<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CoA Type in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/coa-type/m-p/4438515#M568684</link>
    <description>&lt;P&gt;Keep in mind that bouncing the port will likely not solve the issue of an endpoint requesting a new IP address after a dynamic VLAN assignment if that is your goal. Bouncing the port will clear the RADIUS session, so the entire process starts over. You'll likely see the exact same issue after the port bounce due to the race condition between the time the endpoint requests an IP address and the dynamic VLAN assignment happens again. More than likely, you'll just end up in a loop of port bouncing.&lt;/P&gt;
&lt;P&gt;If your endpoint is connected behind a phone, the port bounce will also reboot the phone as the POE power also bounces.&lt;/P&gt;
&lt;P&gt;If your goal is to mitigate DHCP issues with dynamic VLAN assignment, see the post below for suggestions.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/network-access-control/802-1x-new-ip-address-after-coa/m-p/4438513#M568683" target="_blank" rel="noopener"&gt;802.1x New IP address after CoA&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 26 Jul 2021 00:05:34 GMT</pubDate>
    <dc:creator>Greg Gibbs</dc:creator>
    <dc:date>2021-07-26T00:05:34Z</dc:date>
    <item>
      <title>CoA Type</title>
      <link>https://community.cisco.com/t5/network-access-control/coa-type/m-p/4437873#M568666</link>
      <description>&lt;P&gt;Greetings,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;'Port Bounce' or 'Reauth' is available in Administration &amp;gt; System &amp;gt; Settings &amp;gt; Profiling. I have it set as 'Reauth'&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How do I actually make ISE to send a&amp;nbsp; 'Port Bounce' to place a device in a separate VLAN.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please help me understand that.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Edouard.&lt;/P&gt;</description>
      <pubDate>Fri, 23 Jul 2021 15:37:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/coa-type/m-p/4437873#M568666</guid>
      <dc:creator>EdouardZorrilla0939</dc:creator>
      <dc:date>2021-07-23T15:37:09Z</dc:date>
    </item>
    <item>
      <title>Re: CoA Type</title>
      <link>https://community.cisco.com/t5/network-access-control/coa-type/m-p/4437898#M568668</link>
      <description>&lt;P&gt;Change the global CoA type to port bounce.&amp;nbsp; You can also specify a specific CoA result for a particular policy.&lt;/P&gt;</description>
      <pubDate>Fri, 23 Jul 2021 16:09:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/coa-type/m-p/4437898#M568668</guid>
      <dc:creator>ahollifield</dc:creator>
      <dc:date>2021-07-23T16:09:49Z</dc:date>
    </item>
    <item>
      <title>Re: CoA Type</title>
      <link>https://community.cisco.com/t5/network-access-control/coa-type/m-p/4438007#M568672</link>
      <description>&lt;P&gt;Hello Aholli, where in a policy can the CoA be specified.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;</description>
      <pubDate>Fri, 23 Jul 2021 20:11:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/coa-type/m-p/4438007#M568672</guid>
      <dc:creator>EdouardZorrilla0939</dc:creator>
      <dc:date>2021-07-23T20:11:46Z</dc:date>
    </item>
    <item>
      <title>Re: CoA Type</title>
      <link>https://community.cisco.com/t5/network-access-control/coa-type/m-p/4438255#M568680</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;in the authorization policy you can change the coa&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_aaa/configuration/15-sy/sec-usr-aaa-15-sy-book/sec-rad-coa.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_aaa/configuration/15-sy/sec-usr-aaa-15-sy-book/sec-rad-coa.html&lt;/A&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="tabletitle"&gt;CoA Request Commands Supported on the Device&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="p"&gt;Command&lt;/P&gt;&lt;P class="p"&gt;Cisco VSA&lt;/P&gt;&lt;P class="p"&gt;Bounce host port&lt;/P&gt;&lt;P class="p"&gt;Cisco:Avpair=“subscriber:command=bounce-host-port”&lt;/P&gt;&lt;P class="p"&gt;Disable host port&lt;/P&gt;&lt;P class="p"&gt;Cisco:Avpair=“subscriber:command=disable-host-port”&lt;/P&gt;&lt;P class="p"&gt;Reauthenticate host&lt;/P&gt;&lt;P class="p"&gt;Cisco:Avpair=“subscriber:command=reauthenticate”&lt;/P&gt;&lt;P class="p"&gt;Terminate session&lt;/P&gt;&lt;P class="p"&gt;This is a standard disconnect request that does not require a VSA&lt;/P&gt;</description>
      <pubDate>Sat, 24 Jul 2021 17:17:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/coa-type/m-p/4438255#M568680</guid>
      <dc:creator>saxenanitesh8522</dc:creator>
      <dc:date>2021-07-24T17:17:39Z</dc:date>
    </item>
    <item>
      <title>Re: CoA Type</title>
      <link>https://community.cisco.com/t5/network-access-control/coa-type/m-p/4438515#M568684</link>
      <description>&lt;P&gt;Keep in mind that bouncing the port will likely not solve the issue of an endpoint requesting a new IP address after a dynamic VLAN assignment if that is your goal. Bouncing the port will clear the RADIUS session, so the entire process starts over. You'll likely see the exact same issue after the port bounce due to the race condition between the time the endpoint requests an IP address and the dynamic VLAN assignment happens again. More than likely, you'll just end up in a loop of port bouncing.&lt;/P&gt;
&lt;P&gt;If your endpoint is connected behind a phone, the port bounce will also reboot the phone as the POE power also bounces.&lt;/P&gt;
&lt;P&gt;If your goal is to mitigate DHCP issues with dynamic VLAN assignment, see the post below for suggestions.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/network-access-control/802-1x-new-ip-address-after-coa/m-p/4438513#M568683" target="_blank" rel="noopener"&gt;802.1x New IP address after CoA&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 26 Jul 2021 00:05:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/coa-type/m-p/4438515#M568684</guid>
      <dc:creator>Greg Gibbs</dc:creator>
      <dc:date>2021-07-26T00:05:34Z</dc:date>
    </item>
  </channel>
</rss>

