04-07-2010 01:59 AM - edited 03-06-2019 10:29 AM
i have configured my switch for 802.1x setup. My radius server is Ms-IAS using certificate+peap authentication. Problem is when authentication fails for some unknown reason the mac address does not get cleared from the mac table. It keeps on telling drop for a while. I have already set the mac address aging time-out to 0 seconds. Here's how it looks:
6 001d.afff.740d STATIC Fa2/0/21
560 0015.5830.18b8 STATIC Drop
560 001d.afff.740d STATIC Fa2/0/21
drop status remains thr for a while even after unpluggin the cable fro the machine!!!!
below is switch stack version:
Switch Ports Model SW Version SW Image
------ ----- ----- ---------- ----------
1 52 WS-C3750-48P 12.2(53)SE1 C3750-IPSERVICESK9-M
* 2 52 WS-C3750-48P 12.2(53)SE1 C3750-IPSERVICESK9-M
Any feedback much appreciated.
04-15-2010 11:24 AM
Maybe I am misunderstanding your question.
Static means that it will not clear because you have manually set it.
aging-time only effects dynamic address'
Maybe if you restate your question you would get more responses.
04-16-2010 04:48 AM
i think u can usw clear mac-add-table command for clearing dynamic entries
hope it works
use the above link
01-21-2011 07:13 AM
Hello,
I am experiencing the same issue. I have a case open with TAC right now, but we have not yet found the solution.
Does anyone have an answer for this?
Thanks, Russ
09-08-2013 08:08 AM
Hi Russ
did you find the solution ?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide