<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 802.1x COA reauthenticate - Aruba Switch in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4791683#M580379</link>
    <description>&lt;P&gt;dACL?&amp;nbsp; I don' think Aruba Switches support dACLs.&amp;nbsp; You can call a local User Role that then maps to a local ACL or pass a local ACL name as the filter-id attribute.&amp;nbsp; Keep in mind the CoA port for Aruba devices is 3799.&lt;/P&gt;
&lt;P&gt;Also is CoA enabled on the Aruba Switch?&amp;nbsp; Is this an AOS-CX switch?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;radius dyn-authorization client [name] secret-key plaintext aruba123&lt;BR /&gt;radius dyn-authorization enable&lt;/P&gt;</description>
    <pubDate>Fri, 10 Mar 2023 21:47:45 GMT</pubDate>
    <dc:creator>ahollifield</dc:creator>
    <dc:date>2023-03-10T21:47:45Z</dc:date>
    <item>
      <title>802.1x COA reauthenticate - Aruba Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4791519#M580376</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I have a problem with an Aruba Switch im using ise to do DACL on the aruba switch and its working but when a want to change the ACL i need to do a COA reauthenticate on the end user for him to change the ACL but for some reason i just wont work.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="definicion_reathunticate.PNG" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/178632iC6673CF1108EEF33/image-size/medium?v=v2&amp;amp;px=400" role="button" title="definicion_reathunticate.PNG" alt="definicion_reathunticate.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; this is the configuration i did for the reauthentication on a special profile for the aruba switches, the NAS-FILTER-RULE is the VSA92 the one im using to send the ACL to the user.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="error_COA_manual_reauthenticate.PNG" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/178633iC00C96D936799055/image-size/medium?v=v2&amp;amp;px=400" role="button" title="error_COA_manual_reauthenticate.PNG" alt="error_COA_manual_reauthenticate.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="error_COA_manual_reauthenticate2.PNG" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/178634i40BA0A8ED948D577/image-size/medium?v=v2&amp;amp;px=400" role="button" title="error_COA_manual_reauthenticate2.PNG" alt="error_COA_manual_reauthenticate2.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="error_COA_manual_reauthenticate3_tapado.png" style="width: 400px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/178635i34768F5B2D17C792/image-size/medium?v=v2&amp;amp;px=400" role="button" title="error_COA_manual_reauthenticate3_tapado.png" alt="error_COA_manual_reauthenticate3_tapado.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;this is the error im getting and idea on what can i do to overcome this?&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 10 Mar 2023 15:17:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4791519#M580376</guid>
      <dc:creator>vivarock12</dc:creator>
      <dc:date>2023-03-10T15:17:34Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x COA reauthenticate - Aruba Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4791683#M580379</link>
      <description>&lt;P&gt;dACL?&amp;nbsp; I don' think Aruba Switches support dACLs.&amp;nbsp; You can call a local User Role that then maps to a local ACL or pass a local ACL name as the filter-id attribute.&amp;nbsp; Keep in mind the CoA port for Aruba devices is 3799.&lt;/P&gt;
&lt;P&gt;Also is CoA enabled on the Aruba Switch?&amp;nbsp; Is this an AOS-CX switch?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;radius dyn-authorization client [name] secret-key plaintext aruba123&lt;BR /&gt;radius dyn-authorization enable&lt;/P&gt;</description>
      <pubDate>Fri, 10 Mar 2023 21:47:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4791683#M580379</guid>
      <dc:creator>ahollifield</dc:creator>
      <dc:date>2023-03-10T21:47:45Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x COA reauthenticate - Aruba Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4791758#M580389</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;yes they do support them using VSA 92 and is working but what i want to do is change the Assing DACL that the user is using but every time i get that error, heres the configuration on theARUBA switch.&lt;/P&gt;
&lt;P&gt;radius-server host 192.100.1.95 key "Hola.123"&lt;BR /&gt;radius-server host 192.100.1.95 dyn-authorization&lt;BR /&gt;radius-server host 192.100.1.95 clearpass&lt;BR /&gt;radius-server access-request include framed-ip-address&lt;/P&gt;
&lt;P&gt;!&lt;/P&gt;
&lt;P&gt;is this the same as the config you share???&lt;/P&gt;
&lt;P&gt;radius dyn-authorization client [name] secret-key plaintext aruba123&lt;BR /&gt;radius dyn-authorization enable&lt;/P&gt;
&lt;P&gt;!&lt;BR /&gt;!&lt;/P&gt;
&lt;P&gt;thanks for the help by ther way&lt;/P&gt;</description>
      <pubDate>Sat, 11 Mar 2023 04:53:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4791758#M580389</guid>
      <dc:creator>vivarock12</dc:creator>
      <dc:date>2023-03-11T04:53:24Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x COA reauthenticate - Aruba Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4792047#M580400</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/340529"&gt;@vivarock12&lt;/a&gt;&amp;nbsp; The failure said no response from the NAD. Most likely the CoA port mismatched between ISE and the NAD. &lt;/P&gt;</description>
      <pubDate>Sun, 12 Mar 2023 06:59:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4792047#M580400</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2023-03-12T06:59:20Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x COA reauthenticate - Aruba Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4792251#M580421</link>
      <description>&lt;P&gt;this commands said that the COA request is geeting to the Switch but the switch does no response&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="vivarock12_0-1678679566338.png" style="width: 947px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/178775iB57EA9B51FB21222/image-dimensions/947x542?v=v2" width="947" height="542" role="button" title="vivarock12_0-1678679566338.png" alt="vivarock12_0-1678679566338.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Is there a special config to be done on the Client pc im using windows 802.1x client?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 13 Mar 2023 03:53:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4792251#M580421</guid>
      <dc:creator>vivarock12</dc:creator>
      <dc:date>2023-03-13T03:53:12Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x COA reauthenticate - Aruba Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4792960#M580442</link>
      <description>No it looks like you have the RADIUS server defined but you do not have CoA enabled for that same RADIUS server. You need to add those two lines I copied previously and ensure ISE is configured to use port 3799 for CoA for this Aruba switch.&lt;BR /&gt;</description>
      <pubDate>Mon, 13 Mar 2023 17:08:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4792960#M580442</guid>
      <dc:creator>ahollifield</dc:creator>
      <dc:date>2023-03-13T17:08:12Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x COA reauthenticate - Aruba Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4795787#M580544</link>
      <description>&lt;P&gt;this is an AOS-S does this are the same command?&lt;/P&gt;</description>
      <pubDate>Thu, 16 Mar 2023 16:03:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4795787#M580544</guid>
      <dc:creator>vivarock12</dc:creator>
      <dc:date>2023-03-16T16:03:15Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1x COA reauthenticate - Aruba Switch</title>
      <link>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4822423#M581394</link>
      <description>&lt;P&gt;the problem was&lt;/P&gt;
&lt;P&gt;radius-server host 192.100.1.95 clearpass&lt;/P&gt;
&lt;P&gt;i remove the parameter and everything works&lt;/P&gt;</description>
      <pubDate>Wed, 26 Apr 2023 17:46:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/802-1x-coa-reauthenticate-aruba-switch/m-p/4822423#M581394</guid>
      <dc:creator>vivarock12</dc:creator>
      <dc:date>2023-04-26T17:46:29Z</dc:date>
    </item>
  </channel>
</rss>

