05-26-2010 04:19 AM - edited 03-10-2019 05:09 PM
Hello
I have ACS 4.2.0.124p14, 3750-48PSS switch with 12.50.SE3 and test PC running Windows XP. PC authenticated by MAB and switch correctly download dACL from ACS. But if dACL contains more than ~10 lines traffic not passed thru port (dACL downloaded correctly). Does anybody know why traffic is blocked or how I can debug this or any restrictions in dACL construction.
Regards,
Stanislav
05-26-2010 06:25 AM
This is what I understand; The port is getting authorized fine, DACL are being sent by the radius server and are getting applied to the concern port but its not taking effect. This is an on going issue..we have seen many cases with this.
As you said uf there are more then 10 lines then only its not working...In that case There is an internal bug on this: CSCsf14450: DACL not consistently downloaded to switch during MAB testing.
HTH
JK
Do rate helpful posts-
05-26-2010 07:54 AM
Thank you for reply. Where is bug CSCsf14450 - in ACS or Catalyst IOS?
05-26-2010 07:59 AM
Catalyst IOS but finally its declared as Junked bug.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide