<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic error &amp;quot;5440 Endpoint abandoned EAP session and started new&amp;quot; in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440260#M526462</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt;Hello ,&lt;/P&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt;i faced this error "5440 Endpoint abandoned EAP session and started new"when users try to authoticate to network ( wired 802.1X) with ISE 2.3 .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt;FYI: before rebooting client machine users can authenticate normaly to the network.&lt;/P&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt;In event manager on windows 10 i have this error: "&lt;STRONG&gt;Unable to identify a user for 802.1X authentication&lt;/STRONG&gt;"&lt;/P&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt;any idea please ???&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt; Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 30 Sep 2017 10:21:02 GMT</pubDate>
    <dc:creator>welmjendel</dc:creator>
    <dc:date>2017-09-30T10:21:02Z</dc:date>
    <item>
      <title>error "5440 Endpoint abandoned EAP session and started new"</title>
      <link>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440260#M526462</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt;Hello ,&lt;/P&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt;i faced this error "5440 Endpoint abandoned EAP session and started new"when users try to authoticate to network ( wired 802.1X) with ISE 2.3 .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt;FYI: before rebooting client machine users can authenticate normaly to the network.&lt;/P&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt;In event manager on windows 10 i have this error: "&lt;STRONG&gt;Unable to identify a user for 802.1X authentication&lt;/STRONG&gt;"&lt;/P&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt;any idea please ???&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="margin-top: 10.5px; margin-bottom: 10.5px; color: #58585b; font-family: CiscoSans, 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 16px;"&gt; Regards,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 30 Sep 2017 10:21:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440260#M526462</guid>
      <dc:creator>welmjendel</dc:creator>
      <dc:date>2017-09-30T10:21:02Z</dc:date>
    </item>
    <item>
      <title>Re: error "5440 Endpoint abandoned EAP session and started new"</title>
      <link>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440261#M526463</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Are you running PEAP user or computer?&amp;nbsp; EAP-TLS?&amp;nbsp; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 01 Oct 2017 22:44:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440261#M526463</guid>
      <dc:creator>paul</dc:creator>
      <dc:date>2017-10-01T22:44:28Z</dc:date>
    </item>
    <item>
      <title>Re: error "5440 Endpoint abandoned EAP session and started new"</title>
      <link>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440262#M526464</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I'm running peap user.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Get Outlook for iOS&amp;lt;https://aka.ms/o0ukef&amp;gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Oct 2017 01:54:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440262#M526464</guid>
      <dc:creator>welmjendel</dc:creator>
      <dc:date>2017-10-02T01:54:00Z</dc:date>
    </item>
    <item>
      <title>Re: error "5440 Endpoint abandoned EAP session and started new"</title>
      <link>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440263#M526465</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Try doing windows update or look for windows supplicant related bug. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Oct 2017 03:10:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440263#M526465</guid>
      <dc:creator>umahar</dc:creator>
      <dc:date>2017-10-02T03:10:44Z</dc:date>
    </item>
    <item>
      <title>Re: error "5440 Endpoint abandoned EAP session and started new"</title>
      <link>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440264#M526466</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Same issue here.&lt;/P&gt;&lt;P&gt;The system has been working since April,&lt;/P&gt;&lt;P&gt;suddenly Peap started failing authentication with microsoft supplicant (both Win7 and Win10).&lt;/P&gt;&lt;P&gt;Microsoft OS is updated.&lt;/P&gt;&lt;P&gt;I tried with anyconnect NAM on an test endpoints and authentication works.&lt;/P&gt;&lt;P&gt;EAP-TLS authentications are working fine.&lt;/P&gt;&lt;P&gt;Opened a TAC case. This has been the answer.&lt;/P&gt;&lt;P&gt;"&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN-GB" style="font-size: 11.0pt;"&gt;I did a research and I found that there is a problem with windows endpoints. There are starting new session even they have already one. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN-GB" style="font-size: 11.0pt;"&gt;It is possible to do some test like rollback last windows update and check windows authentication?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN-GB" style="font-size: 11.0pt;"&gt;As I said we cannot support third party endpoints.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN-GB" style="font-size: 11.0pt;"&gt;Does customer has licence for NAM module?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="EN-GB" style="font-size: 11.0pt;"&gt;Please let me know if there is anything else I can do for you.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt; "&lt;/P&gt;&lt;P&gt;Correct me if I'm wrong but Cisco states full compatibility with Microsoft Supplicant till it uses standard protocols, so actually it's a Cisco's problem not a Microsoft problem.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Oct 2017 07:24:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440264#M526466</guid>
      <dc:creator>jacopo.casini</dc:creator>
      <dc:date>2017-10-02T07:24:05Z</dc:date>
    </item>
    <item>
      <title>Re: error "5440 Endpoint abandoned EAP session and started new"</title>
      <link>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440265#M526467</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;can you share&amp;nbsp; the solution from MS.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Oct 2017 09:09:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440265#M526467</guid>
      <dc:creator>welmjendel</dc:creator>
      <dc:date>2017-10-03T09:09:03Z</dc:date>
    </item>
    <item>
      <title>Re: error "5440 Endpoint abandoned EAP session and started new"</title>
      <link>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440266#M526468</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I do advise opening TAC case to assist with troubleshooting, but certainly need to ask if any change to config.&amp;nbsp; Was it solely an upgrade to ISE 2.3 or other MS update or GPO policy push?&amp;nbsp; You mention that auth works until reboot, which would imply a change to client software being applied on reboot. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There are also refs to this particular log on MS and other forums such as &lt;A href="https://social.technet.microsoft.com/Forums/windowsserver/en-US/cd4bb679-6412-45e1-b928-3a229cd217c4/why-unable-to-identify-a-user-for-8021x-authentication-0x50001?forum=winserverNAP" title="https://social.technet.microsoft.com/Forums/windowsserver/en-US/cd4bb679-6412-45e1-b928-3a229cd217c4/why-unable-to-identify-a-user-for-8021x-authentication-0x50001?forum=winserverNAP"&gt;Why Unable to identify a user for 802.1X authentication (0x50001)?&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check to make sure settings the same on client.&amp;nbsp; If working under previous version of ISE, check allowed protocol settings to verify config same as prior version.&amp;nbsp; Could be one of the EAP or TLS negotiation settings/ciphers set after upgrade. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also make sure that the clients trust the PSN certificate, especially if changed after upgrade.&amp;nbsp; You can also try setting option on supplicant to not require Trust for Server as a quick test.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;/Craig&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Oct 2017 14:01:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440266#M526468</guid>
      <dc:creator>Craig Hyps</dc:creator>
      <dc:date>2017-10-03T14:01:07Z</dc:date>
    </item>
    <item>
      <title>Re: error "5440 Endpoint abandoned EAP session and started new"</title>
      <link>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440267#M526469</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We certainly do support the use of standard supplicants.&amp;nbsp; However, there is a point where TAC may be limited in being able to troubleshoot 3rd-party software or potential defects.&amp;nbsp; Similarly, I would expect Microsoft support to attempt to troubleshoot connection of their client to Cisco switch, but do not expect them to own comprehensive troubleshooting of Cisco equipment.&amp;nbsp; Ultimately our goal is to support customer in best possible way and try to go overboard to do so.&amp;nbsp; If you ever get a response like "it is not our problem", I suggest escalating to TAC Duty Manager so they can either redirect, escalate, or provide clear explanation why there may be a limit in our ability to address specific issue related to 3rd-party vendor hardware/software.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Craig&amp;nbsp; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Oct 2017 14:08:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/error-quot-5440-endpoint-abandoned-eap-session-and-started-new/m-p/3440267#M526469</guid>
      <dc:creator>Craig Hyps</dc:creator>
      <dc:date>2017-10-03T14:08:36Z</dc:date>
    </item>
  </channel>
</rss>

