cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
361
Views
0
Helpful
5
Replies

DHCP Server issues DOT1X

Jason2005
Level 1
Level 1

Hello

After I have setted every policy on the switch and everything is working fine through an ISE authentification via dot1x, now server cannot reach its gateway in order to give IP DHCP addresses to the hosts on VLANs!

Can anyone help me please

5 Replies 5

marce1000
VIP
VIP

 

        - Are you talking about an issue on the DHCP server here (or the dhcp-client) ?

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

If the endpoint not get correct vlan in authz then dhcp not work correctly.

MHM

Arne Bier
VIP
VIP

NAC doesn't interfere with DHCP. All the usual rule still apply. Not sure what you're asking really. Ensure that NAC authorized endpoints are not getting a dACL that blocks DHCP. And then of course (as usual) ensure that the access switch allows DHCP on the uplinks that go upstream towards the DHCP server. 

Jason2005
Level 1
Level 1

no my access switch can ping both ISE but could not ping the server, and they are on the same range!!! whyy??

@Arne Bier 

@MHM Cisco World 

@marce1000 

When asking a question about why something doesn’t work, how can we possibly answer that question without seeing your config?

If you can't ping the DHCP server that is on the same subnet as ISE, then perhaps it's a Windows device that doesn't respond to ping. Can anything else ping the server?

What have you tried so far?