<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: New authentication during an active session in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/new-authentication-during-an-active-session/m-p/5550786#M600367</link>
    <description>&lt;P&gt;Have you noticed if those sessions loses the connection before they try to reauthenticate? I think what might be happening here is that the connection gets dropped and as a result a new session needs to be established. Best thing I would recommend here would be looking at the logs and keep an active monitor to the remote site to see if when that issue happens the connection is dropped. If that is the case then probably I would check with the ISP and see why that happens and if there is a way to get a more reliable line. Also, I think the maximum latency recommended between ISE and the NADs is 200 ms and you seem to have way higher latency than that.&lt;/P&gt;</description>
    <pubDate>Wed, 06 May 2026 08:36:42 GMT</pubDate>
    <dc:creator>Aref Alsouqi</dc:creator>
    <dc:date>2026-05-06T08:36:42Z</dc:date>
    <item>
      <title>New authentication during an active session</title>
      <link>https://community.cisco.com/t5/network-access-control/new-authentication-during-an-active-session/m-p/5550670#M600364</link>
      <description>&lt;P&gt;Good evening,&lt;/P&gt;&lt;P&gt;I have several clients at remote locations that initiate a new authentication every 30–45 seconds after a successful authentication.&lt;BR /&gt;Could this be due to latency?&lt;/P&gt;&lt;P&gt;The TotalAuthLatency is ~500–550 and the ClientLatency is ~400–500.&lt;BR /&gt;Sometimes the problem just stops “out of the blue,” and the system waits until the timer expires (8,600 seconds).&lt;BR /&gt;Other clients don’t have this problem at all, even with the same latency times.&lt;/P&gt;&lt;P&gt;All clients are configured identically.&lt;/P&gt;&lt;P&gt;EAP-TLS is used as the authentication protocol.&lt;BR /&gt;The switches are the same as those at headquarters (C2960xr) with the same AAA configuration.&lt;/P&gt;&lt;P&gt;Thanks for your input.&lt;/P&gt;&lt;P&gt;-Sascha&lt;/P&gt;</description>
      <pubDate>Tue, 05 May 2026 19:29:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/new-authentication-during-an-active-session/m-p/5550670#M600364</guid>
      <dc:creator>sascha-werner</dc:creator>
      <dc:date>2026-05-05T19:29:35Z</dc:date>
    </item>
    <item>
      <title>Re: New authentication during an active session</title>
      <link>https://community.cisco.com/t5/network-access-control/new-authentication-during-an-active-session/m-p/5550786#M600367</link>
      <description>&lt;P&gt;Have you noticed if those sessions loses the connection before they try to reauthenticate? I think what might be happening here is that the connection gets dropped and as a result a new session needs to be established. Best thing I would recommend here would be looking at the logs and keep an active monitor to the remote site to see if when that issue happens the connection is dropped. If that is the case then probably I would check with the ISP and see why that happens and if there is a way to get a more reliable line. Also, I think the maximum latency recommended between ISE and the NADs is 200 ms and you seem to have way higher latency than that.&lt;/P&gt;</description>
      <pubDate>Wed, 06 May 2026 08:36:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/new-authentication-during-an-active-session/m-p/5550786#M600367</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2026-05-06T08:36:42Z</dc:date>
    </item>
  </channel>
</rss>

