802.1x authentication issue after reboot

2021-11-13 00:46:54 Published
  • 0 Followed
  • 0Collected ,6029Browsed

Test Item

Dear All,

I encounter the problem on the model of switch for H3C S5120-28P-SI / S5120-52P-SI with the bootrom version from 161 to 169 .  I deployed the nac configuration, end users and I checked the display mac-address , the 802.1x and Live logs on the ISE admin console, permit access to internet access.  Then the end users shutdown the PC workstations then boot up the PC after back to office. They cannot access the internet, and I check the port disappear  run by  " display mac-address" . I undo the NAC configuration on the port , then the port show up run by " display mac-address " 

 undo dot1x handshake 

 dot1x mandatory-domain hito 

 dot1x max-user 1 

 undo dot1x multicast-trigger 

 dot1x unicast-trigger 

 dot1x critical vlan 1 

 port-security port-mode userlogin-secure-or-mac-ext 

 mac-authentication max-user 1

 mac-authentication domain hito

 mac-authentication critical vlan 1


May I know if there is problem and solution to fix the issue?  No upgrade the bootrom allowed in this stage. 

Thanks, 


Test Topology

Shutdown the port ,  Deploy the NAC configuration > Resume the port > Reboot the PC > End user failed to internet access 

Test Process

Shutdown the port ,  Deploy the NAC configuration > Resume the port > Reboot the PC > End user failed to internet access 

Test Result

End user failed to internet access 

Please rate this case:   
0 Comments

No Comments

Add Comments: