We have the same problem - If Clean access checked Mac address for already logged in and just reported the new ip life would be good!
Todd Joyce Network Services Radford University – The Smart Choice [email protected] (540) 831-7777 Knee deep in the water somewhere got the blue sky breeze blowin' wind thru my hair only worry in the world is the tide gonna reach my chair -----Original Message----- From: Cisco Clean Access Users and Administrators [mailto:[email protected]] On Behalf Of Dennis Xu Sent: Tuesday, October 30, 2012 10:17 AM To: [email protected] Subject: DHCP lease time and Role's session timeout Hi All, Do you match the DHCP lease time with the user role's session timeout? Our wireless subnets have DHCP lease time set to 30 minutes and the wireless user roles' session timeout is 8 hours. But if users get a new IP, they will need to log into NAC again regardless of the session timeout. It will be a challenge for us to set wireless DHCP lease to be 8 hours because of the IP usages. I am checking what others are doing for this kind of issue. Ideally we want users to log into NAC just once per day. Thanks! --- Dennis Xu Network Analyst, Computing and Communication Services University of Guelph 5198244120 x 56217
