<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic RE: Strange Netlogin behaviour in ExtremeSwitching (EXOS/Switch Engine)</title>
    <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/strange-netlogin-behaviour/m-p/45447#M11339</link>
    <description>I have done test with firmware 15.1.3 and 15.3.4.6-patch5 but I have the same results.&lt;BR /&gt;
I have seen SR number 4-4576621665.&lt;BR /&gt;
&lt;BR /&gt;
I think that there are two problems:&lt;BR /&gt;
- the switch is not  honoring the 30 second timeout period before mac auth&lt;BR /&gt;
- the client sends the dhcp request immediately (before it is moved to its vlan)&lt;BR /&gt;
&lt;BR /&gt;
I would like to resolve the first one problem.&lt;BR /&gt;
In SR number 4-4576621665 there is this annotation:&lt;BR /&gt;
"Resolved via 01033072"&lt;BR /&gt;
What is 01033072?&lt;BR /&gt;
&lt;BR /&gt;
Regards&lt;BR /&gt;</description>
    <pubDate>Wed, 01 Oct 2014 00:12:00 GMT</pubDate>
    <dc:creator>Luca_Messori</dc:creator>
    <dc:date>2014-10-01T00:12:00Z</dc:date>
    <item>
      <title>Strange Netlogin behaviour</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/strange-netlogin-behaviour/m-p/45445#M11337</link>
      <description>I have configured bot dot1x and mac auth on the same port with dynamic vlan.&lt;BR /&gt;
dot1x for PC and notebook&lt;BR /&gt;
mac for telephone and printers&lt;BR /&gt;
&lt;BR /&gt;
What I have seen is that just after the ports became active the switch starts mac auth instead of wait for eapol start  from the client:&lt;BR /&gt;
09/30/2014 15:43:21.94 &lt;I&gt; Slot-1: Network Login 802.1x user host/DA17190.ita.rsa-ins.com logged in MAC A4:5D:36:D1:54:1C port 3:15 VLAN(s) "PP_4P", authentication Radius&lt;BR /&gt;
09/30/2014 15:43:21.68 &lt;I&gt; Slot-1: Network Login MAC user A45D36D1541C logged in MAC A4:5D:36:D1:54:1C port 3:15 VLAN(s) "Ospite", authentication Radius&lt;BR /&gt;
09/30/2014 15:43:21.42 &lt;I&gt; Slot-1: Port 3:15 link UP at speed 100 Mbps and full-duplex&lt;BR /&gt;
&lt;BR /&gt;
After some second, when it receive the eapol start it restart a new authentication process for the same mac address.&lt;BR /&gt;
&lt;BR /&gt;
The results is that client is first moved in guest vlan (where it gets an ip address from dhcp server) and then in client vlan.&lt;BR /&gt;
&lt;BR /&gt;
This is my netlogin conf:&lt;BR /&gt;
configure netlogin vlan TEMP&lt;BR /&gt;
enable netlogin dot1x mac &lt;BR /&gt;
configure netlogin agingtime 120&lt;BR /&gt;
configure netlogin dynamic-vlan enable&lt;BR /&gt;
configure netlogin dynamic-vlan uplink-ports 1:49&lt;BR /&gt;
configure netlogin mac authentication database-order local radius&lt;BR /&gt;
enable netlogin ports 1:1-48, 2:1-7, 2:9-17, 2:19-48, 3:1-12, 3:14-48, 4:1-48, 5:1-44, 5:46-50 dot1x &lt;BR /&gt;
enable netlogin ports 1:1-48, 2:1-7, 2:9-17, 2:19-48, 3:1-12, 3:14-48, 4:1-48, 5:1-44, 5:46-50 mac &lt;BR /&gt;
configure netlogin ports 1:1 mode port-based-vlans&lt;BR /&gt;
configure netlogin ports 1:1 no-restart&lt;BR /&gt;
.....&lt;BR /&gt;
configure netlogin add mac-list 00:00:aa:fa:29:85 48 encrypted "=421BFAB3&amp;lt;44"&lt;BR /&gt;
...&lt;BR /&gt;
configure netlogin add mac-list 00:90:1e:90:00:e1 48 encrypted "=4;12B&amp;gt;315I0"&lt;BR /&gt;
configure netlogin add mac-list ff:ff:ff:ff:ff:ff 48&lt;BR /&gt;
configure netlogin dot1x timers server-timeout 10&lt;BR /&gt;
configure netlogin dot1x timers reauth-period 0&lt;BR /&gt;
configure netlogin dot1x timers supp-resp-timeout 10&lt;BR /&gt;
enable netlogin authentication service-unavailable vlan ports 1:1-48, 2:1-48, 3:1-48, 4:1-48, 5:1-50&lt;BR /&gt;
configure netlogin authentication service-unavailable vlan Ospite ports 1:1-2, 1:4-8, 1:10-14, 1:16-48, 2:1-7, 2:10-17, 2:19-48, 3:1-12, 3:14-48, 4:1-28, 4:30-31, 4:33-48, 5:1-50&lt;BR /&gt;
&lt;BR /&gt;
In my opinion this is un uncorret behaviour because mac auth should happens only when the client has'nt or has not configured a 802.1x supplicant.&lt;/I&gt;&lt;/I&gt;&lt;/I&gt;</description>
      <pubDate>Tue, 30 Sep 2014 19:21:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/strange-netlogin-behaviour/m-p/45445#M11337</guid>
      <dc:creator>Luca_Messori</dc:creator>
      <dc:date>2014-09-30T19:21:00Z</dc:date>
    </item>
    <item>
      <title>RE: Strange Netlogin behaviour</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/strange-netlogin-behaviour/m-p/45446#M11338</link>
      <description>This looks to me a known issue   What is the exos version . Did you check with a different exos</description>
      <pubDate>Tue, 30 Sep 2014 22:08:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/strange-netlogin-behaviour/m-p/45446#M11338</guid>
      <dc:creator>PARTHIBAN_CHINN</dc:creator>
      <dc:date>2014-09-30T22:08:00Z</dc:date>
    </item>
    <item>
      <title>RE: Strange Netlogin behaviour</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/strange-netlogin-behaviour/m-p/45447#M11339</link>
      <description>I have done test with firmware 15.1.3 and 15.3.4.6-patch5 but I have the same results.&lt;BR /&gt;
I have seen SR number 4-4576621665.&lt;BR /&gt;
&lt;BR /&gt;
I think that there are two problems:&lt;BR /&gt;
- the switch is not  honoring the 30 second timeout period before mac auth&lt;BR /&gt;
- the client sends the dhcp request immediately (before it is moved to its vlan)&lt;BR /&gt;
&lt;BR /&gt;
I would like to resolve the first one problem.&lt;BR /&gt;
In SR number 4-4576621665 there is this annotation:&lt;BR /&gt;
"Resolved via 01033072"&lt;BR /&gt;
What is 01033072?&lt;BR /&gt;
&lt;BR /&gt;
Regards&lt;BR /&gt;</description>
      <pubDate>Wed, 01 Oct 2014 00:12:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/strange-netlogin-behaviour/m-p/45447#M11339</guid>
      <dc:creator>Luca_Messori</dc:creator>
      <dc:date>2014-10-01T00:12:00Z</dc:date>
    </item>
  </channel>
</rss>

