<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic EAP retry limit &amp; PEAP in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/eap-retry-limit-peap/m-p/178785#M11522</link>
    <description>&lt;P&gt;We are using PEAP authentication with ACS 3.2, wink2 client with the Microsoft PEAP supplement (Q313664).  When the client is booting up it associates to the AP and the AP initiates the EAP process.  Because the client is still in the boot process and doesn&amp;#146;t respond fast enough the AP's EAP requests, it disassociates the client before is finishes the bootup process and the user cannot login.  Is there away to increase the number of EAP requests or adjust the timeout value between EAP requests?  (If the user waits approx 2 minutes the client will re-attempt to associate and the PEAP process is successful).&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Here is an example of the AP EAP diag:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2003/08/22 11:05:03 (Info): Station [MLT06T]0009b746267 Associated&lt;/P&gt;&lt;P&gt;Dot1X Authentication Entry (MLT06T) is created (Current Count=1)&lt;/P&gt;&lt;P&gt;RADIUS: Sending EAP-Request/Identity(id=1) packet to client MLT06T&lt;/P&gt;&lt;P&gt;RADIUS: Sending EAP-Request/Identity(id=2) packet to client MLT06T&lt;/P&gt;&lt;P&gt;Session-timeout for station 0009b746267&lt;/P&gt;&lt;P&gt;RADIUS: Sending EAP-Request/Identity(id=3) packet to client MLT06T&lt;/P&gt;&lt;P&gt;EAP: Received EAPOL-Start from client MLT06T&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2003/08/22 11:05:47 (Warning): EAP retry limit reached for Station [MLT06T]0009b&lt;/P&gt;&lt;P&gt;746267&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2003/08/22 11:05:47 (Info): Deauthenticating [MLT06T]0009b746267, reason "Previ&lt;/P&gt;&lt;P&gt;ous Authentication No Longer Valid" &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help would be greatly appreciated!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 04 Jul 2021 15:58:03 GMT</pubDate>
    <dc:creator>rsumpter</dc:creator>
    <dc:date>2021-07-04T15:58:03Z</dc:date>
    <item>
      <title>EAP retry limit &amp; PEAP</title>
      <link>https://community.cisco.com/t5/wireless/eap-retry-limit-peap/m-p/178785#M11522</link>
      <description>&lt;P&gt;We are using PEAP authentication with ACS 3.2, wink2 client with the Microsoft PEAP supplement (Q313664).  When the client is booting up it associates to the AP and the AP initiates the EAP process.  Because the client is still in the boot process and doesn&amp;#146;t respond fast enough the AP's EAP requests, it disassociates the client before is finishes the bootup process and the user cannot login.  Is there away to increase the number of EAP requests or adjust the timeout value between EAP requests?  (If the user waits approx 2 minutes the client will re-attempt to associate and the PEAP process is successful).&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Here is an example of the AP EAP diag:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2003/08/22 11:05:03 (Info): Station [MLT06T]0009b746267 Associated&lt;/P&gt;&lt;P&gt;Dot1X Authentication Entry (MLT06T) is created (Current Count=1)&lt;/P&gt;&lt;P&gt;RADIUS: Sending EAP-Request/Identity(id=1) packet to client MLT06T&lt;/P&gt;&lt;P&gt;RADIUS: Sending EAP-Request/Identity(id=2) packet to client MLT06T&lt;/P&gt;&lt;P&gt;Session-timeout for station 0009b746267&lt;/P&gt;&lt;P&gt;RADIUS: Sending EAP-Request/Identity(id=3) packet to client MLT06T&lt;/P&gt;&lt;P&gt;EAP: Received EAPOL-Start from client MLT06T&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2003/08/22 11:05:47 (Warning): EAP retry limit reached for Station [MLT06T]0009b&lt;/P&gt;&lt;P&gt;746267&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2003/08/22 11:05:47 (Info): Deauthenticating [MLT06T]0009b746267, reason "Previ&lt;/P&gt;&lt;P&gt;ous Authentication No Longer Valid" &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help would be greatly appreciated!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 15:58:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/eap-retry-limit-peap/m-p/178785#M11522</guid>
      <dc:creator>rsumpter</dc:creator>
      <dc:date>2021-07-04T15:58:03Z</dc:date>
    </item>
    <item>
      <title>Re: EAP retry limit &amp; PEAP</title>
      <link>https://community.cisco.com/t5/wireless/eap-retry-limit-peap/m-p/178786#M11523</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If you check under the External Database configuration is machine authentication checked for either PEAP or EAP ?? If so, uncheck the boxes and you should decrease the time it takes to authenticate.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 26 Aug 2003 15:43:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/eap-retry-limit-peap/m-p/178786#M11523</guid>
      <dc:creator>ghess</dc:creator>
      <dc:date>2003-08-26T15:43:54Z</dc:date>
    </item>
  </channel>
</rss>

