08-25-2010 06:18 AM - edited 03-09-2019 11:08 PM
Hi
I have NAC deployed in L2 OOB VGW mode and everything works fine. We see the FWSM , which has the L3 interface for the access VLAN, bombarded by UDP port 8905 traffic. I believe this is happening even after the PCs have changed to access VLAN (as I can see them in the online users list and their switchport is in Access VLAN. Is this normal and how can we stop it from happening? I have the discovery host set to default which is the CAM IP which ofcourse is on a separate subnet. Please let me know
Thanks
Shaffeel
Solved! Go to Solution.
08-25-2010 09:07 AM
08-25-2010 06:53 AM
Shaffeel,
Agents are designed that way to send out traffic on port 8905 every 5 seconds. This is so when the agent is in the Auth VLAN, the CAS can 'sense' the agent and ask for authentication, so yes, it's a nuisance, but working as designed.
HTH,
Faisal
08-25-2010 08:38 AM
Faisal
Thanks for your response. So just to confirm, even after authentication and posture assessment is complete, the agent tries to send these packets every 5 seconds? There is no way to stop this behaviour?
Shaffeel
08-25-2010 09:07 AM
Shaffeel,
You are correct on both counts.
HTH,
Faisal
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide