40-96
Software Configuration Guide—Release 15.0(2)SG
OL-23818-01
Chapter 40 Configuring 802.1X Port-Based Authentication
Controlling Switch Access with RADIUS
Table 40-3 shows the possible values for the Error-Cause attribute.

Preconditions

To use the CoA interface, a session must already exist on the switch. CoA can be used to identify a
session and enforce a disconnect request. The update affects only the specified session.
CoA Request Response Code
The CoA Request response code can be used to convey a command to the switch. The supported
commands are listed in Table 40-4 on page 40-97.

Session Identification

For disconnect and CoA requests targeted at a particular session, the switch locates the session based on
one or more of the following attributes:
Calling-Station-Id (IETF attribute #31 which contains the host MAC address)
80 Message-Authenticator
101 Error-Cause
Table 40-2 Supported IETF Attributes
Attribute Number Attribute Name
Table 40-3 Error-Cause Values
Value Explanation
201 Residual Session Context Removed
202 Invalid EAP Packet (Ignored)
401 Unsupported Attribute
402 Missing Attribute
403 NAS Identification Mismatch
404 Invalid Request
405 Unsupported Service
406 Unsupported Extension
407 Invalid Attribute Value
501 Administratively Prohibited
502 Request Not Routable (Proxy)
503 Session Context Not Found
504 Session Context Not Removable
505 Other Proxy Processing Error
506 Resources Unavailable
507 Request Initiated
508 Multiple Session Selection Unsupported