scascoda,3100v3 远程mac认证问题
问题描述:
radius server--3100v3交换机--user(测试电脑,连接3100v3的MAC认证端口),radius server上显示认证成功,抓包也显示access-accept,但是user无法ping通3100v3,在3100v3上串口登录,显示认证成功后2ms之后就logged off了,详请见下,查不到原因,请各位大佬不吝赐教,谢谢
%Jan 1 04:50:
%Jan 1 04:50:
%Jan 1 04:51:23:396
%Jan 1 04:51:23:400
组网及组网描述:
3100v3:version 7.1.070, Release 6113
全局以及22口做了mac认证,连接user测试电脑
mac和密码默认用mac地址
全局设了domain、lan-access、radius scheme
全局以及23口开了802.1x,23口开了portbased,连接测试电脑时测试电脑能通过账号密码通过认证并通过ping进行了验证
24口连接radius server
以下是display mac-authentication的信息--
Global MAC authentication parameters:
MAC authentication : Enabled
User name format : MAC address in lowercase(xxxxxxxxxxxx)
Username : mac
Password : Not configured
Offline detect period : 300 s
Quiet period : 60 s
Server timeout : 100 s
Reauth period : 3600 s
Authentication domain : Not configured, use default domain
Online MAC-auth wired users : 0
Silent MAC users:
MAC address VLAN ID From port Port index
GigabitEthernet1/0/22 is link-up
MAC authentication : Enabled
Carry User-IP : Disabled
Authentication domain : Not configured
Auth-delay timer : Disabled
Periodic reauth : Disabled
Re-auth server-unreachable : Logoff
Guest VLAN : Not configured
Guest VLAN auth-period : 30 s
Critical VLAN : Not configured
Critical voice VLAN : Disabled
Host mode : Single VLAN
Offline detection : Enabled
Authentication order : Default
Guest VSI : Not configured
Guest VSI auth-period : 30 s
Critical VSI : Not configured
Max online users : 4294967295
Authentication attempts : successful 75, failed 0
Current online users : 0
MAC address Auth state
8小时前提问debugging mac-au all看下
8小时前回答你好,按建议开启了debugging,但我看不懂哪里有问题,显示的信息请见下,谢谢
scascoda*Jan 1 06:29:13:065
*Jan 1 06:29:13:065
*Jan 1 06:29:13:066
*Jan 1 06:29:13:066
*Jan 1 06:29:13:066
*Jan 1 06:29:13:068
*Jan 1 06:29:13:068
*Jan 1 06:29:13:075
%Jan 1 06:29:13:075
*Jan 1 06:29:13:075
*Jan 1 06:29:13:075
*Jan 1 06:29:13:077
*Jan 1 06:29:13:077
%Jan 1 06:29:13:078
*Jan 1 06:29:13:082
7小时前回答你正在,3100v3 远程mac认证问题