cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
376
Views
0
Helpful
1
Replies

OOB forced log out

lolayo_19
Level 1
Level 1

Hi,

I have an OOB VG environment running successfuly, my only question is what options do I have to force to log out a user and be re-certified.

As far as I know the only ways OOB mode logs out a user is when it detects a link down or when the session timer expires. Meaning if I reboot a machine and the user is connected via an IP Phone, when the machine come back up, the user will still be certified and will not need to authenticate.

Is this correct. Can I make NAC log them out if the machine reboots?

Thanks for any help.

Usefull answers will be rated!

1 Reply 1

smahbub
Level 6
Level 6

If the Cisco NAC Appliance system somehow terminates the OOB client session (if the system administrator is forced to "kick" the user out, for example) and the switch changes the VLAN assignment for the client's access port from the Access VLAN back to the Authentication VLAN, the client machine discovers the VLAN change and automatically initiates an IP address refresh/renew to ensure the user stays connected to the network.