cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2062
Views
0
Helpful
8
Replies

Mab authentication in domain Unknown after network device reboot

SMD28316
Level 1
Level 1

After a network device gets reloaded, I see that the endpoints not getting to the proper domain (voice or data) but they get placed in the unknown VLAN instead.

 

I can resolve this by manually doing a shut no sh to the interface, could the issue be related to stale sessions on the switch? Shouldn't they be cleared once rebooted?

8 Replies 8

Damien Miller
VIP Alumni
VIP Alumni

Can you share the switch platform and software version you're running? It sounds like a bug I have seen. 

I am having this issue with C9300, OS 17.6.2 , and 17.3.4

balaji.bandi
Hall of Fame
Hall of Fame

Not sure is this your case - I may have encountered this past, is the configuration on the switch intact ? or was any config lost when it was rebooted?

 

Can you post the below output :

 

show auth sess

show auth sess interface x/x  detailed

 

or this could be a bug as @Damien Miller mentioned..

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Don't think this was resolved. Noticed same during a recent testing for MAB clients mainly. ISE did not report any issue but switch reported "Unknown" against domain.

Please make new post 

MHM

Was trying to use an existing thread if that was okay to eliminate duplicate threads for same issues.

I know but even if it solve here you can not close issue.

That why 

Waiting you friend 

MHM

i would expect to post more information - rather just unknown error.

ISE version

what switch Model and IOS Code ?

how does switch configuration look like ?

what kind of end device ?

what is ISE real time logs show ?

post switch debug output ?

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help