not flushed. The RADIUS reachability is triggered, and the port is moved or copied to Fail Open
VLAN.
Display Fail Open VLAN continuity mode status
4xxx(config)#show eapol multihost
[...]
Fail Open VLAN: Enabled
Fail Open VLAN ID: 1000
Fail Open VLAN Continuity Mode: Enabled
Verify functionality
Verify Fail Open VLAN Continuity Mode is functioning properly by using syslog when the
RADIUS server is down and a client is reauthenticated.
4xxx(config)#show logging sort-reverse
[...]
I 00:00:29:57 43 No Response from RADIUS Server port 14
mac 1c:bd:b9:e5:cb:42, FOV continuity activated; RADIUS Reachability Triggered
[...]
Limitations
It is recommended that the RADIUS Reachability to be set on Use RADIUS.
If Use ICMP is used and the RADIUS server is reachable, but the RADIUS Server Service is
stopped, an ICMP packet is sent for every authentication. If there are many EAP/Non-EAP
clients in the setup, this flood with ICMP packets can be disturbing. This is a corner case and
can be avoided using RADIUS packets for reachability, as recommended, or starting RADIUS
Server Service if Use ICMP is used for reachability. This situation appears because with Fail
Open Continuity Mode enabled, the RADIUS Reachability mechanism is triggered when no
response is received from the RADIUS Server.
EAP client authentication
This section provides troubleshooting guidelines for the EAP and NEAP features on the Avaya
Ethernet Routing Switch 4000 Series devices.
Work flow: EAP client is not authenticating
About this task
The following work flow assists you to determine the cause and solution of an EAP client that
does not authenticate as expected.
EAP client authentication
Troubleshooting Avaya ERS 4000 Series April 2014 119