|
From: matias f. v. <mat...@gm...> - 2023-12-05 16:06:03
|
hi, could you help me because I have problems with the configuration of Getting Started and I'm not working 802.1x protocol, I'm using a cisco 2960G switch and I have virtualized environments, to connect the computer to authenticate the switch gives me the following error: switch cisco 2960g: 00:15:38: %AUTHMGR-5-START: Starting 'dot1x' for client (0c54.a557.xxxx) on Interface Gi0/12 AuditSessionID 0A1E630300000007000E4FEB 00:15:39: %LINK-3-UPDOWN: Interface GigabitEthernet0/12, changed state to up 00:15:40: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/12, changed state to up 00:16:07: %DOT1X-5-FAIL: Authentication failed for client (0c54.a557.xxxx) on Interface Gi0/12 AuditSessionID 0A1E630300000007000E4FEB 00:16:07: %AUTHMGR-7-RESULT: Authentication result 'fail' from 'dot1x' for client (0c54.a557.9e80) on Interface Gi0/12 AuditSessionID 0A1E630300000007000E4FEB 00:16:07: %AUTHMGR-5-FAIL: Authorization failed or unapplied for client (0c54.a557.9e80) on Interface Gi0/12 AuditSessionID 0A1E630300000007000E4FEB 00:16:09: %AUTHMGR-5-START: Starting 'dot1x' for client (0c54.a557.xxxx) on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92 00:16:18: %DOT1X-5-FAIL: Authentication failed for client (0c54.a557.xxx) on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92 00:16:18: %AUTHMGR-7-RESULT: Authentication result 'no-response' from 'dot1x' for client (0c54.a557.9e80) on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92 00:16:18: %AUTHMGR-7-FAILOVER: Failing over from 'dot1x' for client (0c54.a557.xx) on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92 00:16:18: %AUTHMGR-5-START: Starting 'mab' for client (0c54.a557.xxx) on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92 00:16:18: %MAB-5-SUCCESS: Authentication successful for client (0c54.a557.xx) on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92 00:16:18: %AUTHMGR-7-RESULT: Authentication result 'success' from 'mab' for client (0c54.a557.9e80) on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92 00:16:18: %AUTHMGR-5-VLANASSIGN: VLAN 101 assigned to Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92 00:16:19: %AUTHMGR-5-SUCCESS: Authorization succeeded for client (0c54.a557.xx) on Interface Gi0/12 AuditSessionID 0A1E630300000008000ECA92 Radius log Dec 5 12:48:12 NAC-CRDTC auth[11115]: (71) Login incorrect (eap_peap: (TLS) Alert read:fatal:unknown CA): [host/DESKTOP-C64OFGE.creditic.local] (from client 10.30.99.3/32 port 50012 cli 0c:54:a5:57:9e:80) Dec 5 12:48:24 NAC-CRDTC auth[11115]: (73) Login OK: [0c54a5579e80] (from client 10.30.99.3/32 port 50012 cli 0c:54:a5:57:9e:80) Configuracion Ad en packetfence: Identifier: prodad01 Workgroup: creditic DNS name of the domain: creditic.local This server's name: admin.nac Sticky DC: creditic.local Active Directory server: 10.30.50.5 DNS server(s): 10.30.50.5 OU: Computers Authentication Source creditic Name: creditic Description: AD creditic Host: 10.30.50.5 port: 389 SSL Verify Mode: none Dead duration: 60 Connection timeout: 1 Request timeout: 5 Response timeout: 10 Base DN: DC=creditic, DC=local Scope: Subtree Username Attribute: sAMAccountName Email Attribute: admin.nac Bind DN: CN=admin NAC,CN=Users,DC=creditic,DC=local Please could you give me some guidance as it is for a university project. -- Estaré atento a sus comentarios. atte. Matías Fuentes Valdés |