cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
720
Views
0
Helpful
1
Replies

H3C SWITCH stuck in COA

ml12129
Level 1
Level 1

Hi experts,

  My customer gave me another challenge, to replace all cisco NAD to H3C. 

  Here is their request, do the posture check, if the PC is  no compliant, put them to VLAN 60,  then put them to VLAN 20 after their PC compliant. Everything is OK in cisco NAD but stuck the second authorization(COA) in H3C. Can anyone help me to solve this question? Thank you very much!

  Attach my log and config!2019-05-21_20h22_48.png2019-05-21_20h22_56.png2019-05-21_20h23_28.png2019-05-21_20h23_57.png2019-05-21_20h24_19.png

1 Accepted Solution

Accepted Solutions

ml12129
Level 1
Level 1

Already solved. The key is CISCO provide the HP Wired Device Profile is not include port bounce attribute. But the second authorization needs the port bounce to change vlan. So I searched forum and RFC 5176 about COA. Founded the solution about this case.

This post was the expert gave the profile which I reference. https://community.cisco.com/t5/security-documents/hpe-wired-xml/ta-p/3643636

View solution in original post

1 Reply 1

ml12129
Level 1
Level 1

Already solved. The key is CISCO provide the HP Wired Device Profile is not include port bounce attribute. But the second authorization needs the port bounce to change vlan. So I searched forum and RFC 5176 about COA. Founded the solution about this case.

This post was the expert gave the profile which I reference. https://community.cisco.com/t5/security-documents/hpe-wired-xml/ta-p/3643636