<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 802.1X EAP-TLS in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4261999#M1076822</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I reviewed the ISE logs and the workstation is being rejected with the reason that "the workstation abandoned the EAP session and started a new one." Any idea on why does this happen?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Mon, 21 Dec 2020 19:50:49 GMT</pubDate>
    <dc:creator>AbelBurgos5029</dc:creator>
    <dc:date>2020-12-21T19:50:49Z</dc:date>
    <item>
      <title>802.1X EAP-TLS</title>
      <link>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4259581#M1076706</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am currently in the process of rolling out Dot1x in a small classified network. The network has the following:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;(12) Windows 10 Machines using native supplicant software&lt;/P&gt;&lt;P&gt;(1) Cisco C9300 acting as the authenticator&lt;/P&gt;&lt;P&gt;(1) Cisco ISE acting as the authentication Server using AD for credentials&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I configured certificate auto-enrollment for machines and users in the AD and it is working fine; all machines as well as users are able to get their certificate to authenticate with EAP-TLS. Everything was working fine until I had to switch around 3 machines to different switchports. Out of the 3 machines that I switched around only 1 can still authenticate. The others two no longer can.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am thinking this might have something to do with the mac address-table, DHCP or something like that. Anyone have had this issue before? Any help will be appreciated!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Abel&lt;/P&gt;</description>
      <pubDate>Wed, 16 Dec 2020 19:52:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4259581#M1076706</guid>
      <dc:creator>AbelBurgos5029</dc:creator>
      <dc:date>2020-12-16T19:52:29Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X EAP-TLS</title>
      <link>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4259691#M1076712</link>
      <description>&lt;P&gt;what you see logs on the switch and ISE.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Dec 2020 22:50:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4259691#M1076712</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2020-12-16T22:50:23Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X EAP-TLS</title>
      <link>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4260067#M1076738</link>
      <description>&lt;P&gt;I will take a look at the ISE and Switch logs tomorrow and post it here. Currently stucked home with the Snow Storm (NY).&lt;/P&gt;</description>
      <pubDate>Thu, 17 Dec 2020 13:33:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4260067#M1076738</guid>
      <dc:creator>AbelBurgos5029</dc:creator>
      <dc:date>2020-12-17T13:33:42Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X EAP-TLS</title>
      <link>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4261999#M1076822</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I reviewed the ISE logs and the workstation is being rejected with the reason that "the workstation abandoned the EAP session and started a new one." Any idea on why does this happen?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 21 Dec 2020 19:50:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4261999#M1076822</guid>
      <dc:creator>AbelBurgos5029</dc:creator>
      <dc:date>2020-12-21T19:50:49Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X EAP-TLS</title>
      <link>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4262180#M1076833</link>
      <description>&lt;P&gt;That issue is most often due to supplicant configuration issues. It can be difficult to troubleshot due to there being so many potential variables on endpoint configurations. I'd start with verifying the various settings under the supplicant configuration (security tab of the network adapter properties). You didn't mention how you pushed out the configurations - was it via GPO or manually set them?&lt;/P&gt;</description>
      <pubDate>Tue, 22 Dec 2020 03:45:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4262180#M1076833</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-12-22T03:45:33Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X EAP-TLS</title>
      <link>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4263028#M1076880</link>
      <description>&lt;P&gt;Marvin,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The supplicant configurations are pushed via GPO. So the workstation having the issues has the same configuration as the rest of the machines.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Dec 2020 16:08:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4263028#M1076880</guid>
      <dc:creator>AbelBurgos5029</dc:creator>
      <dc:date>2020-12-23T16:08:32Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X EAP-TLS</title>
      <link>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4263048#M1076881</link>
      <description>&lt;P&gt;GPO should standardize the supplicant config.&lt;/P&gt;
&lt;P&gt;Is it a wired or wireless adapter? I have seen driver issues with wireless sometimes cause this. Less often is that the case with wired.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Dec 2020 17:09:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4263048#M1076881</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2020-12-23T17:09:49Z</dc:date>
    </item>
    <item>
      <title>Re: 802.1X EAP-TLS</title>
      <link>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4300319#M1078935</link>
      <description>&lt;P&gt;Unity Connection has a "Route from subsequent routing rule" choice that can be used for this sort of "snow day" function (i.E. Everybody calling in hears a message after which the decision&lt;A href="https://www.thesnowdaypredictor.com/" target="_self"&gt;link&lt;/A&gt; that is routed to where it'd have long past commonly after that.&lt;/P&gt;</description>
      <pubDate>Tue, 02 Mar 2021 21:34:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/802-1x-eap-tls/m-p/4300319#M1078935</guid>
      <dc:creator>fasease22680</dc:creator>
      <dc:date>2021-03-02T21:34:44Z</dc:date>
    </item>
  </channel>
</rss>

