC8000014&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier; font-size: 10pt;"&gt;Runnable methods list:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Method&amp;nbsp;&amp;nbsp; State&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; dot1x&amp;nbsp;&amp;nbsp;&amp;nbsp; Authc Success&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier; font-size: 10pt;"&gt;----------------------------------------&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Interface:&amp;nbsp; GigabitEthernet1/0/16&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; MAC Address:&amp;nbsp; 0014.c209.896f&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; IP Address:&amp;nbsp; 192.168.10.2&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; User-Name:&amp;nbsp; TEST\TestAdmin&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Status:&amp;nbsp; Running&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Domain:&amp;nbsp; UNKNOWN&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Security Policy:&amp;nbsp; Should Secure&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Security Status:&amp;nbsp; Unsecure&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Oper host mode:&amp;nbsp; multi-domain&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Oper control dir:&amp;nbsp; both&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Session timeout:&amp;nbsp; N/A&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Idle timeout:&amp;nbsp; N/A&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Common Session ID:&amp;nbsp; C0A8FE2500000013000F5A42&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Acct Session ID:&amp;nbsp; 0x00000034&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Handle:&amp;nbsp; 0x27000013&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier; font-size: 10pt;"&gt;Runnable methods list:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Method&amp;nbsp;&amp;nbsp; State&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; dot1x&amp;nbsp;&amp;nbsp;&amp;nbsp; Running&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My port config is:&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier; font-size: 10pt;"&gt;interface GigabitEthernet1/0/16&lt;BR /&gt; description * 802.1x Multi Domain (1Phone + 1PC) *&lt;BR /&gt; switchport access vlan 10&lt;BR /&gt; switchport mode access&lt;BR /&gt; switchport voice vlan 11&lt;BR /&gt; priority-queue out&lt;BR /&gt; authentication host-mode multi-domain&lt;BR /&gt; authentication port-control auto&lt;BR /&gt; udld port aggressive&lt;BR /&gt; mls qos trust dscp&lt;BR /&gt; dot1x pae authenticator&lt;BR /&gt; spanning-tree portfast&lt;BR /&gt;end&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 22 Feb 2020 07:38:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652836#M5200</guid>
      <dc:creator>Nicholas Poole</dc:creator>
      <dc:date>2020-02-22T07:38:35Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X authentication not happening in Voice Domain for IP P</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652837#M5201</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Well if you see in the packet captures that that attribute is actually being returned and seen by the switch then this is what we needed and you're on the right track.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Please verify the step 4 in the below listed document and make sure you've defined voice vlan under the group attributes.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/tech/tk389/tk814/technologies_configuration_example09186a00808abf2d.shtml#radius"&gt;http://www.cisco.com/en/US/tech/tk389/tk814/technologies_configuration_example09186a00808abf2d.shtml#radius&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;In case its already configured then please provide me the following info;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;debug radius&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;debug aaa authentication&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;debug aaa authorization&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;and output of the following command&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;show run | in aaa&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;NOTE:ALL these attributes should be defined on the ACS group set for phone authentication.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;cisco-avpair="device-traffic-class=voice"&lt;BR /&gt;Tunnel-Type=1:VLAN&lt;BR /&gt;Tunnel-Medium-Type=1:802&lt;BR /&gt;Tunnel-Private-Group-ID=1:VOICE-LAN&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Jatin&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Do rate helpful posts~&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 29 Jan 2011 02:58:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652837#M5201</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2011-01-29T02:58:11Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X authentication not happening in Voice Domain for IP P</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652838#M5202</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Firstly thank you for responding&lt;/P&gt;&lt;P class="MsoPlainText"&gt;With regards to your statement about following Step 4 in the hyperlink, assuming it is described as "&lt;SPAN class="content"&gt;Define the Internet Engineering Task Force (IETF) attributes &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;STRONG&gt;64&lt;/STRONG&gt;, &lt;STRONG&gt;65&lt;/STRONG&gt; and &lt;STRONG&gt;81&lt;/STRONG&gt; and then click &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;STRONG&gt;Submit + Restart&lt;/STRONG&gt;.&lt;/SPAN&gt;", then I have a concern.&amp;nbsp; The very first line above it in the doc says: "&lt;SPAN class="content"&gt;&lt;STRONG&gt;Note: &lt;/STRONG&gt;For &lt;STRONG&gt;IP Phones&lt;/STRONG&gt; group configuration alone, skip &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; the next step, step 4, and go to step 5.&lt;/SPAN&gt;&lt;!--[if gte mso 10]&gt;
&lt;style&gt;
 /* Style Definitions */
 table.MsoNormalTable
	{mso-style-name:"Table Normal";
	mso-tstyle-rowband-size:0;
	mso-tstyle-colband-size:0;
	mso-style-noshow:yes;
	mso-style-priority:99;
	mso-style-qformat:yes;
	mso-style-parent:"";
	mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
	mso-para-margin:0cm;
	mso-para-margin-bottom:.0001pt;
	mso-pagination:widow-orphan;
	font-size:11.0pt;
	font-family:"Calibri","sans-serif";
	mso-ascii-font-family:Calibri;
	mso-ascii-theme-font:minor-latin;
	mso-fareast-font-family:"Times New Roman";
	mso-fareast-theme-font:minor-fareast;
	mso-hansi-font-family:Calibri;
	mso-hansi-theme-font:minor-latin;}
&lt;/style&gt;
&lt;![endif]--&gt;"&amp;nbsp;&amp;nbsp; Step 5 is where the, cisco-avpair="device-traffic-class=voice" , is defined which I have already done.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My belief is the dynamic VLAN assignment is incorrect for Voice devices, the RADIUS server just informs the switch that the device is a voice type, and the switch places it in the voice vlan which the switch already knows about.&amp;nbsp; Do you have a different understanding?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 29 Jan 2011 10:55:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652838#M5202</guid>
      <dc:creator>Nicholas Poole</dc:creator>
      <dc:date>2011-01-29T10:55:56Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X authentication not happening in Voice Domain for IP P</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652839#M5203</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;For information, the debugs you request are:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier; font-size: 10pt;"&gt;Jan 29 10:58:46.317: %ILPOWER-7-DETECT: Interface Gi1/0/16: Power Device detected: IEEE PD&lt;BR /&gt;Jan 29 10:58:46.770: %ILPOWER-5-POWER_GRANTED: Interface Gi1/0/16: Power granted&lt;BR /&gt;Jan 29 10:58:50.377: AAA/BIND(0000001D): Bind i/f&lt;BR /&gt;Jan 29 10:58:52.373: %LINK-3-UPDOWN: Interface GigabitEthernet1/0/16, changed state to up&lt;BR /&gt;Jan 29 10:58:53.380: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet1/0/16, changed state to up&lt;BR /&gt;Jan 29 10:58:54.789: %AUTHMGR-5-START: Starting 'dot1x' for client (001d.452d.53e0) on Interface Gi1/0/16 AuditSessionID C0A&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 8FE2500000018002FB1D0&lt;BR /&gt;Jan 29 10:58:56.920: AAA/AUTHEN/8021X (0000001D): Pick method list 'default'&lt;BR /&gt;Jan 29 10:58:56.920: RADIUS/ENCODE(0000001D):Orig. component type = DOT1X&lt;BR /&gt;Jan 29 10:58:56.920: RADIUS(0000001D): Config NAS IP: 192.168.254.37&lt;BR /&gt;Jan 29 10:58:56.920: RADIUS/ENCODE(0000001D): acct_session_id: 54&lt;BR /&gt;Jan 29 10:58:56.920: RADIUS(0000001D): sending&lt;BR /&gt;Jan 29 10:58:56.920: RADIUS(0000001D): Send Access-Request to 192.168.254.51:1645 id 1645/52, len 237&lt;BR /&gt;Jan 29 10:58:56.920: RADIUS:&amp;nbsp; authenticator 89 81 92 2C AA 6B E6 E6 - CA 2C 3A 0D E1 C5 28 ED&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; User-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 26&amp;nbsp; "CP-7942G-SEP001D452D53E0"&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; Service-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [6]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Framed&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [2]&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; Framed-MTU&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [12]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 1500&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; Called-Station-Id&amp;nbsp;&amp;nbsp; [30]&amp;nbsp; 19&amp;nbsp; "30-37-A6-AB-8E-90"&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; Calling-Station-Id&amp;nbsp; [31]&amp;nbsp; 19&amp;nbsp; "00-1D-45-2D-53-E0"&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; EAP-Message&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [79]&amp;nbsp; 31&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp;&amp;nbsp; 02 01 00 1D 01 43 50 2D 37 39 34 32 47 2D 53 45 50 30 30 31 44&amp;nbsp; [CP-7942G-SEP001D]&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp;&amp;nbsp; 34 35 32 44 35 33 45 30&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 452D53E0]&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; Message-Authenticato[80]&amp;nbsp; 18&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp;&amp;nbsp; 83 AF F8 DB 44 0D 0A 46 70 2F 1E 8D 67 CE BC DD&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ DFp/g]&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; EAP-Key-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [102] 2&amp;nbsp;&amp;nbsp; *&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; Vendor, Cisco&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [26]&amp;nbsp; 49&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp;&amp;nbsp; Cisco AVpair&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 43&amp;nbsp; "audit-session-id=C0A8FE2500000018002FB1D0"&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; NAS-Port-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [61]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Ethernet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [15]&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; NAS-Port&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [5]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 50116&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; NAS-Port-Id&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [87]&amp;nbsp; 23&amp;nbsp; "GigabitEthernet1/0/16"&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; NAS-IP-Address&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [4]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 192.168.254.37&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS(0000001D): Started 4 sec timeout&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS: Received from id 1645/52 192.168.254.51:1645, Access-Challenge, len 76&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; authenticator DA 45 B9 F8 80 48 A0 4B - F7 99 9B 1F DE 4F B2 9E&lt;BR /&gt;Jan 29 10:58:56.928: RADIUS:&amp;nbsp; State&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [24]&amp;nbsp; 30&lt;BR /&gt;Jan 29 10:58:56.937: RADIUS:&amp;nbsp;&amp;nbsp; 32 35 53 65 73 73 69 6F 6E 49 44 3D 41 43 53 2F&amp;nbsp; [25SessionID=ACS/]&lt;BR /&gt;Jan 29 10:58:56.937: RADIUS:&amp;nbsp;&amp;nbsp; 38 35 36 37 30 35 31 38 2F 33 33 3B&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 85670518/33;]&lt;BR /&gt;Jan 29 10:58:56.937: RADIUS:&amp;nbsp; EAP-Message&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [79]&amp;nbsp; 8&lt;BR /&gt;Jan 29 10:58:56.937: RADIUS:&amp;nbsp;&amp;nbsp; 01 51 00 06 0D 20&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ Q ]&lt;BR /&gt;Jan 29 10:58:56.937: RADIUS:&amp;nbsp; Message-Authenticato[80]&amp;nbsp; 18&lt;BR /&gt;Jan 29 10:58:56.937: RADIUS:&amp;nbsp;&amp;nbsp; 3C F4 D9 93 82 EA FB 25 A7 9D C4 8F 14 3F 33 4F&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ Jan 29 10:58:56.937: RADIUS(0000001D): Received from id 1645/52&lt;BR /&gt;Jan 29 10:58:56.937: RADIUS/DECODE: EAP-Message fragments, 6, total 6 bytes&lt;BR /&gt;Jan 29 10:58:57.046: AAA/AUTHEN/8021X (0000001D): Pick method list 'default'&lt;BR /&gt;Jan 29 10:58:57.046: RADIUS/ENCODE(0000001D):Orig. component type = DOT1X&lt;BR /&gt;Jan 29 10:58:57.046: RADIUS(0000001D): Config NAS IP: 192.168.254.37&lt;BR /&gt;Jan 29 10:58:57.046: RADIUS/ENCODE(0000001D): acct_session_id: 54&lt;BR /&gt;Jan 29 10:58:57.046: RADIUS(0000001D): sending&lt;BR /&gt;Jan 29 10:58:57.046: RADIUS(0000001D): Send Access-Request to 192.168.254.51:1645 id 1645/53, len 244&lt;BR /&gt;Jan 29 10:58:57.046: RADIUS:&amp;nbsp; authenticator BE 9B 32 59 45 BF 15 45 - E4 43 02 B5 B5 D7 ED 83&lt;BR /&gt;Jan 29 10:58:57.046: RADIUS:&amp;nbsp; User-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 26&amp;nbsp; "CP-7942G-SEP001D452D53E0"&lt;BR /&gt;Jan 29 10:58:57.046: RADIUS:&amp;nbsp; Service-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [6]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Framed&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [2]&lt;BR /&gt;Jan 29 10:58:57.046: RADIUS:&amp;nbsp; Framed-MTU&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [12]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 1500&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; Called-Station-Id&amp;nbsp;&amp;nbsp; [30]&amp;nbsp; 19&amp;nbsp; "30-37-A6-AB-8E-90"&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; Calling-Station-Id&amp;nbsp; [31]&amp;nbsp; 19&amp;nbsp; "00-1D-45-2D-53-E0"&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; EAP-Message&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [79]&amp;nbsp; 8&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp;&amp;nbsp; 02 51 00 06 03 04&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ Q]&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; Message-Authenticato[80]&amp;nbsp; 18&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp;&amp;nbsp; E0 B5 99 82 7E 9E 35 0F 78 D9 BD 4B 96 97 34 47&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ ~5xK4G]&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; EAP-Key-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [102] 2&amp;nbsp;&amp;nbsp; *&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; Vendor, Cisco&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [26]&amp;nbsp; 49&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp;&amp;nbsp; Cisco AVpair&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 43&amp;nbsp; "audit-session-id=C0A8FE2500000018002FB1D0"&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; NAS-Port-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [61]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Ethernet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [15]&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; NAS-Port&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [5]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 50116&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; NAS-Port-Id&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [87]&amp;nbsp; 23&amp;nbsp; "GigabitEthernet1/0/16"&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; State&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [24]&amp;nbsp; 30&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp;&amp;nbsp; 32 35 53 65 73 73 69 6F 6E 49 44 3D 41 43 53 2F&amp;nbsp; [25SessionID=ACS/]&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp;&amp;nbsp; 38 35 36 37 30 35 31 38 2F 33 33 3B&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 85670518/33;]&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; NAS-IP-Address&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [4]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 192.168.254.37&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS(0000001D): Started 4 sec timeout&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS: Received from id 1645/53 192.168.254.51:1645, Access-Challenge, len 95&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; authenticator D9 62 B7 27 8F 55 E9 88 - 41 01 D0 83 52 DF 36 29&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp; State&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [24]&amp;nbsp; 30&lt;BR /&gt;Jan 29 10:58:57.054: RADIUS:&amp;nbsp;&amp;nbsp; 32 35 53 65 73 73 69 6F 6E 49 44 3D 41 43 53 2F&amp;nbsp; [25SessionID=ACS/]&lt;BR /&gt;Jan 29 10:58:57.063: RADIUS:&amp;nbsp;&amp;nbsp; 38 35 36 37 30 35 31 38 2F 33 33 3B&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 85670518/33;]&lt;BR /&gt;Jan 29 10:58:57.063: RADIUS:&amp;nbsp; EAP-Message&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [79]&amp;nbsp; 27&lt;BR /&gt;Jan 29 10:58:57.063: RADIUS:&amp;nbsp;&amp;nbsp; 01 52 00 19 04 10 AA 6A A2 BC 63 1A C0 93 B8 58 67 F7 1A A5 FD 45 41 43 53&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ RjcXgEAC&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; S]&lt;BR /&gt;Jan 29 10:58:57.063: RADIUS:&amp;nbsp; Message-Authenticato[80]&amp;nbsp; 18&lt;BR /&gt;Jan 29 10:58:57.063: RADIUS:&amp;nbsp;&amp;nbsp; 29 D2 66 87 4A 2F B3 9E B5 EC F9 4E 9F 62 82 5E&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ )fJ/Nb^]&lt;BR /&gt;Jan 29 10:58:57.063: RADIUS(0000001D): Received from id 1645/53&lt;BR /&gt;Jan 29 10:58:57.063: RADIUS/DECODE: EAP-Message fragments, 25, total 25 bytes&lt;BR /&gt;Jan 29 10:58:57.079: AAA/AUTHEN/8021X (0000001D): Pick method list 'default'&lt;BR /&gt;Jan 29 10:58:57.079: RADIUS/ENCODE(0000001D):Orig. component type = DOT1X&lt;BR /&gt;Jan 29 10:58:57.079: RADIUS(0000001D): Config NAS IP: 192.168.254.37&lt;BR /&gt;Jan 29 10:58:57.079: RADIUS/ENCODE(0000001D): acct_session_id: 54&lt;BR /&gt;Jan 29 10:58:57.079: RADIUS(0000001D): sending&lt;BR /&gt;Jan 29 10:58:57.079: RADIUS(0000001D): Send Access-Request to 192.168.254.51:1645 id 1645/54, len 284&lt;BR /&gt;Jan 29 10:58:57.079: RADIUS:&amp;nbsp; authenticator 91 F4 7C C1 4E 79 27 AB - 2F 36 20 A8 9C 3F A9 76&lt;BR /&gt;Jan 29 10:58:57.079: RADIUS:&amp;nbsp; User-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 26&amp;nbsp; "CP-7942G-SEP001D452D53E0"&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; Service-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [6]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Framed&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [2]&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; Framed-MTU&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [12]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 1500&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; Called-Station-Id&amp;nbsp;&amp;nbsp; [30]&amp;nbsp; 19&amp;nbsp; "30-37-A6-AB-8E-90"&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; Calling-Station-Id&amp;nbsp; [31]&amp;nbsp; 19&amp;nbsp; "00-1D-45-2D-53-E0"&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; EAP-Message&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [79]&amp;nbsp; 48&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp;&amp;nbsp; 02 52 00 2E 04 10 45 2F B1 FC 60 CF 09 08 7B C4 F9 56 74 AF 44 E9 43 50 2D 37 39 34 32&amp;nbsp; [R.E/&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; `{VtDCP-7942]&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp;&amp;nbsp; 47 2D 53 45 50 30 30 31 44 34 35 32 44 35 33 45&amp;nbsp; [G-SEP001D452D53E]&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp;&amp;nbsp; 30&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 0]&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; Message-Authenticato[80]&amp;nbsp; 18&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp;&amp;nbsp; 45 42 58 9F 75 14 09 A1 FC DD CD 26 B4 88 42 CF&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ EBXu&amp;amp;B]&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; EAP-Key-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [102] 2&amp;nbsp;&amp;nbsp; *&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; Vendor, Cisco&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [26]&amp;nbsp; 49&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp;&amp;nbsp; Cisco AVpair&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 43&amp;nbsp; "audit-session-id=C0A8FE2500000018002FB1D0"&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; NAS-Port-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [61]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Ethernet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [15]&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; NAS-Port&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [5]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 50116&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; NAS-Port-Id&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [87]&amp;nbsp; 23&amp;nbsp; "GigabitEthernet1/0/16"&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; State&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [24]&amp;nbsp; 30&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp;&amp;nbsp; 32 35 53 65 73 73 69 6F 6E 49 44 3D 41 43 53 2F&amp;nbsp; [25SessionID=ACS/]&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp;&amp;nbsp; 38 35 36 37 30 35 31 38 2F 33 33 3B&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 85670518/33;]&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS:&amp;nbsp; NAS-IP-Address&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [4]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 192.168.254.37&lt;BR /&gt;Jan 29 10:58:57.088: RADIUS(0000001D): Started 4 sec timeout&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS: Received from id 1645/54 192.168.254.51:1645, Access-Accept, len 126&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS:&amp;nbsp; authenticator 7B A5 E0 B2 D6 15 90 26 - 8F 8F 64 B0 E6 94 D8 C7&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS:&amp;nbsp; User-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 26&amp;nbsp; "CP-7942G-SEP001D452D53E0"&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS:&amp;nbsp; Class&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [25]&amp;nbsp; 22&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS:&amp;nbsp;&amp;nbsp; 43 41 43 53 3A 41 43 53 2F 38 35 36 37 30 35 31&amp;nbsp; [CACS:ACS/8567051]&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS:&amp;nbsp;&amp;nbsp; 38 2F 33 33&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 8/33]&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS:&amp;nbsp; EAP-Message&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [79]&amp;nbsp; 6&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS:&amp;nbsp;&amp;nbsp; 03 52 00 04&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ R]&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS:&amp;nbsp; Message-Authenticato[80]&amp;nbsp; 18&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS:&amp;nbsp;&amp;nbsp; E8 2E 9B FD C2 A8 D7 5E 86 DD 3C 67 FF 37 75 02&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ .^&lt;G7U&gt;&lt;/G7U&gt;Jan 29 10:58:57.222: RADIUS:&amp;nbsp; Vendor, Cisco&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [26]&amp;nbsp; 34&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS:&amp;nbsp;&amp;nbsp; Cisco AVpair&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 28&amp;nbsp; "device-traffic-class=voice"&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS(0000001D): Received from id 1645/54&lt;BR /&gt;Jan 29 10:58:57.222: RADIUS/DECODE: EAP-Message fragments, 4, total 4 bytes&lt;BR /&gt;Jan 29 10:58:57.222: AAA/AUTHOR (0000001D): Method list id=0 not configured. Skip author&lt;BR /&gt;Jan 29 10:58:57.222: %DOT1X-5-SUCCESS: Authentication successful for client (001d.452d.53e0) on Interface Gi1/0/16 AuditSess&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ionID&lt;BR /&gt;Jan 29 10:58:57.222: %AUTHMGR-7-RESULT: Authentication result 'success' from 'dot1x' for client (001d.452d.53e0) on Interfac&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; e Gi1/0/16 AuditSessionID C0A8FE2500000018002FB1D0&lt;BR /&gt;Jan 29 10:58:57.239: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan10, changed state to up&lt;BR /&gt;Jan 29 10:58:58.262: %AUTHMGR-5-SUCCESS: Authorization succeeded for client (001d.452d.53e0) on Interface Gi1/0/16 AuditSess&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ionID C0A8FE2500000018002FB1D0&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 29 Jan 2011 11:04:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652839#M5203</guid>
      <dc:creator>Nicholas Poole</dc:creator>
      <dc:date>2011-01-29T11:04:22Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X authentication not happening in Voice Domain for IP P</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652840#M5204</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;After adding the 3 additional RADIUS-IETF parameters...&lt;/P&gt;&lt;P&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/9/7/6/10679-ScreenShot002.jpg" class="jive-image" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the phone still doesnt work in the voice domain:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier; font-size: 10pt;"&gt;Jan 29 11:11:53.742: RADIUS(0000001E): Received from id 1645/55&lt;BR /&gt;Jan 29 11:11:53.742: RADIUS/DECODE: EAP-Message fragments, 6, total 6 bytes&lt;BR /&gt;Jan 29 11:11:53.842: AAA/AUTHEN/8021X (0000001E): Pick method list 'default'&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS/ENCODE(0000001E):Orig. component type = DOT1X&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS(0000001E): Config NAS IP: 192.168.254.37&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS/ENCODE(0000001E): acct_session_id: 55&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS(0000001E): sending&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS(0000001E): Send Access-Request to 192.168.254.51:1645 id 1645/56, len 244&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp; authenticator 1C 63 91 D5 AD A3 D2 BC - 7D C5 5F 8C FC 10 22 1B&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp; User-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 26&amp;nbsp; "CP-7942G-SEP001D452D53E0"&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp; Service-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [6]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Framed&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [2]&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp; Framed-MTU&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [12]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 1500&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp; Called-Station-Id&amp;nbsp;&amp;nbsp; [30]&amp;nbsp; 19&amp;nbsp; "30-37-A6-AB-8E-90"&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp; Calling-Station-Id&amp;nbsp; [31]&amp;nbsp; 19&amp;nbsp; "00-1D-45-2D-53-E0"&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp; EAP-Message&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [79]&amp;nbsp; 8&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp;&amp;nbsp; 02 9F 00 06 03 04&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp; Message-Authenticato[80]&amp;nbsp; 18&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp;&amp;nbsp; 24 BE F1 70 15 16 AE 2C E3 AC 56 5A E2 BE FC 92&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ $p,VZ]&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp; EAP-Key-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [102] 2&amp;nbsp;&amp;nbsp; *&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp; Vendor, Cisco&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [26]&amp;nbsp; 49&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp;&amp;nbsp; Cisco AVpair&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 43&amp;nbsp; "audit-session-id=C0A8FE2500000019003B8C5C"&lt;BR /&gt;Jan 29 11:11:53.842: RADIUS:&amp;nbsp; NAS-Port-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [61]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Ethernet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [15]&lt;BR /&gt;Jan 29 11:11:53.851: RADIUS:&amp;nbsp; NAS-Port&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [5]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 50116&lt;BR /&gt;Jan 29 11:11:53.851: RADIUS:&amp;nbsp; NAS-Port-Id&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [87]&amp;nbsp; 23&amp;nbsp; "GigabitEthernet1/0/16"&lt;BR /&gt;Jan 29 11:11:53.851: RADIUS:&amp;nbsp; State&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [24]&amp;nbsp; 30&lt;BR /&gt;Jan 29 11:11:53.851: RADIUS:&amp;nbsp;&amp;nbsp; 32 35 53 65 73 73 69 6F 6E 49 44 3D 41 43 53 2F&amp;nbsp; [25SessionID=ACS/]&lt;BR /&gt;Jan 29 11:11:53.851: RADIUS:&amp;nbsp;&amp;nbsp; 38 35 36 37 30 35 31 38 2F 33 34 3B&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 85670518/34;]&lt;BR /&gt;Jan 29 11:11:53.851: RADIUS:&amp;nbsp; NAS-IP-Address&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [4]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 192.168.254.37&lt;BR /&gt;Jan 29 11:11:53.851: RADIUS(0000001E): Started 4 sec timeout&lt;BR /&gt;Jan 29 11:11:53.868: RADIUS: Received from id 1645/56 192.168.254.51:1645, Access-Challenge, len 95&lt;BR /&gt;Jan 29 11:11:53.868: RADIUS:&amp;nbsp; authenticator C7 B8 85 BD 56 89 AD 04 - FF 8D B0 FF 96 BF C2 7F&lt;BR /&gt;Jan 29 11:11:53.868: RADIUS:&amp;nbsp; State&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [24]&amp;nbsp; 30&lt;BR /&gt;Jan 29 11:11:53.868: RADIUS:&amp;nbsp;&amp;nbsp; 32 35 53 65 73 73 69 6F 6E 49 44 3D 41 43 53 2F&amp;nbsp; [25SessionID=ACS/]&lt;BR /&gt;Jan 29 11:11:53.868: RADIUS:&amp;nbsp;&amp;nbsp; 38 35 36 37 30 35 31 38 2F 33 34 3B&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 85670518/34;]&lt;BR /&gt;Jan 29 11:11:53.868: RADIUS:&amp;nbsp; EAP-Message&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [79]&amp;nbsp; 27&lt;BR /&gt;Jan 29 11:11:53.868: RADIUS:&amp;nbsp;&amp;nbsp; 01 A0 00 19 04 10 D6 98 65 25 2C 02 06 89 20 25 9A E7 2B 24 6D 95 41 43 53&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ e?, ?+$mACS]&lt;BR /&gt;Jan 29 11:11:53.868: RADIUS:&amp;nbsp; Message-Authenticato[80]&amp;nbsp; 18&lt;BR /&gt;Jan 29 11:11:53.868: RADIUS:&amp;nbsp;&amp;nbsp; 44 D0 63 BA DA E9 1F E5 7D 40 97 1F 1E 7E B8 B2&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ Dc}@~]&lt;BR /&gt;Jan 29 11:11:53.868: RADIUS(0000001E): Received from id 1645/56&lt;BR /&gt;Jan 29 11:11:53.868: RADIUS/DECODE: EAP-Message fragments, 25, total 25 bytes&lt;BR /&gt;Jan 29 11:11:53.884: AAA/AUTHEN/8021X (0000001E): Pick method list 'default'&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS/ENCODE(0000001E):Orig. component type = DOT1X&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS(0000001E): Config NAS IP: 192.168.254.37&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS/ENCODE(0000001E): acct_session_id: 55&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS(0000001E): sending&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS(0000001E): Send Access-Request to 192.168.254.51:1645 id 1645/57, len 284&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS:&amp;nbsp; authenticator 3A 52 7C D1 89 1F AF AE - 85 8F E6 2D 7E AE 90 D7&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS:&amp;nbsp; User-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 26&amp;nbsp; "CP-7942G-SEP001D452D53E0"&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS:&amp;nbsp; Service-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [6]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Framed&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [2]&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS:&amp;nbsp; Framed-MTU&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [12]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 1500&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS:&amp;nbsp; Called-Station-Id&amp;nbsp;&amp;nbsp; [30]&amp;nbsp; 19&amp;nbsp; "30-37-A6-AB-8E-90"&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS:&amp;nbsp; Calling-Station-Id&amp;nbsp; [31]&amp;nbsp; 19&amp;nbsp; "00-1D-45-2D-53-E0"&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS:&amp;nbsp; EAP-Message&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [79]&amp;nbsp; 48&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS:&amp;nbsp;&amp;nbsp; 02 A0 00 2E 04 10 AE 65 BA 3A 6F 09 06 69 45 65 19 A2 76 95 12 AF 43 50 2D 37 39 34 32 47&amp;nbsp; [.e:oiEevCP-7942G]&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS:&amp;nbsp;&amp;nbsp; 2D 53 45 50 30 30 31 44 34 35 32 44 35 33 45 30&amp;nbsp; [ -SEP001D452D53E0]&lt;BR /&gt;Jan 29 11:11:53.884: RADIUS:&amp;nbsp; Message-Authenticato[80]&amp;nbsp; 18&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS:&amp;nbsp;&amp;nbsp; 99 CA 36 60 3E 1A 13 7F 7E 0F 39 7D B7 AD 75 FF&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 6`&amp;gt;~9}u]&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS:&amp;nbsp; EAP-Key-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [102] 2&amp;nbsp;&amp;nbsp; *&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS:&amp;nbsp; Vendor, Cisco&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [26]&amp;nbsp; 49&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS:&amp;nbsp;&amp;nbsp; Cisco AVpair&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 43&amp;nbsp; "audit-session-id=C0A8FE2500000019003B8C5C"&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS:&amp;nbsp; NAS-Port-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [61]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Ethernet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [15]&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS:&amp;nbsp; NAS-Port&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [5]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 50116&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS:&amp;nbsp; NAS-Port-Id&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [87]&amp;nbsp; 23&amp;nbsp; "GigabitEthernet1/0/16"&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS:&amp;nbsp; State&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [24]&amp;nbsp; 30&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS:&amp;nbsp;&amp;nbsp; 32 35 53 65 73 73 69 6F 6E 49 44 3D 41 43 53 2F&amp;nbsp; [25SessionID=ACS/]&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS:&amp;nbsp;&amp;nbsp; 38 35 36 37 30 35 31 38 2F 33 34 3B&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 85670518/34;]&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS:&amp;nbsp; NAS-IP-Address&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [4]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 192.168.254.37&lt;BR /&gt;Jan 29 11:11:53.893: RADIUS(0000001E): Started 4 sec timeout&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS: Received from id 1645/57 192.168.254.51:1645, Access-Accept, len 150&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp; authenticator D5 AD 4C 67 3C FB 88 75 - 0C D3 AF 11 16 CD 29 B9&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp; User-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 26&amp;nbsp; "CP-7942G-SEP001D452D53E0"&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp; Class&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [25]&amp;nbsp; 22&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp;&amp;nbsp; 43 41 43 53 3A 41 43 53 2F 38 35 36 37 30 35 31&amp;nbsp; [CACS:ACS/8567051]&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp;&amp;nbsp; 38 2F 33 34&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ 8/34]&lt;BR /&gt;&lt;STRONG&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp; Tunnel-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [64]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 01:VLAN&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [13]&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp; Tunnel-Medium-Type&amp;nbsp; [65]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 01:ALL_802&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [6]&lt;/STRONG&gt;&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp; EAP-Message&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [79]&amp;nbsp; 6&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp;&amp;nbsp; 03 A0 00 04&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp; Message-Authenticato[80]&amp;nbsp; 18&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp;&amp;nbsp; A7 1D B5 E3 44 DE 70 3C 5B 46 57 C0 A6 DB 56 EC&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ Dp&amp;lt;[FWV]&lt;BR /&gt;&lt;STRONG&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp; Tunnel-Private-Group[81]&amp;nbsp; 12&amp;nbsp; 01:"VOICE-LAN"&lt;/STRONG&gt;&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp; Vendor, Cisco&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [26]&amp;nbsp; 34&lt;BR /&gt;&lt;STRONG&gt;Jan 29 11:11:54.019: RADIUS:&amp;nbsp;&amp;nbsp; Cisco AVpair&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 28&amp;nbsp; "device-traffic-class=voice"&lt;/STRONG&gt;&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS(0000001E): Received from id 1645/57&lt;BR /&gt;Jan 29 11:11:54.019: RADIUS/DECODE: EAP-Message fragments, 4, total 4 bytes&lt;BR /&gt;Jan 29 11:11:54.027: AAA/AUTHOR (0000001E): Method list id=0 not configured. Skip author&lt;BR /&gt;Jan 29 11:11:54.027: %DOT1X-5-SUCCESS: Authentication successful for client (001d.452d.53e0) on Interface Gi1/0/16 AuditSessionID&lt;BR /&gt;Jan 29 11:11:54.027: %AUTHMGR-7-RESULT: Authentication result 'success' from 'dot1x' for client (001d.452d.53e0) on Interface Gi1/0/16 AuditSessionID C0A8FE2500000019003B8C5C&lt;BR /&gt;Jan 29 11:11:54.035: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan10, changed state to up&lt;BR /&gt;Jan 29 11:11:55.050: %AUTHMGR-5-SUCCESS: Authorization succeeded for client (001d.452d.53e0) on Interface Gi1/0/16 AuditSessionID C0A8FE2500000019003B8C5C&lt;BR /&gt;C3750G#&lt;BR /&gt;C3750G#sh auth sess int gi 1/0/16&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Interface:&amp;nbsp; GigabitEthernet1/0/16&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; MAC Address:&amp;nbsp; 001d.452d.53e0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; IP Address:&amp;nbsp; Unknown&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; User-Name:&amp;nbsp; CP-7942G-SEP001D452D53E0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Status:&amp;nbsp; Authz Success&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;SPAN style="color: #ff0000;"&gt;&lt;STRONG&gt;Domain:&amp;nbsp; DATA&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Security Policy:&amp;nbsp; Should Secure&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Security Status:&amp;nbsp; Unsecure&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Oper host mode:&amp;nbsp; multi-domain&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Oper control dir:&amp;nbsp; both&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Authorized By:&amp;nbsp; Authentication Server&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Vlan Group:&amp;nbsp; N/A&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Session timeout:&amp;nbsp; N/A&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Idle timeout:&amp;nbsp; N/A&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Common Session ID:&amp;nbsp; C0A8FE2500000019003B8C5C&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Acct Session ID:&amp;nbsp; 0x00000037&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Handle:&amp;nbsp; 0xDC000019&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier; font-size: 10pt;"&gt;Runnable methods list:&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Method&amp;nbsp;&amp;nbsp; State&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; dot1x&amp;nbsp;&amp;nbsp;&amp;nbsp; Authc Success&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier; font-size: 10pt;"&gt;C3750G#&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are you able to provide any more things to check?&amp;nbsp; Thanks again.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 29 Jan 2011 11:16:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652840#M5204</guid>
      <dc:creator>Nicholas Poole</dc:creator>
      <dc:date>2011-01-29T11:16:23Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X authentication not happening in Voice Domain for IP P</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652841#M5205</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;One specific point that I am worried about is the Cisco AV pair string itself.&amp;nbsp; In ACS 5.1 when you select Voice VLAN, Permission to Join: [Static] it automatically adds a common RADIUS attribute of&lt;/P&gt;&lt;P&gt;Attribute: cisco-av-pair&lt;/P&gt;&lt;P&gt;Type: String&lt;/P&gt;&lt;P&gt;Value: device-traffic-class=voice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;None of these are editable fields.&amp;nbsp; As I have been doing a lot of searches on this subject I have seen the attribute spelt as listed above, "cisco-av-pair" but also as "cisco-avpair" (such as in docs: &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/sw/netmgtsw/ps411/products_tech_note09186a0080094e9a.shtml"&gt;http://www.cisco.com/en/US/products/sw/netmgtsw/ps411/products_tech_note09186a0080094e9a.shtml&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp; and&amp;nbsp; &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://www.avaya.com/master-usa/en-us/resource/assets/applicationnotes/802_1x_ciscomda.pdf"&gt;http://www.avaya.com/master-usa/en-us/resource/assets/applicationnotes/802_1x_ciscomda.pdf&lt;/A&gt;&lt;SPAN&gt;).&amp;nbsp;&amp;nbsp; Does this actually matter, or is the Cat switch looking out for only one of these attribute string?&amp;nbsp; Or is the switch looking for any combination of that text in an attribute to define it as a valid Cisco AV pair?&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 29 Jan 2011 14:01:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652841#M5205</guid>
      <dc:creator>Nicholas Poole</dc:creator>
      <dc:date>2011-01-29T14:01:01Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X authentication not happening in Voice Domain for IP P</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652842#M5206</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-family: courier new,courier; font-size: 10pt;"&gt;C3750G#show run | in aaa&lt;BR /&gt;aaa new-model&lt;BR /&gt;aaa authentication login My-AAA group tacacs+ local&lt;BR /&gt;aaa authentication enable default group tacacs+ enable&lt;BR /&gt;aaa authentication dot1x default group radius&lt;BR /&gt;aaa authorization exec My-AAA group tacacs+ local&lt;BR /&gt;aaa accounting exec default start-stop group tacacs+&lt;BR /&gt;aaa accounting commands 15 default stop-only group tacacs+&lt;BR /&gt;aaa accounting connection default stop-only group tacacs+&lt;BR /&gt;aaa accounting system default start-stop group tacacs+&lt;BR /&gt;aaa session-id common&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 29 Jan 2011 15:28:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652842#M5206</guid>
      <dc:creator>Nicholas Poole</dc:creator>
      <dc:date>2011-01-29T15:28:37Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X authentication not happening in Voice Domain for IP P</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652843#M5207</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Finally fixed it after i spotted this in a config guide:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cat−3560(config)#aaa authorization network default group radius&lt;BR /&gt;!−−− You need authorization for dynamic VLAN assignment to work with RADIUS&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I didnt have this command, but i do now it works fine.&amp;nbsp; Although admittedly i wasnt aware i was doing VLAN assignment, as in dynamic VLAN assignment which required the extra RADIUS-IETF attributes.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 29 Jan 2011 15:51:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652843#M5207</guid>
      <dc:creator>Nicholas Poole</dc:creator>
      <dc:date>2011-01-29T15:51:21Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X authentication not happening in Voice Domain for IP P</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652844#M5208</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;G&lt;SPAN style="color: #800000;"&gt;lad to know its working. Couldn't reply back due to weekend.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Yes, that was the reason, I asked you the output of show run | in aaa.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Little more detail on it;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;The VLAN assignment feature is automatically enabled when we configure 802.1x authentication on an access port. For VLAN assignment to work, we must ensure that network authorization is configured on switch to allow interface configuration from the RADIUS server,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Cisco IOS:&lt;BR /&gt;Switch(config)# aaa authorization network default method1 [method2…]&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Catalyst OS: No equivalent command exists, and none is required to turn this feature on.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;I'd appreciate if you mark this query resolved so that other can take benefit out of it.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Jatin&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Do rate helpful posts~&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 30 Jan 2011 19:45:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652844#M5208</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2011-01-30T19:45:14Z</dc:date>
    </item>
    <item>
      <title>Hello Dear, We have a same</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652845#M5209</link>
      <description>&lt;P&gt;Hello Dear,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a same problem. after I issued&amp;nbsp;&lt;SPAN style="font-size: 14px;"&gt;device-traffic-class=voice on radius &amp;nbsp;server(microsoft radius 2008) My phone was in voice domain &amp;nbsp;( I can show with "show authorization session) but no trafik no ip access to phone &amp;nbsp; why could be ?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Config;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Current configuration : 13526 bytes&lt;BR /&gt;!&lt;BR /&gt;! Last configuration change at 18:45:37 GMT Tue Nov 4 2014 by swadmin&lt;BR /&gt;! NVRAM config last updated at 18:45:41 GMT Tue Nov 4 2014 by swadmin&lt;BR /&gt;!&lt;BR /&gt;version 15.2&lt;BR /&gt;no service pad&lt;BR /&gt;service tcp-keepalives-in&lt;BR /&gt;service tcp-keepalives-out&lt;BR /&gt;service timestamps debug datetime msec localtime show-timezone&lt;BR /&gt;service timestamps log datetime msec localtime show-timezone&lt;BR /&gt;service password-encryption&lt;BR /&gt;service sequence-numbers&lt;BR /&gt;!&lt;BR /&gt;hostname lbtistsw2960-k2-3&lt;BR /&gt;!&lt;BR /&gt;boot-start-marker&lt;BR /&gt;boot-end-marker&lt;BR /&gt;!&lt;BR /&gt;logging buffered 256000&lt;BR /&gt;enable secret 5 $1$oSAC$h/RwvVLa4T70DQ91dJFro0&lt;BR /&gt;!&lt;BR /&gt;username swadmin privilege 15 secret 5 $1$H3M5$sx0LYbTsuvRprU3WBdua61&lt;BR /&gt;aaa new-model&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa authentication login default local&lt;BR /&gt;aaa authentication dot1x default group radius&lt;BR /&gt;aaa authorization network default group radius&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa session-id common&lt;BR /&gt;clock timezone GMT 2 0&lt;BR /&gt;clock summer-time GMT recurring last Sun Mar 1:00 last Sun Oct 0:00&lt;BR /&gt;switch 1 provision ws-c2960s-48fps-l&lt;BR /&gt;no ip source-route&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;no ip domain-lookup&lt;BR /&gt;ip domain-name capitalturkey.com&lt;BR /&gt;ip name-server 172.22.35.61&lt;BR /&gt;ip name-server 172.22.35.62&lt;BR /&gt;ip device tracking&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint TP-self-signed-623397632&lt;BR /&gt;&amp;nbsp;enrollment selfsigned&lt;BR /&gt;&amp;nbsp;subject-name cn=IOS-Self-Signed-Certificate-623397632&lt;BR /&gt;&amp;nbsp;revocation-check none&lt;BR /&gt;&amp;nbsp;rsakeypair TP-self-signed-623397632&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki certificate chain TP-self-signed-623397632&lt;BR /&gt;dot1x system-auth-control&lt;BR /&gt;!&lt;BR /&gt;spanning-tree mode mst&lt;BR /&gt;spanning-tree loopguard default&lt;BR /&gt;spanning-tree portfast default&lt;BR /&gt;spanning-tree portfast bpduguard default&lt;BR /&gt;spanning-tree extend system-id&lt;BR /&gt;!&lt;BR /&gt;spanning-tree mst configuration&lt;BR /&gt;&amp;nbsp;name mstp-vrrp&lt;BR /&gt;&amp;nbsp;revision 1&lt;BR /&gt;&amp;nbsp;instance 2 vlan 20&lt;BR /&gt;&amp;nbsp;instance 3 vlan 30&lt;BR /&gt;&amp;nbsp;instance 4 vlan 40&lt;BR /&gt;&amp;nbsp;instance 5 vlan 50&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;errdisable recovery cause bpduguard&lt;BR /&gt;errdisable recovery cause security-violation&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;vlan internal allocation policy ascending&lt;BR /&gt;!&lt;BR /&gt;ip ssh version 2&lt;BR /&gt;lldp run&lt;BR /&gt;!&lt;BR /&gt;!&amp;nbsp;&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;interface Port-channel1&lt;BR /&gt;&amp;nbsp;description Uplink Backbone Switches Network Load Balancing and Failure&lt;BR /&gt;&amp;nbsp;switchport trunk native vlan 40&lt;BR /&gt;&amp;nbsp;switchport mode trunk&lt;BR /&gt;&amp;nbsp;spanning-tree bpdufilter enable&lt;BR /&gt;&amp;nbsp;spanning-tree bpduguard disable&lt;BR /&gt;!&lt;BR /&gt;interface Port-channel2&lt;BR /&gt;&amp;nbsp;description Uplink Backbone Switches Network Load Balancing and Failure&lt;BR /&gt;&amp;nbsp;switchport trunk native vlan 40&lt;BR /&gt;&amp;nbsp;switchport mode trunk&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;spanning-tree bpdufilter enable&lt;BR /&gt;&amp;nbsp;spanning-tree bpduguard disable&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/1&lt;BR /&gt;&amp;nbsp;switchport access vlan 40&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/2&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;i&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/36&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport nonegotiate&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;authentication control-direction in&lt;BR /&gt;&amp;nbsp;authentication host-mode multi-domain&lt;BR /&gt;&amp;nbsp;authentication port-control auto&lt;BR /&gt;&amp;nbsp;authentication periodic&lt;BR /&gt;&amp;nbsp;authentication timer restart 900&lt;BR /&gt;&amp;nbsp;authentication timer reauthenticate 5400&lt;BR /&gt;&amp;nbsp;mab&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;&amp;nbsp;spanning-tree bpduguard enable&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/37&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/38&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/39&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/40&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/41&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/42&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/43&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/44&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/45&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/46&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/47&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/48&lt;BR /&gt;&amp;nbsp;switchport access vlan 20&lt;BR /&gt;&amp;nbsp;switchport mode access&lt;BR /&gt;&amp;nbsp;switchport voice vlan 30&lt;BR /&gt;&amp;nbsp;switchport priority extend trust&lt;BR /&gt;&amp;nbsp;mls qos trust dscp&lt;BR /&gt;&amp;nbsp;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/49&lt;BR /&gt;&amp;nbsp;description Uplink Backbone Switch-1 Interface 1&lt;BR /&gt;&amp;nbsp;switchport trunk native vlan 40&lt;BR /&gt;&amp;nbsp;switchport mode trunk&lt;BR /&gt;&amp;nbsp;spanning-tree bpdufilter enable&lt;BR /&gt;&amp;nbsp;spanning-tree bpduguard disable&lt;BR /&gt;&amp;nbsp;channel-group 1 mode on&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/50&lt;BR /&gt;&amp;nbsp;description Uplink Backbone Switch-1 Interface 2&lt;BR /&gt;&amp;nbsp;switchport trunk native vlan 40&lt;BR /&gt;&amp;nbsp;switchport mode trunk&lt;BR /&gt;&amp;nbsp;spanning-tree bpdufilter enable&lt;BR /&gt;&amp;nbsp;spanning-tree bpduguard disable&lt;BR /&gt;&amp;nbsp;channel-group 1 mode on&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/51&lt;BR /&gt;&amp;nbsp;description Uplink Backbone Switch-2 Interface 1&lt;BR /&gt;&amp;nbsp;switchport trunk native vlan 40&lt;BR /&gt;&amp;nbsp;switchport mode trunk&lt;BR /&gt;&amp;nbsp;spanning-tree bpdufilter enable&lt;BR /&gt;&amp;nbsp;spanning-tree bpduguard disable&lt;BR /&gt;&amp;nbsp;channel-group 1 mode on&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/52&lt;BR /&gt;&amp;nbsp;description Uplink Backbone Switch-2 Interface 2&lt;BR /&gt;&amp;nbsp;switchport trunk native vlan 40&lt;BR /&gt;&amp;nbsp;switchport mode trunk&lt;BR /&gt;&amp;nbsp;spanning-tree bpdufilter enable&lt;BR /&gt;&amp;nbsp;spanning-tree bpduguard disable&lt;BR /&gt;&amp;nbsp;channel-group 1 mode on&lt;BR /&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Vlan20&lt;BR /&gt;&amp;nbsp;description Vlan Interface for Desktop&lt;BR /&gt;&amp;nbsp;ip address 172.22.32.11 255.255.255.0 secondary&lt;BR /&gt;&amp;nbsp;ip address 172.22.28.11 255.255.252.0&lt;BR /&gt;&amp;nbsp;ip helper-address 172.22.35.10&lt;BR /&gt;&amp;nbsp;ip route-cache same-interface&lt;BR /&gt;!&lt;BR /&gt;interface Vlan30&lt;BR /&gt;&amp;nbsp;description Vlan Interface for Voice&lt;BR /&gt;&amp;nbsp;ip address 172.22.33.11 255.255.255.0&lt;BR /&gt;&amp;nbsp;ip helper-address 172.22.35.10&lt;BR /&gt;&amp;nbsp;ip route-cache same-interface&lt;BR /&gt;!&lt;BR /&gt;interface Vlan40&lt;BR /&gt;&amp;nbsp;description Vlan Interface for Management&lt;BR /&gt;&amp;nbsp;ip address 172.22.34.11 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Vlan50&lt;BR /&gt;&amp;nbsp;description Vlan Interface for Servers&lt;BR /&gt;&amp;nbsp;ip address 172.22.35.111 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;ip default-gateway 172.22.34.1&lt;BR /&gt;ip http server&lt;BR /&gt;ip http authentication local&lt;BR /&gt;no ip http secure-server&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip sla enable reaction-alerts&lt;BR /&gt;logging trap debugging&lt;BR /&gt;logging source-interface Vlan40&lt;BR /&gt;logging host 172.22.35.85&lt;BR /&gt;logging host 172.22.30.140&lt;BR /&gt;!&lt;BR /&gt;snmp-server community public RO&lt;BR /&gt;!&lt;BR /&gt;radius-server host 172.22.35.61 key 7 075E731F1A5C4F524F&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;line con 0&lt;BR /&gt;&amp;nbsp;session-timeout 10&amp;nbsp;&lt;BR /&gt;line vty 0 4&lt;BR /&gt;&amp;nbsp;session-timeout 60&amp;nbsp;&lt;BR /&gt;&amp;nbsp;transport input ssh&lt;BR /&gt;line vty 5 15&lt;BR /&gt;&amp;nbsp;session-timeout 60&amp;nbsp;&lt;BR /&gt;&amp;nbsp;transport input ssh&lt;BR /&gt;!&lt;BR /&gt;ntp source Vlan40&lt;BR /&gt;ntp server 172.22.35.10&lt;BR /&gt;end&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 04 Nov 2014 16:46:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/1652845#M5209</guid>
      <dc:creator>utkanvural</dc:creator>
      <dc:date>2014-11-04T16:46:45Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X authentication not happening in Voice Domain for IP P</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/3857277#M5210</link>
      <description>&lt;P&gt;Hello. Big thanks to&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/315958"&gt;@Nicholas Poole&lt;/a&gt;&amp;nbsp;for this command:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;aaa authorization network default group radius&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;In our environment there's freeradius as radius server, cisco 2960 as authenticator.&lt;/P&gt;&lt;P&gt;We tested 802.1x with non-domain PCs. The criteria was local accounts which exists in freeradius.&lt;/P&gt;&lt;P&gt;Problem was in the Voice Domain. After writing the command it worked. Thanks.&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 16 May 2019 07:12:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-authentication-not-happening-in-voice-domain-for-ip-phone/m-p/3857277#M5210</guid>
      <dc:creator>bagiyevramin</dc:creator>
      <dc:date>2019-05-16T07:12:00Z</dc:date>
    </item>
  </channel>
</rss>

