cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1932
Views
1
Helpful
4
Replies

No 'authentication control-direction in' equivalent on CBS350 switch

RobertKarsai
Level 1
Level 1

Hi All,

Have anybody ever run into a problem in a MAC auth environment, that certain printers or other embedded devices (as they tend to remain silent) just time out from FDB, when they time out from FDB they loose their MAC authentication on the switch too, and there is no way to wake them up, unless they do something on their own (like an NTP request). This traffic then makes those devices authenticated and available again for a while, but eventually their FDB records will time out again soon, then their authentication is also dropped. In this state, the port does not receive or send packets until the authentication process has been completed, and authentication can only be initiated by the device itself (like sending a packet to an NTP server). So... in IOS there is a port command to avoid this, "authentication control-direction in" (instead of the default "authentication control-direction both"). I cannot seem to find the CBS counterpart of this command on CBS350 series switches.

BR
Robert

4 Replies 4

Arne Bier
VIP
VIP

Oh dear. That old chestnut. I have not played with those switches. If the command doesn't exist (in the CLI) then does the switch support something like device tracking feature?  You could try using DT to send periodic ARP probes to the endpoint to force it to respond often enough.