486
trap
enabling (port security), 181
function (RADIUS), 32
module (port security), 173
trigger
802.1X multicast, 88
802.1X unicast, 88
troubleshooting
AAA, 70
ACL configuration error, 304
ACL configuration failure, 385
binding entries and function cannot be configured
(IP source guard), 414
cannot change port security mode when user
online, 194
cannot configure secure MAC addresses (port
security), 193
cannot set port security mode, 193
connection limit, 373
connection limit rules with overlapping protocol
types, 373
connection limit rules with overlapping segments,
373
EAD fast deployment, 103
failure to add filtering entry or suffix keyword due
to upper limit, 383
failure to establish IPsec tunnel (IKE), 304
failure to request local certificate (PKI), 242
failure to retrieve CA certificate, 241
failure to retrieve CRLs (PKI), 242
HWTACACS, 71
IKE, 303
inconsistent keys on access device and portal
server, 171
incorrect server port number on access device,
172
invalid blocking suffix, 385
invalid characters present in configured
parameter, 383
invalid use of wildcard, 384
invalid user ID (IKE), 303
IP source guard, 414
packets cannot reach server (RADIUS), 70
PKI, 241
port security, 193
portal, 171
proposal mismatch (IKE), 303
RADIUS, 70
SSL, 344
SSL handshake failure, 344
unable to access the HTTP server by IP address,
385
user accounting not normal (RADIUS), 70
user authentication/authorization fails (RADIUS),
70
users not correctly redirected (EAD fast
deployment), 103
web filtering, 383
tunnel mode (IPsec), 244
tunneling
ACL data flow protection modes, 252
applying QoS policy to IPsec tunnel interface, 268
configuring IPsec profile, 264
configuring IPsec tunnel interface, 265
configuring IPsec with IPsec tunnel interface, 275
enabling invalid SPI recovery (IPsec), 261
enabling packet information pre-extraction on
IPsec tunnel interface, 268
establishing IPsec tunnel in manual mode, 270
establishing IPsec tunnel through IKE negotiation,
272
implementing tunnel interface-based IPsec, 263
IPsec configuration, 243, 248, 270
IPsec tunnel, 245