节前一切正常,交换机和RADIUS端未做任何变更,节后终端计算机开机后,不能获取IP地址,查询后,有以下日志,mac 认证完成后,迅速的注销了。请各位大侠解惑。
日志如下:
%Oct 8 09:10:25:323 2024 EDGE-OA-02 MACA/6/MACA_LOGIN_SUCC: -IfName=GigabitEthernet1/0/14-MACAddr=8cec-4bca-a643-VLANID=1-Username=8cec4bcaa643-UsernameFormat=MAC address; User passed MAC authentication and came online.
%Oct 8 09:10:25:405 2024 EDGE-OA-02 MACA/6/MACA_LOGOFF: -IfName=GigabitEthernet1/0/14-MACAddr=8cec-4bca-a643-VLANID=1-Username=8cec4bcaa643-UsernameFormat=MAC address; MAC authentication user was logged off.
%Oct 8 09:11:27:485 2024 EDGE-OA-02 MACA/6/MACA_LOGIN_SUCC: -IfName=GigabitEthernet1/0/14-MACAddr=8cec-4bca-a643-VLANID=1-Username=8cec4bcaa643-UsernameFormat=MAC address; User passed MAC authentication and came online.
%Oct 8 09:11:27:571 2024 EDGE-OA-02 MACA/6/MACA_LOGOFF: -IfName=GigabitEthernet1/0/14-MACAddr=8cec-4bca-a643-VLANID=1-Username=8cec4bcaa643-UsernameFormat=MAC address; MAC authentication user was logged off.
%Oct 8 09:12:26:874 2024 EDGE-OA-02 MACA/6/MACA_LOGIN_SUCC: -IfName=GigabitEthernet1/0/14-MACAddr=8cec-4bca-a643-VLANID=1-Username=8cec4bcaa643-UsernameFormat=MAC address; User passed MAC authentication and came online.
采用mac vlan + Windows Server 2012 R2的 NPS RADIUS认证。
(0)
您好,虽然只使用了认证功能,但是需要在交换机上把授权和计费完全关闭
(0)
关闭了授权和计费,问题还是没有解决。 version 7.1.070, Release 6113 # sysname EDGE-OA-02 # mac-authentication mac-authentication domain Gold radius scheme Gold primary authentication 10.50.1.55 primary accounting 10.50.1.55 key authentication cipher $c$3$WBi3+ehYf1IJycocm3/NJ9SRxUOdw+BIE5DLWA1== key accounting cipher $c$3$eRdcBo4Czl1FEtbgstkNkfxe3v3tN4qiKpUibLw== user-name-format without-domain # radius scheme system user-name-format without-domain # domain Gold authentication lan-access radius-scheme Gold # domain system # domain default enable Gold
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
关闭了授权和计费,问题还是没有解决。 version 7.1.070, Release 6113 # sysname EDGE-OA-02 # mac-authentication mac-authentication domain Gold radius scheme Gold primary authentication 10.50.1.55 primary accounting 10.50.1.55 key authentication cipher $c$3$WBi3+ehYf1IJycocm3/NJ9SRxUOdw+BIE5DLWA1== key accounting cipher $c$3$eRdcBo4Czl1FEtbgstkNkfxe3v3tN4qiKpUibLw== user-name-format without-domain # radius scheme system user-name-format without-domain # domain Gold authentication lan-access radius-scheme Gold # domain system # domain default enable Gold