Thursday, November 26, 2020

MAB authentication from sleeping docked HP laptops

Hello all !

I'm investigating on an issue we are facing in my company, where we have laptops intermittently failing their Dot1x authentication, and failover to MAC (that's the normal behaviour based on our Cisco switches access interfaces + ISE configuration).

After some research, I noticed that it concerns sleeping docked HP laptops.

At the moment the laptop goes to sleep, the LAN port of the docking station (and thus, also the port on switch side) goes down, so the Dot1x session is cleaned.
But after a few seconds, the port comes back up, and sends a few frames using the docked PC MAC address, causing a failed Dot1x and then a MAB authentication.

We do not encounter the issue when the laptops are directly connected to the wired network, without using a docking station. When they go to sleep mode, their network port remains down.

We are using HP 2013 docking stations, with a lot of different HP laptops models, but I managed to reproduce the issue with an EliteBook 830 G5 on Windows 10 release 1809.

Do you guys have an idea of what could be the problem ?

Thanks for your help !



No comments:

Post a Comment