Cisco Gigabit Ethernet Switch Module for HP p-Class BladeSystem System Message Guide

2-13
Cisco Gigabit Ethernet Switch Module for the HP p-Class BladeSystem System Message Guide
380260-004
Chapter 2 Message and Recovery Procedures
DOT1X_SWITCH Messages
Error Message DOT1X-5-SECURITY_VIOLATION: Security violation on interface [chars],
New MAC address [enet]
Explanation This message means that the port on the specified interface has been disabled because
of a security violation. When an interface is configured in single-host mode, any new host that is
detected on the interface is treated as a security violation. [chars] is the interface number, and [enet]
is the MAC address of the new host.
Recommended Action Ensure that the port is configured to use only one host. Enter the shutdown
interface configuration command. Then enter the no shutdown interface configuration command to
restart the port.
DOT1X_SWITCH Messages
This section contains the IEEE 802.1x messages for switches.
Error Message DOT1X_SWITCH-5-ERR_ADDING_ADDRESS: Unable to add address [enet] on
[chars]
Explanation This message means that the client MAC address could not be added to the MAC
address table because the hardware memory is full or the address is a secure address on another port.
This message might appear if IEEE 802.1x is enabled. [enet] is the client MAC address, and [chars]
is the interface.
Recommended Action If the hardware memory is full, remove some of the dynamic MAC addresses.
If the client address is on another port, remove it from that port.
Error Message DOT1X_SWITCH-5-ERR_RADIUS_VLAN_NOT_FOUND: Attempt to assign
non-existent VLAN [chars] to dot1x port [chars]
Explanation This message means that RADIUS attempted to assign a VLAN with a particular name
or ID to a supplicant on a port, but the name or ID could not be found on the switch. [dec] is the
VLAN, and [chars] is the port.
Recommended Action Make sure a VLAN with the specified name or ID exists on the switch.
Error Message DOT1X_SWITCH-5-ERR_VLAN_EQ_MDA_INACTIVE: Multi-Domain Authentication
cannot activate because Data and Voice VLANs are the same on port [chars]
Explanation This message means that Multi-Domain Authentication (MDA) host mode cannot start
if the configured data VLAN on a port is the same as the voice VLAN. [chars] is the port.
Recommended Action Change either the voice VLAN or the access VLAN on the interface so that
they are not the same. MDA then starts.