07-23-2018 11:55 PM
Hi There Forum
I have a customer who has deployed ISE v2.3 in Low Impact Mode and is using Cisco 4500 Series Switches as his Access Layer. When a 802.1x client is connected to the LAN, the client is successfully authenticated and authorized and the ISE pushes the dACL (Permit IP any any) to the switch port. The customer has reported that after this (and intermittently) Outlook on the client will stay connected to the server but any outgoing emails simply stay in the Outbox and are not sent. When the client connects to the Wireless Network or removes the ISE configuration from the switch port, the mails are sent.
I do not believe that this is an ISE issue and that it could possibly be another issue but has anyone on this forum perhaps run into the same / similar issues before?
Thanks in Advance
Steven
Solved! Go to Solution.
07-24-2018 12:28 PM
Since this is clearly a switch configuration issue, you need to provide switch configuration details.
Hardware model, software version, switchport configuration, show authentication session details output, etc.
This sounds like a good case for the TAC to troubleshoot.
07-24-2018 04:32 AM
Hi ,
You told you are in LoW impact mode ,what is the ACL on the port and after user authenticated are you see on the port only (permit ip any any ) or you see both ACL for the port + permit ip any any
07-24-2018 12:28 PM
Since this is clearly a switch configuration issue, you need to provide switch configuration details.
Hardware model, software version, switchport configuration, show authentication session details output, etc.
This sounds like a good case for the TAC to troubleshoot.
11-13-2019 09:25 PM
Hi. Are you managed to solve this ? What the solution?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide