We have the same problem  - If Clean access checked Mac address for already 
logged in and just reported the new ip life would be good!

Todd Joyce
Network Services
Radford University – The Smart Choice
[email protected]
(540) 831-7777
 
Knee deep in the water somewhere
got the blue sky breeze blowin' wind thru my hair
only worry in the world
is the tide gonna reach my chair

-----Original Message-----
From: Cisco Clean Access Users and Administrators 
[mailto:[email protected]] On Behalf Of Dennis Xu
Sent: Tuesday, October 30, 2012 10:17 AM
To: [email protected]
Subject: DHCP lease time and Role's session timeout

Hi All,

Do you match the DHCP lease time with the user role's session timeout? Our 
wireless subnets have DHCP lease time set to 30 minutes and the wireless user 
roles' session timeout is 8 hours. But if users get a new IP, they will need to 
log into NAC again regardless of the session timeout. It will be a challenge 
for us to set wireless DHCP lease to be 8 hours because of the IP usages. I am 
checking what others are doing for this kind of issue. Ideally we want users to 
log into NAC just once per day.

Thanks! 

---
Dennis Xu
Network Analyst, Computing and Communication Services University of Guelph
5198244120 x 56217

Reply via email to