|
Posted by Uli Link on April 2, 2006, 3:44 pm
If you were Registered and logged in, you could reply and use other advanced thread options
After leaving and later reentering the coverage area at the last
associated AP the WinXP embedded Client cannot pass any IP traffic to
the LAN.
No automatic reauthentication happens.
Cisco 352 cards with latest v 1.7.0.1 drivers and FW. I've tried the
older releases supporting WPA, too. Without success.
MS WZC service is disabled, ACU is controlling the card using a saved
user/password.
On the AP side IOS 12.3(7)JA2, but also with 12.3(4)JA1 or 12.3(8)JA
same behaviour, regardless of used cipher TKIP or CKIP, regardless of
using WPA or CCKM keymanagement.
Reproducable also with a single 1231 AP running local RADIUS and WDS.
After manually clearing the association on the AP all is fine again.
A "show dot11 asso hhhh.hhhh.hhhh" looks all fine.
As a temporary workaround I have configured
"dot1x reauth-period 90" under the Dot11Radio0 so the dead
authentication will be cleared after no more than 90 seconds.
No problem with CCXv3 clients managed by AEGIS 802.1x protocol.
Any better workaround? Any Bug numbers to search for?
Else there will be a lot of additional load on the ACS.
--
Uli Link
|