Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community
here
.
Cancel
Post
Community
Buy or Renew
EN US
Chinese
EN US
French
Japanese
Korean
Portuguese
Spanish
Log In
MENU
CLOSE
Buy or Renew
Log In
EN US
Chinese
EN US
French
Japanese
Korean
Portuguese
Spanish
944133290@qq.co
mqq.com
Community Member
My Settings
Member since
02-22-2020
02-29-2020
Awards
No awards available to display
Recent Badges
User Statistics
6
Posts
0
Solutions
0
Helpful votes Given
0
Helpful votes Received
Recent Badges
Reorder
Certifications
Cisco Community
About 944133290@qq.comqq.com
Please click
here
to merge your Webex community account with this Cisco.com community account
User Activity
Posts
Replies
ISE 2.6有线802.1x下发DACL条目过多时交换机无法应用ACE
02-25-2020
ISE 2.6做有线802.1x MAB认证,下发的DACL里有82条ACE。认证成功,show authen session g1/0/47 details看到了下发的DACL,但是show access-list里DACL的ACE是空的,交换机没应用上。是什么原因。同时radius报文里第24号属性值state的作用是什么,交换机是怎么对这字段做处理的?认证报文抓包见附件。
3650交换机WebAuth认证,Server Policies是什么
02-22-2020
终端接入交换机做WebAuth认证,页面被重定向到登录页面,但是终端访问不了应用在接口下ACL的指定内容。用show authentication sessions interface gigabitEthernet 1/0/47 details命令发现,WebAuth认证正在进行时,终端被Server Policies里的策略给限制了,没有用我想要的Local Policies。CiscoWS-C3650-48TS#show authen sess int g1/0/47 details ...
3560交换机802.1x认证应用DACL不全
02-22-2020
交换机固件版本:BOOTLDR: C3560 Boot Loader (C3560-HBOOT-M) Version 12.2(35r)SE2, RELEASE SOFTWARE (fc1)用3560做802.1x时,下发的DACL里如果有多条ACE,结果第一条ACE没用应用上交换机,其他的ACE都应用上了。看交换机debug日志,交换机已经收到了ACL里的所有ACE,但就是不处理第一条ACE。这是为什么?因为是和第三方厂商做对接的,DACL也是通过第三方Radius下发。感觉可能是radius...
No replies to display.
Community Statistics
Member Since
02-22-2020
06:55 AM
Date Last Visited
02-29-2020
09:57 AM
Posts
6