<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Sda Authentication Template not configured on all interfaces in Software-Defined Access (SD-Access)</title>
    <link>https://community.cisco.com/t5/software-defined-access-sd-access/sda-authentication-template-not-configured-on-all-interfaces/m-p/3992904#M415</link>
    <description>&lt;P&gt;Thanks Mike,&lt;/P&gt;&lt;P&gt;the FE was configured as Distribution and not as access. changing the role and reconfiuring it in sda has resolved the issue.&lt;/P&gt;</description>
    <pubDate>Tue, 03 Dec 2019 16:39:32 GMT</pubDate>
    <dc:creator>cygnuz</dc:creator>
    <dc:date>2019-12-03T16:39:32Z</dc:date>
    <item>
      <title>Sda Authentication Template not configured on all interfaces</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/sda-authentication-template-not-configured-on-all-interfaces/m-p/3992837#M413</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;I configured my SDA network and configured Closed Auth as authentication template in the onboarding pool.&lt;/P&gt;&lt;P&gt;When i connect an endpoint to the FE switch it seems it is not configured for dot1x by default while if i explicity configure the port (assign) for closed auth the endpoint can authenticate via dot1x.&lt;/P&gt;&lt;P&gt;default port configuration follow:&lt;/P&gt;&lt;P&gt;Cat3850_2-172-16-66-68#sh run int gi 1/0/1&lt;BR /&gt;Building configuration...&lt;/P&gt;&lt;P&gt;Current configuration : 81 bytes&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/1&lt;BR /&gt;device-tracking attach-policy IPDT_MAX_10&lt;BR /&gt;end&lt;/P&gt;&lt;P&gt;Cat3850_2-172-16-66-68#sh dot1x all&lt;BR /&gt;Sysauthcontrol Enabled&lt;BR /&gt;Dot1x Protocol Version 3&lt;/P&gt;&lt;P&gt;Dot1x Info for GigabitEthernet1/0/11&lt;BR /&gt;--------------------------------------------&lt;BR /&gt;PAE = AUTHENTICATOR&lt;BR /&gt;QuietPeriod = 60&lt;BR /&gt;ServerTimeout = 0&lt;BR /&gt;SuppTimeout = 30&lt;BR /&gt;ReAuthMax = 3&lt;BR /&gt;MaxReq = 2&lt;BR /&gt;TxPeriod = 7&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;is this a normal behaviour?I thought that every interface should be automatically configured via default auth template.&lt;/P&gt;</description>
      <pubDate>Tue, 03 Dec 2019 15:34:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/sda-authentication-template-not-configured-on-all-interfaces/m-p/3992837#M413</guid>
      <dc:creator>cygnuz</dc:creator>
      <dc:date>2019-12-03T15:34:22Z</dc:date>
    </item>
    <item>
      <title>Re: Sda Authentication Template not configured on all interfaces</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/sda-authentication-template-not-configured-on-all-interfaces/m-p/3992879#M414</link>
      <description>You definitely need to configure ports to support host on-boarding. This is done in the same place that you are mentioning via device-type selection, auth mode, or static provisioning for segment/sgt. Have you assigned the FE to site in inventory and set the network role to access in fabric infrastructure? I know that for extended nodes this configuration is accurate prior to statically assigning host ports for on-boarding:&lt;BR /&gt;interface GigabitEthernet1/0/1&lt;BR /&gt;device-tracking attach-policy IPDT_MAX_10&lt;BR /&gt;end</description>
      <pubDate>Tue, 03 Dec 2019 16:17:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/sda-authentication-template-not-configured-on-all-interfaces/m-p/3992879#M414</guid>
      <dc:creator>Mike.Cifelli</dc:creator>
      <dc:date>2019-12-03T16:17:23Z</dc:date>
    </item>
    <item>
      <title>Re: Sda Authentication Template not configured on all interfaces</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/sda-authentication-template-not-configured-on-all-interfaces/m-p/3992904#M415</link>
      <description>&lt;P&gt;Thanks Mike,&lt;/P&gt;&lt;P&gt;the FE was configured as Distribution and not as access. changing the role and reconfiuring it in sda has resolved the issue.&lt;/P&gt;</description>
      <pubDate>Tue, 03 Dec 2019 16:39:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/sda-authentication-template-not-configured-on-all-interfaces/m-p/3992904#M415</guid>
      <dc:creator>cygnuz</dc:creator>
      <dc:date>2019-12-03T16:39:32Z</dc:date>
    </item>
  </channel>
</rss>

