Here there is the debug complete made on the WLC with the command debug mac ... 1. You have the right wlan-vlan mapping for that site (If local switching) Yes it's correct 2. If the vlan has ip helper enabled (if using an external DHCP server) Yes, we have an external DHCP and ip helper configured 3. Also confirm if you can reach the DHCP server from that location sourcing from the SVI (layer 3 interface) Yes, I can reach the DHCP from SVI 4. APs are assigned to correct flexconnect group Yes 5. Ensure that if you have Flex ACL or any ACL on WLC is not dropping that traffic. There is no ACL configured 68:ec:c5:XX:XX:XX = MAC ADDRESS CLIENT 00:c1:64:XX:XX:XX = BSSID MAC ADDRESS 00:C1:64:YY:YY:YY = MAC ADDRESS Base Radio of AP (ITSSG-X-WLC0003) >debug mac addr 68:ec:c5:XX:XX:XX (ITSSG-X-WLC0003) >*dot1xSocketTask: Sep 06 16:42:31.615: [PA] 1x: frame too short (dataLen 82) - min size 7374 *apfOpenDtlSocket: Sep 06 16:43:07.716: [PA] 68:ec:c5:XX:XX:XX Recevied management frame ASSOCIATION REQUEST on BSSID 00:c1:64:XX:XX:XX destination addr 00:c1:64:XX:XX:XX *apfMsConnTask_0: Sep 06 16:43:07.717: [PA] 68:ec:c5:XX:XX:XX Station: 68:ec:c5:XX:XX:XX 11v BSS Transition not enabled on the AP 00:C1:64:YY:YY:YY *apfMsConnTask_0: Sep 06 16:43:07.717: [PA] 68:ec:c5:XX:XX:XX Association received from mobile on BSSID 00:c1:64:XX:XX:XX AP ITVNT-LAP2 *apfMsConnTask_0: Sep 06 16:43:07.717: [PA] 68:ec:c5:XX:XX:XX Station: 68:ec:c5:XX:XX:XX 11v BSS Transition not enabled on the AP 00:C1:64:YY:YY:YY *apfMsConnTask_0: Sep 06 16:43:07.717: [PA] 68:ec:c5:XX:XX:XX Global 200 Clients are allowed to AP radio *apfMsConnTask_0: Sep 06 16:43:07.717: [PA] 68:ec:c5:XX:XX:XX Max Client Trap Threshold: 0 cur: 7 *apfMsConnTask_0: Sep 06 16:43:07.717: [PA] 68:ec:c5:XX:XX:XX Rf profile 600 Clients are allowed to AP wlan *apfMsConnTask_0: Sep 06 16:43:07.717: [PA] 68:ec:c5:XX:XX:XX override for default ap group, marking intgrp NULL *apfMsConnTask_0: Sep 06 16:43:07.717: [PA] 68:ec:c5:XX:XX:XX apfApplyWlanPolicy: Apply WLAN Policy over PMIPv6 Client Mobility Type, Tunnel User - 0 *apfMsConnTask_0: Sep 06 16:43:07.717: [PA] 68:ec:c5:XX:XX:XX In processSsidIE:6609 setting Central switched to FALSE *apfMsConnTask_0: Sep 06 16:43:07.717: [PA] 68:ec:c5:XX:XX:XX Set Clinet MSCB as Central Association Disabled *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX Applying site-specific Local Bridging override for station 68:ec:c5:XX:XX:XX - vapId 1, site 'Vignate', interface 'management' *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX Applying Local Bridging Interface Policy for station 68:ec:c5:XX:XX:XX - vlan 202, interface id 0, interface 'management' *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX override from ap group, removing intf group from mscb *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX Applying site-specific override for station 68:ec:c5:XX:XX:XX - vapId 1, site 'Vignate', interface 'management' *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX Applying Interface(management) policy on Mobile, role Local. Ms NAC State 2 Quarantine Vlan 0 Access Vlan 7 *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX Not re-applying interface policy for local switching Client *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) Changing IPv4 ACL 'none' (ACL ID 255) ===> 'none' (ACL ID 255) --- (caller apf_policy.c:2922) *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) Changing Url ACL 'none' (ACL ID 255) ===> 'none' (ACL ID 255) --- (caller apf_policy.c:2942) *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) Changing IPv6 ACL 'none' (ACL ID 255) ===> 'none' (ACL ID 255) --- (caller apf_policy.c:2963) *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX Setting the NAS Id to AP group specific Id 'ITSSG-X-WLC0003' *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX Set Clinet AP specific apfMsAccessVlan = 7 *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX This apfMsAccessVlan may be changed later from AAA after L2 Auth *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX Cleared localSwitchingVlan, may be assigned later based on AAA override *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX processSsidIE statusCode is 0 and status is 0 *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX processSsidIE ssid_done_flag is 0 finish_flag is 0 *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX STA - rates (8): 140 18 152 36 176 72 96 108 0 0 0 0 0 0 0 0 *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX AID 5 in Assoc Req from flex AP 00:C1:64:YY:YY:YY is same as in mscb 68:ec:c5:XX:XX:XX *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX apfMs1xStateDec *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) Change state to START (0) last state DHCP_REQD (7) *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX pemApfAddMobileStation2: APF_MS_PEM_WAIT_L2_AUTH_COMPLETE = 0. *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 START (0) Initializing policy *apfMsConnTask_0: Sep 06 16:43:07.718: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 START (0) Change state to AUTHCHECK (2) last state START (0) *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX apfVapSecurity=0x2 L2=2 SkipWeb=0 *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX AuthenticationRequired = 1 *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 AUTHCHECK (2) Change state to 8021X_REQD (3) last state AUTHCHECK (2) *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX Encryption policy is set to 0x80000001 *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 8021X_REQD (3) DHCP required on AP 00:C1:64:YY:YY:YY vapId 1 apVapId 1for this client *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX Vlan while overriding the policy = -1 *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX sending to spamAddMobile vlanId -1 flex aclName = , flexAclId 65535 *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 8021X_REQD (3) Plumbed mobile LWAPP rule on AP 00:C1:64:YY:YY:YY vapId 1 apVapId 1 flex-acl-name: *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX apfPemAddUser2 (apf_policy.c:416) Changing state for mobile 68:ec:c5:XX:XX:XX on AP 00:C1:64:YY:YY:YY from Associated to Associated *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX apfPemAddUser2:session timeout forstation 68:ec:c5:XX:XX:XX - Session Tout 0, apfMsTimeOut '0' and sessionTimerRunning flag is 0 *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX Stopping deletion of Mobile Station: (callerId: 48) *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX Func: apfPemAddUser2, Ms Timeout = 0, Session Timeout = 0 *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX Sending assoc-resp with status 0 station:68:ec:c5:XX:XX:XX AP:00:C1:64:YY:YY:YY-01 on apVapId 1 *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX Sending Assoc Response (status: '0') to station on AP ITVNT-LAP2 on BSSID 00:c1:64:XX:XX:XX ApVapId 1 Slot 1, mobility role 1 *apfMsConnTask_0: Sep 06 16:43:07.719: [PA] 68:ec:c5:XX:XX:XX apfProcessAssocReq (apf_80211.c:11039) Changing state for mobile 68:ec:c5:XX:XX:XX on AP 00:C1:64:YY:YY:YY from Associated to Associated *spamApTask6: Sep 06 16:43:07.720: [PA] 68:ec:c5:XX:XX:XX Successful transmission of LWAPP Add-Mobile to AP 00:C1:64:YY:YY:YY *spamApTask6: Sep 06 16:43:07.726: [PA] 68:ec:c5:XX:XX:XX Received ADD_MOBILE ack - Initiating 1x to STA 68:ec:c5:XX:XX:XX (idx 2) *spamApTask6: Sep 06 16:43:07.726: [PA] 68:ec:c5:XX:XX:XX Sent dot1x auth initiate message for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.726: [PA] 68:ec:c5:XX:XX:XX reauth_sm state transition 1 ---> 0 for mobile 68:ec:c5:XX:XX:XX at 1x_reauth_sm.c:53 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.726: [PA] 68:ec:c5:XX:XX:XX EAP-PARAM Debug - eap-params for Wlan-Id :1 is disabled - applying Global eap timers and retries *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.726: [PA] 68:ec:c5:XX:XX:XX Disable re-auth, use PMK lifetime. *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.726: [PA] 68:ec:c5:XX:XX:XX dot1x - moving mobile 68:ec:c5:XX:XX:XX into Connecting state *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.821: [PA] 68:ec:c5:XX:XX:XX Received EAPOL START, dot1x state = 2 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.821: [PA] 68:ec:c5:XX:XX:XX Reset the reauth counter since EAPOL START has been received!!! *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.821: [PA] 68:ec:c5:XX:XX:XX reauth_sm state transition 0 ---> 1 for mobile 68:ec:c5:XX:XX:XX at 1x_reauth_sm.c:47 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.821: [PA] 68:ec:c5:XX:XX:XX Received EAPOL START from mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.821: [PA] 68:ec:c5:XX:XX:XX dot1x - moving mobile 68:ec:c5:XX:XX:XX into Connecting state *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.821: [PA] 68:ec:c5:XX:XX:XX Sending EAP-Request/Identity to mobile 68:ec:c5:XX:XX:XX (EAP Id 2) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.872: [PA] 68:ec:c5:XX:XX:XX Received EAPOL EAPPKT from mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.872: [PA] 68:ec:c5:XX:XX:XX Received Identity Response (count=1) from mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.872: [PA] 68:ec:c5:XX:XX:XX Resetting reauth count 1 to 0 for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.872: [PA] 68:ec:c5:XX:XX:XX EAP State update from Connecting to Authenticating for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.872: [PA] 68:ec:c5:XX:XX:XX dot1x - moving mobile 68:ec:c5:XX:XX:XX into Authenticating state *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.872: [PA] 68:ec:c5:XX:XX:XX Entering Backend Auth Response state for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.882: [PA] 68:ec:c5:XX:XX:XX Processing Access-Challenge for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.882: [PA] 68:ec:c5:XX:XX:XX Entering Backend Auth Req state (id=3) for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.882: [PA] 68:ec:c5:XX:XX:XX Sending EAP Request from AAA to mobile 68:ec:c5:XX:XX:XX (EAP Id 3) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.882: [PA] 68:ec:c5:XX:XX:XX Allocating EAP Pkt for retransmission to mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.889: [PA] 68:ec:c5:XX:XX:XX Received EAPOL EAPPKT from mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.889: [PA] 68:ec:c5:XX:XX:XX Received EAP Response from mobile 68:ec:c5:XX:XX:XX (EAP Id 3, EAP Type 25) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.889: [PA] 68:ec:c5:XX:XX:XX Resetting reauth count 0 to 0 for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.889: [PA] 68:ec:c5:XX:XX:XX Entering Backend Auth Response state for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.891: [PA] 68:ec:c5:XX:XX:XX Processing Access-Challenge for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.891: [PA] 68:ec:c5:XX:XX:XX Entering Backend Auth Req state (id=4) for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.891: [PA] 68:ec:c5:XX:XX:XX Sending EAP Request from AAA to mobile 68:ec:c5:XX:XX:XX (EAP Id 4) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.891: [PA] 68:ec:c5:XX:XX:XX Reusing allocated memory for EAP Pkt for retransmission to mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.905: [PA] 68:ec:c5:XX:XX:XX Received EAPOL EAPPKT from mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.905: [PA] 68:ec:c5:XX:XX:XX Received EAP Response from mobile 68:ec:c5:XX:XX:XX (EAP Id 4, EAP Type 25) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.905: [PA] 68:ec:c5:XX:XX:XX Resetting reauth count 0 to 0 for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.905: [PA] 68:ec:c5:XX:XX:XX Entering Backend Auth Response state for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.907: [PA] 68:ec:c5:XX:XX:XX Processing Access-Challenge for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.907: [PA] 68:ec:c5:XX:XX:XX Entering Backend Auth Req state (id=7) for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.907: [PA] 68:ec:c5:XX:XX:XX WARNING: updated EAP-Identifier 4 ===> 7 for STA 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.907: [PA] 68:ec:c5:XX:XX:XX Sending EAP Request from AAA to mobile 68:ec:c5:XX:XX:XX (EAP Id 7) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.908: [PA] 68:ec:c5:XX:XX:XX Reusing allocated memory for EAP Pkt for retransmission to mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.914: [PA] 68:ec:c5:XX:XX:XX Received EAPOL EAPPKT from mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.914: [PA] 68:ec:c5:XX:XX:XX Received EAP Response from mobile 68:ec:c5:XX:XX:XX (EAP Id 7, EAP Type 25) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.914: [PA] 68:ec:c5:XX:XX:XX Resetting reauth count 0 to 0 for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.914: [PA] 68:ec:c5:XX:XX:XX Entering Backend Auth Response state for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Processing Access-Accept for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Resetting web IPv4 acl from 255 to 255 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Resetting web IPv4 Flex acl from 65535 to 65535 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Received MPPE_SEND_KEY: KeyLen: 32 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Received MPPE_RECV_KEY: KeyLen: 32 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX override for default ap group, marking intgrp NULL *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX apfApplyWlanPolicy: Apply WLAN Policy over PMIPv6 Client Mobility Type, Tunnel User - 0 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Inserting AAA Override struct for mobile MAC: 68:ec:c5:XX:XX:XX, source 4 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Setting re-auth timeout to 0 seconds, got from WLAN config. *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Station 68:ec:c5:XX:XX:XX setting dot1x reauth timeout = 0 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Stopping reauth timeout for 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Creating a PKC PMKID Cache entry for station 68:ec:c5:XX:XX:XX (RSN 0) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Setting active key cache index 0 ---> 8 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Setting active key cache index 8 ---> 0 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Sending EAP-Success to mobile 68:ec:c5:XX:XX:XX (EAP Id 7) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.917: [PA] 68:ec:c5:XX:XX:XX Freeing AAACB from Dot1xCB as AAA auth is done for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.918: [PA] 68:ec:c5:XX:XX:XX Sending default RC4 key to mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.918: [PA] 68:ec:c5:XX:XX:XX Sending Key-Mapping RC4 key to mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.918: [PA] 68:ec:c5:XX:XX:XX Freeing EAP Retransmit Bufer for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.918: [PA] 68:ec:c5:XX:XX:XX apfMs1xStateInc *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.918: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 8021X_REQD (3) Change state to L2AUTHCOMPLETE (4) last state 8021X_REQD (3) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.919: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 L2AUTHCOMPLETE (4) DHCP required on AP 00:C1:64:YY:YY:YY vapId 1 apVapId 1for this client *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.919: [PA] 68:ec:c5:XX:XX:XX Not Using WMM Compliance code qosCap 00 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.919: [PA] 68:ec:c5:XX:XX:XX Vlan while overriding the policy = -1 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.919: [PA] 68:ec:c5:XX:XX:XX sending to spamAddMobile vlanId -1 flex aclName = , flexAclId 65535 *spamApTask6: Sep 06 16:43:07.919: [PA] 68:ec:c5:XX:XX:XX Successful transmission of LWAPP Add-Mobile to AP 00:C1:64:YY:YY:YY *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.919: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 L2AUTHCOMPLETE (4) Plumbed mobile LWAPP rule on AP 00:C1:64:YY:YY:YY vapId 1 apVapId 1 flex-acl-name: *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.920: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 L2AUTHCOMPLETE (4) pemAdvanceState2 6728, Adding TMP rule *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.920: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 L2AUTHCOMPLETE (4) Adding Fast Path rule type = Airespace AP - Learn IP address on AP 00:C1:64:YY:YY:YY, slot 1, interface = 13, QOS = 0 IPv4 ACL ID = 25 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.920: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 L2AUTHCOMPLETE (4) Fast Path rule (contd...) 802.1P = 0, DSCP = 0, TokenID = 15206, IntfId = 0 Local Bridging Vlan = 202, Local Bridging intf id = 0 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.920: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 L2AUTHCOMPLETE (4) Fast Path rule (contd...) AVC Ratelimit: AppID = 0 ,AppAction = 0, AppToken = 15206 AverageRate = 0, BurstRate = 0 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.920: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 L2AUTHCOMPLETE (4) Fast Path rule (contd...) AVC Ratelimit: AppID = 0 ,AppAction = 0, AppToken = 15206 AverageRate = 0, BurstRate = 0 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.921: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 L2AUTHCOMPLETE (4) Fast Path rule (contd...) AVC Ratelimit: AppID = 0 ,AppAction = 0, AppToken = 15206 AverageRate = 0, BurstRate = 0 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.921: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 L2AUTHCOMPLETE (4) Successfully plumbed mobile rule (IPv4 ACL ID 255, IPv6 ACL ID 255, L2 ACL ID 255,URL ACL ID 255) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.921: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 L2AUTHCOMPLETE (4) Change state to DHCP_REQD (7) last state L2AUTHCOMPLETE (4) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.921: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) pemAdvanceState2 6757, Adding TMP rule *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.921: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) Replacing Fast Path rule type = Airespace AP - Learn IP address on AP 00:C1:64:YY:YY:YY, slot 1, interface = 13, QOS = 0 IPv4 ACL ID = 255, *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.921: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) Fast Path rule (contd...) 802.1P = 0, DSCP = 0, TokenID = 15206, IntfId = 0 Local Bridging Vlan = 202, Local Bridging intf id = 0 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.922: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) Fast Path rule (contd...) AVC Ratelimit: AppID = 0 ,AppAction = 0, AppToken = 15206 AverageRate = 0, BurstRate = 0 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.922: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) Fast Path rule (contd...) AVC Ratelimit: AppID = 0 ,AppAction = 0, AppToken = 15206 AverageRate = 0, BurstRate = 0 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.922: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) Fast Path rule (contd...) AVC Ratelimit: AppID = 0 ,AppAction = 0, AppToken = 15206 AverageRate = 0, BurstRate = 0 *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.922: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) Successfully plumbed mobile rule (IPv4 ACL ID 255, IPv6 ACL ID 255, L2 ACL ID 255,URL ACL ID 255) *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.922: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 DHCP_REQD (7) NO release MSCB *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.922: [PA] 68:ec:c5:XX:XX:XX Entering Backend Auth Success state (id=7) for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.922: [PA] 68:ec:c5:XX:XX:XX Received Auth Success while in Authenticating state for mobile 68:ec:c5:XX:XX:XX *Dot1x_NW_MsgTask_1: Sep 06 16:43:07.922: [PA] 68:ec:c5:XX:XX:XX dot1x - moving mobile 68:ec:c5:XX:XX:XX into Authenticated state *pemReceiveTask: Sep 06 16:43:07.922: [PA] 68:ec:c5:XX:XX:XX 0.0.0.0 Added NPU entry of type 9, dtlFlags 0x0
... View more