Wired Intelligent Edge

 View Only
last person joined: yesterday 

Bring performance and reliability to your network with the HPE Aruba Networking Core, Aggregation, and Access layer switches. Discuss the latest features and functionality of your switching devices, and find ways to improve security across your network to bring together a mobile-first solution
Expand all | Collapse all

ARUBA AOS-CX and Radius

This thread has been viewed 28 times
  • 1.  ARUBA AOS-CX and Radius

    Posted Sep 02, 2022 02:49 AM
    Hello.
    I have a issue with aaa authentication on my ARUBA 6100 switches.
    It seem to me that some equipment such as printers and ventilation/building components that are connected to our switch has issues requesting network access if the port is configured with aaa authentication.
    The port shows as online but if aaa is activated the clients MAC-adress is not visible if i do "show mac-adress-table vlan xxx"
    I do not see it in Clearpass either so no request is beeing forwared.

    If i remove aaa from the port the client shows up after a little while and works as intended.

    Running : Aruba JL675A 6100 48G CL4 4SFP+ Swch PL.10.10.1000

    My Radius config:

    radius-server host IP key plaintext ******

    aaa authentication port-access dot1x authenticator auth-method eap-radius

    aaa authentication port-access mac-auth auth-method chap

    aaa authentication port-access dot1x authenticator enable

    aaa authentication port-access mac-auth enable

    port-access onboarding-method concurrent enable

    aaa authentication port-access client-limit 1

    aaa authentication port-access reject-role noauth

    aaa authentication port-access dot1x authenticator

    enable

    aaa authentication port-access mac-auth

    enable


    Kind Regards
    Lee


  • 2.  RE: ARUBA AOS-CX and Radius
    Best Answer

    EMPLOYEE
    Posted Sep 02, 2022 04:04 AM
    Hello
    Maybe you can try with the command port-access allow-flood-traffic enable in the interface context.

    switch(config-if)# port-access allow-flood-traffic enable


  • 3.  RE: ARUBA AOS-CX and Radius

    Posted Sep 02, 2022 06:38 AM
    Thank you Emil, that worked perfectly.

    /Lee