cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
516
Views
0
Helpful
3
Replies

802.1X delay when moving to a Guest VLAN

irvin3067
Level 1
Level 1

Hi !

I am experiencing a strange DHCP address acquiring delay when my Windows machine without dotx1 enabled is trying to connect to a Cisco switch with dot1x enabled port. I have defined a Guest VLAN for that case, so the client should be moved to the Guest VLAN when a dot1x supplicant does not answering.

It happens so far, but I'm getting a huge delay when receiving an IP from the Guest VLAN DHCP server .... any clue why ?

thanx!

3 Replies 3

dominic.caron
Level 5
Level 5

Hi,

This is built in. Before puting the host in the guest vlan, you must give it time to boot and do Dot1x. I believe this can be tunned down with "Maximum retransmission number " and "Retransmission time

" parametre but I dont know if it would be a good move.

Jacob-Harris
Level 1
Level 1

Hi,

Had the same problems with my installation. Came accross a very little know reg key for XP.

Add the following key to your windows xp box and your default delay (60 seconds) should be practically gone.

Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\EAPOL\Parameters\General\Global]

"SupplicantMode"=dword:00000003

"startPeriod"=dword:00000005

szahid
Level 3
Level 3

Also , use the following timers on the switch for faster guest vlan access ( within 2 seconds ) if you are not using them already.

dot1x timeout tx-period 1

dot1x max-reauth-req 1

thanks

Salman.

Review Cisco Networking products for a $25 gift card