<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Wired Domain Computer and User 802.1x being logged as MAB when using RDP/Remote VPN in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/wired-domain-computer-and-user-802-1x-being-logged-as-mab-when/m-p/4432799#M568442</link>
    <description>&lt;P&gt;Hi all,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;RDP was not being read as dot1x, thus failing to MAB. Turns out Windows does not support dot1x on RDP connections, thus not triggering dot1x. NAM or EasyConnect are other options possible to be used.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope it helps someone.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best wishes,&lt;/P&gt;&lt;P&gt;Laura&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 14 Jul 2021 06:47:44 GMT</pubDate>
    <dc:creator>laurathaqi</dc:creator>
    <dc:date>2021-07-14T06:47:44Z</dc:date>
    <item>
      <title>Wired Domain Computer and User 802.1x being logged as MAB when using RDP/Remote VPN</title>
      <link>https://community.cisco.com/t5/network-access-control/wired-domain-computer-and-user-802-1x-being-logged-as-mab-when/m-p/4425299#M568197</link>
      <description>&lt;P&gt;Dear community,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have configured 802.1x for domain computers and users, to authenticate via EAP-TLS and for some switches that do not support EAP-TLS, I have configured PEAP.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Have done tests on both cases and successful logs and policies are applied when logged in Windows machine directly from office. However there is the issue of RDP login as following: When I log in via RDP to that supplicant, ISE reads it as MAB thus applies MAB Policies.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Same problem happens when logging in via Remote Access VPN.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Do you have any idea why this is the case and/or how to troubleshoot further?&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Looking forward to hearing from you.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;Laura&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 29 Jun 2021 08:07:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/wired-domain-computer-and-user-802-1x-being-logged-as-mab-when/m-p/4425299#M568197</guid>
      <dc:creator>laurathaqi</dc:creator>
      <dc:date>2021-06-29T08:07:27Z</dc:date>
    </item>
    <item>
      <title>Re: Wired Domain Computer and User 802.1x being logged as MAB when using RDP/Remote VPN</title>
      <link>https://community.cisco.com/t5/network-access-control/wired-domain-computer-and-user-802-1x-being-logged-as-mab-when/m-p/4428122#M568312</link>
      <description>&lt;P&gt;On remote desktop, see &lt;A href="https://docs.microsoft.com/en-us/troubleshoot/windows-client/remote/cannot-use-802dot1x-user-authentication-connect-rds" target="_self"&gt;802.1x user authentication fails when an RDS connection comes in&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;On VPN, this depends on the VPN head-end, the VPN client used, and how your policy rules configured.&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 15:10:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/wired-domain-computer-and-user-802-1x-being-logged-as-mab-when/m-p/4428122#M568312</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2021-07-05T15:10:13Z</dc:date>
    </item>
    <item>
      <title>Re: Wired Domain Computer and User 802.1x being logged as MAB when using RDP/Remote VPN</title>
      <link>https://community.cisco.com/t5/network-access-control/wired-domain-computer-and-user-802-1x-being-logged-as-mab-when/m-p/4432799#M568442</link>
      <description>&lt;P&gt;Hi all,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;RDP was not being read as dot1x, thus failing to MAB. Turns out Windows does not support dot1x on RDP connections, thus not triggering dot1x. NAM or EasyConnect are other options possible to be used.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope it helps someone.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best wishes,&lt;/P&gt;&lt;P&gt;Laura&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 14 Jul 2021 06:47:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/wired-domain-computer-and-user-802-1x-being-logged-as-mab-when/m-p/4432799#M568442</guid>
      <dc:creator>laurathaqi</dc:creator>
      <dc:date>2021-07-14T06:47:44Z</dc:date>
    </item>
  </channel>
</rss>

