Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Jucker
New Contributor III

FortiNAC Disconnect Message Session context not found

Hello,

 

I am facing an issue on DM after Guest self registration on a port used with dot1x the vlan never get changed.

 

The capture of Disconnect-Request :

NAC to NAD.JPG

The Disconnect-NAK : 

NAD to NAC.JPG

 

After shut no shut the port, the correct vlan get applied, do i need to apply cli configuration with port bounce as a workaround ? any other options ?

@ebilcari 

Thank you

Regards!

 

2 Solutions
ebilcari
Staff
Staff

It looks like the switch is refusing it beacuse it doesn't find a current session  for that MAC address. Maybe it doesn't like the format of the MAC address (dashed). You can try sending a manual CoA from FNAC CLI with the command:

> sendcoa -ip x.x.x.x -mac YY:YY:YY:YY:YY:YY -dis

while the host is authenticated, put the switch IP and the MAC address of this host in colon format.
What is the switch model and have you tried upgrading its firmware?

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.

View solution in original post

Jucker
New Contributor III

@ebilcari Thank you for your reply, it seems that switch  doesn't accept that mac format, since it is mab i used CLI configuration to bounce the port.

Thank you

View solution in original post

2 REPLIES 2
ebilcari
Staff
Staff

It looks like the switch is refusing it beacuse it doesn't find a current session  for that MAC address. Maybe it doesn't like the format of the MAC address (dashed). You can try sending a manual CoA from FNAC CLI with the command:

> sendcoa -ip x.x.x.x -mac YY:YY:YY:YY:YY:YY -dis

while the host is authenticated, put the switch IP and the MAC address of this host in colon format.
What is the switch model and have you tried upgrading its firmware?

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.
Jucker
New Contributor III

@ebilcari Thank you for your reply, it seems that switch  doesn't accept that mac format, since it is mab i used CLI configuration to bounce the port.

Thank you

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors