Security

last person joined: 21 hours ago 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).

Radius CoA Bounce Host-Port Failed

This thread has been viewed 0 times
  • 1.  Radius CoA Bounce Host-Port Failed

    Posted May 06, 2017 01:22 AM

    Hi all,

     

    I'm having an issue with Radius CoA, which doesn't work as I expected. What I'm trying to do is to use CPPM to authenticate a device based on its MAC address, then profile it and after that have CPPM send bounce host-port message to the switch to assign proper VLAN for that device. The authentication and profiling process have worked well so far. However, I got stuck at CoA step:

     

    6.PNG

     

    2.PNG

     

    I'm using an Aruba 5400 switch for testing. I tried changing the CoA profile to Aruba Bounce Host-Port (instead of HPE Bounce Host-Port), but it didn't work either:

     

    4.PNG

     

    I checked the switch and look like it did receive CoA messages from CPPM:

     

    3.PNG

     

    Below is my configuration on CPPM and Aruba switch:

    1.PNG

     

    5.PNG

     

    Please tell me what I did wrong. I really appreciate your help.

     

    Thank you,