Wireless Access

last person joined: 2 days ago 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.
Expand all | Collapse all

802.1x Authentication Issue

This thread has been viewed 2 times
  • 1.  802.1x Authentication Issue

    EMPLOYEE
    Posted Feb 03, 2020 07:55 PM

    Only once client is getting IP from wrong VLAN still in the logs it is showing 98 vlan is getting pushed but the client is getting ip from vlan 94, others are working fine, after getting the wrong ip clients getting deauthenticated and if statically IP is assigned then not at all getting connected.

    OS Version:- 6.4.4.19

    Hardware Version :- 7220

    Authentication :- DOT1X from CPPM. Only pushing the role not the vlan. VLAN assignment is from VLAN Pool which is mapped in VAP profile, there i have not mentioned 98 VLAN, as i dont want ip from vlan 98 i just needed to push the vlan and clients will get the 98 vlan ip from dhcp server but somehow it is getting ip from different server.

    In the packet capture everything is working fine and i am using EAP-TLS.

    No DHCP Fingerprinting is happening also



  • 2.  RE: 802.1x Authentication Issue

    MVP EXPERT
    Posted Feb 04, 2020 04:04 AM

    Are you able to confirm how the client was assigned the VLAN in question. Run the below command: 

     

    #show user mac [MAC ADDRESS]

    There is a 'VLAN Derivation' section which will give you further clues.