<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Dot1x - with 3COM 4210 in Security e-Series</title>
    <link>https://community.hpe.com/t5/security-e-series/dot1x-with-3com-4210/m-p/5569385#M152</link>
    <description>&lt;P&gt;Hi Jan,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;generally I would add a new RADIUS scheme for NPS authentication like&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;radius scheme nps&lt;/P&gt;&lt;P&gt;primary authentication ...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In the domain you have to refer to the scheme and add authorization:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;domain &amp;lt;whatever&amp;gt;&lt;/P&gt;&lt;P&gt;authentication lan-access radius-scheme nps&lt;BR /&gt;authorization lan-access radius-scheme nps&lt;BR /&gt;accounting lan-access radius-scheme nps&lt;/P&gt;&lt;P&gt;...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you miss the authorization it will not work!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 01 Mar 2012 11:15:52 GMT</pubDate>
    <dc:creator>Ulrich Saur</dc:creator>
    <dc:date>2012-03-01T11:15:52Z</dc:date>
    <item>
      <title>Dot1x - with 3COM 4210</title>
      <link>https://community.hpe.com/t5/security-e-series/dot1x-with-3com-4210/m-p/5411597#M139</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;pls help with issue bellow.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I need to setup port-based authenticatoin 802.1x with RADIUS server / Microsoft NPS 2008 / - After my configuration&amp;nbsp; seem everything fine only 3com tell me Failed auth. and end user dont connect to the VLAN1 and stay in unauth state :(&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;1. 3Com CFG configuration&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;domain default enable system&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;dot1x&lt;BR /&gt;dot1x authentication-method eap&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;radius scheme system&lt;BR /&gt;&amp;nbsp;server-type standard&lt;BR /&gt;&amp;nbsp;primary authentication 172.16.5.19 key secret&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;domain system&lt;BR /&gt;&amp;nbsp;scheme radius-scheme system&lt;BR /&gt;&amp;nbsp;scheme login local&lt;BR /&gt;&amp;nbsp;authentication lan-access radius-scheme system&lt;BR /&gt;&amp;nbsp;authorization login local&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;interface Ethernet1/0/4&lt;BR /&gt;&amp;nbsp;stp edged-port enable&lt;BR /&gt;&amp;nbsp;loopback-detection enable&lt;BR /&gt;&amp;nbsp;dot1x&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;di dot1x - command&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;Ethernet1/0/4&amp;nbsp; is link-up&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 802.1X protocol is enabled&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Proxy trap checker is disabled&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Proxy logoff checker is disabled&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Version-Check is disabled&lt;BR /&gt;&amp;nbsp;&amp;nbsp; The port is an authenticator&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Authentication Mode is Auto&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Port Control Type is Mac-based&lt;BR /&gt;&amp;nbsp;&amp;nbsp; ReAuthenticate is disabled&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Max number of on-line users is 256&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Authentication Success: 0, &lt;FONT color="#FF6600"&gt;&lt;STRONG&gt;Failed: 49&lt;/STRONG&gt;&lt;/FONT&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; EAPOL Packets: Tx 369, Rx 393&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Sent EAP Request/Identity Packets : 113&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; EAP Request/Challenge Packets: 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp; Received EAPOL Start Packets : 136&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; EAPOL LogOff Packets: 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; EAP Response/Identity Packets : 257&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; EAP Response/Challenge Packets: 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Error Packets: 0&lt;BR /&gt;&amp;nbsp;1. Unauthenticated user : MAC address: 001f-29d7-70d4&lt;BR /&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;Network Monitor 3.4 on NPS server&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF6600"&gt;&lt;IMG width="1173" height="278" src="http://clip2net.com/clip/m106888/1323268351-55b34-102kb.jpg" border="0" /&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;Everything look fine :(&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF6600"&gt;&lt;STRONG&gt;NPS 2008 server&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;IMG width="626" height="434" src="http://clip2net.com/clip/m106888/1323268768-e3ca0-48kb.jpg" align="left" border="0" /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there some specail vendor specific for 3COMs? Or could anybody help me with that?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you all for reply&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Jan&lt;/P&gt;</description>
      <pubDate>Wed, 07 Dec 2011 14:41:49 GMT</pubDate>
      <guid>https://community.hpe.com/t5/security-e-series/dot1x-with-3com-4210/m-p/5411597#M139</guid>
      <dc:creator>joxer123</dc:creator>
      <dc:date>2011-12-07T14:41:49Z</dc:date>
    </item>
    <item>
      <title>Re: Dot1x - with 3COM 4210</title>
      <link>https://community.hpe.com/t5/security-e-series/dot1x-with-3com-4210/m-p/5569385#M152</link>
      <description>&lt;P&gt;Hi Jan,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;generally I would add a new RADIUS scheme for NPS authentication like&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;radius scheme nps&lt;/P&gt;&lt;P&gt;primary authentication ...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In the domain you have to refer to the scheme and add authorization:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;domain &amp;lt;whatever&amp;gt;&lt;/P&gt;&lt;P&gt;authentication lan-access radius-scheme nps&lt;BR /&gt;authorization lan-access radius-scheme nps&lt;BR /&gt;accounting lan-access radius-scheme nps&lt;/P&gt;&lt;P&gt;...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you miss the authorization it will not work!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 01 Mar 2012 11:15:52 GMT</pubDate>
      <guid>https://community.hpe.com/t5/security-e-series/dot1x-with-3com-4210/m-p/5569385#M152</guid>
      <dc:creator>Ulrich Saur</dc:creator>
      <dc:date>2012-03-01T11:15:52Z</dc:date>
    </item>
    <item>
      <title>Re: Dot1x - with 3COM 4210</title>
      <link>https://community.hpe.com/t5/security-e-series/dot1x-with-3com-4210/m-p/5569389#M153</link>
      <description>Oops, this post was really old! This forum is not really alive, is it?!</description>
      <pubDate>Thu, 01 Mar 2012 11:15:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/security-e-series/dot1x-with-3com-4210/m-p/5569389#M153</guid>
      <dc:creator>Ulrich Saur</dc:creator>
      <dc:date>2012-03-01T11:15:31Z</dc:date>
    </item>
  </channel>
</rss>

