我的办公室正在运行双 nexus 5k 核心,在用户级别使用 Catalyst 4506 壁橱开关。今天,我在其中一台 4506 上应用了以下命令:
no switchport trunk native vlan 64
no switchport trunk allowed vlan 64,68
no switchport block unicast
no ip access-group ACL-ALLOW in
no authentication event fail action next-method
no authentication event server dead action authorize vlan 64
no authentication event server alive action reinitialize
no authentication host-mode multi-auth
no authentication order dot1x mab
no authentication priority dot1x mab
no authentication port-control auto
no authentication periodic
no authentication timer reauthenticate server
no authentication violation restrict
no mab
no snmp trap mac-notification change added
no snmp trap mac-notification change removed
no dot1x pae authenticator
no dot1x timeout quiet-period 300
no dot1x timeout tx-period 8
这导致核心失去与催化剂交换机内未关联的几个“核心”vlan 的所有连接。在进入核心后(由于半径不再可达),它似乎只占用了我应用命令的交换机内的 vlan。鉴于这些命令仅针对用户交换机端口,并且它们仅参考 ise 配置,我相信它们是接种过的。有没有人见过或经历过这种情况?如果是这样,问题是什么?