<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Reauthentication Request issue in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/reauthentication-request-issue/m-p/5374400#M599960</link>
    <description>&lt;P&gt;may be peak hours issue, so need to look different devices any thing stopping due to high load in the network.&lt;/P&gt;</description>
    <pubDate>Wed, 04 Mar 2026 13:10:18 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2026-03-04T13:10:18Z</dc:date>
    <item>
      <title>Reauthentication Request issue</title>
      <link>https://community.cisco.com/t5/network-access-control/reauthentication-request-issue/m-p/5374325#M599952</link>
      <description>&lt;P&gt;Hi Everyone,&lt;/P&gt;&lt;P&gt;ISE 3.2.0.542 patch 2,7&lt;/P&gt;&lt;P&gt;Our WLC is 9800 17.12.6 version&lt;/P&gt;&lt;P&gt;We recently noticed that user connecting to the network and being connected, but then for some unknown reason it send second authentication request to Cisco ISE and we see this log:&lt;/P&gt;&lt;P&gt;1204 Received reauthenticate request&lt;BR /&gt;11220 Prepared the reauthenticate request&lt;BR /&gt;11100 RADIUS-Client about to send request - ( port = 1700 , type = Cisco CoA )&lt;BR /&gt;11104 RADIUS-Client request timeout expired ( [step latency=15012 ms] Step latency=15012 ms)&lt;BR /&gt;11213 No response received from Network Access Device after sending a Dynamic Authorization request&lt;/P&gt;&lt;P&gt;Event 5417 Dynamic Authorization failed&lt;BR /&gt;Failure Reason 11213 No response received from Network Access Device after sending a Dynamic Authorization request&lt;/P&gt;&lt;P&gt;However user is ok and working fine&lt;/P&gt;&lt;P&gt;Anyone faced such problem? Then only thing we added recently is Posture Reassestment Policy (PRA)&lt;/P&gt;</description>
      <pubDate>Wed, 04 Mar 2026 06:33:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/reauthentication-request-issue/m-p/5374325#M599952</guid>
      <dc:creator>Kamran Mustafayev</dc:creator>
      <dc:date>2026-03-04T06:33:08Z</dc:date>
    </item>
    <item>
      <title>Re: Reauthentication Request issue</title>
      <link>https://community.cisco.com/t5/network-access-control/reauthentication-request-issue/m-p/5374333#M599953</link>
      <description>&lt;LI-CODE lang="markup"&gt;Anyone faced such problem? Then only thing we added recently is Posture Reassestment Policy (PRA)

&lt;/LI-CODE&gt;
&lt;P&gt;Since you recently added&amp;nbsp;Posture Reassessment (PRA), ISE is now proactively sending CoA requests at defined intervals.Review the PRA interval. If it is too aggressive, it may trigger these errors more frequently during roaming events.&lt;/P&gt;
&lt;P&gt;Also check&amp;nbsp; and&amp;nbsp;&lt;SPAN&gt;Ensure that port 1700 is open in both directions between your ISE PSN nodes and the WLC management/redundancy interface.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;5417 Dynamic Authorization failed&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;Applies to:&lt;/STRONG&gt;&amp;nbsp;All EAP types and MAB&lt;BR /&gt;&lt;STRONG&gt;Possible Causes:&lt;/STRONG&gt;&amp;nbsp;NAD is not configured with change of authorization (CoA) from ISE PSN.&lt;BR /&gt;&lt;STRONG&gt;Resolution :&lt;/STRONG&gt;&amp;nbsp;Check the connectivity between ISE and the NAD. Ensure that ISE is defined as&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; the dynamic authorization client on NAD and that CoA is supported on device&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Failure Reason 11213 - check below post :&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://community.cisco.com/t5/network-access-control/11213-no-response-received-from-network-access-device-after/td-p/3874051" target="_blank"&gt;https://community.cisco.com/t5/network-access-control/11213-no-response-received-from-network-access-device-after/td-p/3874051&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Mar 2026 07:15:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/reauthentication-request-issue/m-p/5374333#M599953</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2026-03-04T07:15:57Z</dc:date>
    </item>
    <item>
      <title>Re: Reauthentication Request issue</title>
      <link>https://community.cisco.com/t5/network-access-control/reauthentication-request-issue/m-p/5374355#M599956</link>
      <description>&lt;P&gt;Hi, 1700 is open and works fine, PRA set to 1 hour with 5 min default grace, I noticed it happens only in the morning when most of users comes to the office&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Mar 2026 08:13:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/reauthentication-request-issue/m-p/5374355#M599956</guid>
      <dc:creator>Kamran Mustafayev</dc:creator>
      <dc:date>2026-03-04T08:13:57Z</dc:date>
    </item>
    <item>
      <title>Re: Reauthentication Request issue</title>
      <link>https://community.cisco.com/t5/network-access-control/reauthentication-request-issue/m-p/5374400#M599960</link>
      <description>&lt;P&gt;may be peak hours issue, so need to look different devices any thing stopping due to high load in the network.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Mar 2026 13:10:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/reauthentication-request-issue/m-p/5374400#M599960</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2026-03-04T13:10:18Z</dc:date>
    </item>
  </channel>
</rss>

