802.1x Authentication Failure with Aruba Wireless Controller 620
search cancel

802.1x Authentication Failure with Aruba Wireless Controller 620

book

Article ID: 153119

calendar_today

Updated On:

Products

Network Access Control

Issue/Introduction

You are using Aruba Access Point along with with Aruba Wireless Controller 620 for Wireless 802.1x authentication. The host is using the Windows Supplicant.  SNAC status is showing 'disconnected or unknown' instead of "Approved", although HI passes. Enforcer Debug log shows EAP pass, HI Pass and the command to open port to Aruba.

Wireshark Log at client

EAP failure after EAP request & response packets.

802.1x Log from SEP

01/10 15:41:41 [588:932] <SNAC><LanClient@2165> Receive wgx event 1, media connect {15EED902-6519-4E11-A7E7-B1B0698BB269}
01/10 15:41:42 [588:932] <SNAC><LanClient@5542> Failed to Open user data key
01/10 15:41:42 [588:932] <SNAC><LanClient@5542> Failed to Open user data key
01/10 15:41:43 [588:932] <SNAC><LanClient@5542> Failed to Open user data key
01/10 15:41:43 [588:932] <SNAC><LanClient@5542> Failed to Open user data key
01/10 15:41:44 [588:932] <SNAC><LanClient@2214> Receive wgx event 2, disconnect {15EED902-6519-4E11-A7E7-B1B0698BB269}
01/10 15:41:44 [588:932] <NacManager> Recieved ENFORCER_STATUS_MSG
 

Cause

The machine has two interface types:  Wireless and Wired. 802.1x is configured for both interfaces. SNAC is trying to bind the wired interface, although the wireless interface is being used for connection because of the windows interface binding order.

Resolution

Change the bind order for the interface so that "Wirelss Interface" is prior to the "Wired Interface" by clicking on Start --> Control Panel -> Network Connection-->Advanced Menu -> Advanced Settings.


Applies To

Windows XP