Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-19 Thread James Andrewartha
On 19/4/20 4:08 am, Turner, Ryan H wrote: > > All, > >   > > We think we resolved it.  As others said before, it was the port we > was wrong.  As soon as we changed it to 1700, everything worked.  The > thing that has me scratching my head is why the Cisco WLC would be > responding with properly

Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Jake Snyder
riday, April 17, 2020 1:28 PM >> To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU >> <mailto:WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU> >> Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change >> of Authorization) >> >> Here are some PCAPs for you folks. >> htt

RE: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Turner, Ryan H
@LISTSERV.EDUCAUSE.EDU Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization) Both of those worked. Both received ACKs from the WLC. On Apr 17, 2020, at 11:38 AM, Turner, Ryan H mailto:rhtur...@email.unc.edu>> wrote: Thank you!. You are gettin

Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Jake Snyder
. > > From: The EDUCAUSE Wireless Issues Community Group Listserv > <mailto:WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU>> on behalf of Turner, Ryan H > mailto:rhtur...@email.unc.edu>> > Sent: Friday, April 17, 2020 10:01 AM > To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU >

RE: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Turner, Ryan H
. Ryan From: The EDUCAUSE Wireless Issues Community Group Listserv On Behalf Of Turner, Ryan H Sent: Friday, April 17, 2020 1:38 PM To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization) Thank you!. You are getting

RE: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Turner, Ryan H
Of Jake Snyder Sent: Friday, April 17, 2020 1:28 PM To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization) Here are some PCAPs for you folks. https://www.dropbox.com/sh/njdfxt9bfo89xte/AABmaJkT9W2h9RoAirdQ0GV8a?dl=0 One

RE: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Turner, Ryan H
Thank you!! From: The EDUCAUSE Wireless Issues Community Group Listserv On Behalf Of Jake Snyder Sent: Friday, April 17, 2020 1:28 PM To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization) Here are some PCAPs

RE: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Turner, Ryan H
Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization) Care to share a link to the doc? On Apr 17, 2020, at 10:13 AM, Turner, Ryan H mailto:rhtur...@email.unc.edu>> wrote: I really think Felix hit the nail on the head. I found the documen

Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Jake Snyder
ss Issues Community Group Listserv >> > <mailto:WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU>> On Behalf Of Curtis K. Larsen >> Sent: Friday, April 17, 2020 12:03 PM >> To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU >> <mailto:WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU> >>

Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Jake Snyder
AUSE Wireless Issues Community Group Listserv > On Behalf Of Curtis K. Larsen > Sent: Friday, April 17, 2020 12:03 PM > To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU > Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change > of Authorization) > > We use 1700 as well

Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Turner, Ryan H
-LAN@LISTSERV.EDUCAUSE.EDU Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization) We use 1700 as well for our CoA stuff against the Cisco 8540 with PacketFence. From: The EDUCAUSE Wireless Issues Community Group Listserv

RE: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Turner, Ryan H
Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization) We use 1700 as well for our CoA stuff against the Cisco 8540 with PacketFence. From: The EDUCAUSE Wireless Issues Community Group Listserv on behalf of Turner, Ryan H

Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Curtis K. Larsen
To: The EDUCAUSE Wireless Issues Community Group Listserv Subject: RE: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization) So apparently that changed. If you search on Cisco, you will note that they seemed to go away from the default port. I do not think we would

RE: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Turner, Ryan H
: The EDUCAUSE Wireless Issues Community Group Listserv On Behalf Of Abhiramms Sent: Friday, April 17, 2020 11:25 AM To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization) Ryan, Have you tried UDP port 1700. As far as I can

RE: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Turner, Ryan H
CAUSE.EDU> Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization) Ryan, Have you tried UDP port 1700. As far as I can remember, the default port when adding a radius client for a cisco device was 1700. Also - I usually refer to this link that has the d

Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Abhiramms
if I can get > it removed. > > From: The EDUCAUSE Wireless Issues Community Group Listserv > On Behalf Of Felix Windt > Sent: Friday, April 17, 2020 9:52 AM > To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU > Subject: Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change >

RE: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Turner, Ryan H
Thank you Felix. We do have this attribute present. Let me see if I can get it removed. From: The EDUCAUSE Wireless Issues Community Group Listserv On Behalf Of Felix Windt Sent: Friday, April 17, 2020 9:52 AM To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU Subject: Re: [WIRELESS-LAN] Advanced NAC

Re: [WIRELESS-LAN] Advanced NAC question regarding RFC3587 (Change of Authorization)

2020-04-17 Thread Felix Windt
This is off the cuff, but in the past I’ve had issues with Cisco WLCs taking CoAs when the Event-Timestamp attribute was present. thx, felix From: The EDUCAUSE Wireless Issues Community Group Listserv on behalf of "Turner, Ryan H" Reply-To: The EDUCAUSE Wireless Issues Community Group