cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1681
Views
0
Helpful
3
Replies

WLAN authentication with IAS and BSSID

philipp.wolf
Level 1
Level 1

I have an BSSID enabled AP and all Vlan clients should be authenticated on one IAS Server. On the Server the Vlans should be mapped to different Remote-Access Policies. I was not able to find any command for the "aaa group server" configuration, that adds an attribute wich allows the server to select the correct Remote-Access Policy.

Does anyone know an answer (without using different source addresses for aaa request)

1 Accepted Solution
3 Replies 3

Scott Fella
Hall of Fame
Hall of Fame

Not really understanding what you said.  You want to authenticate certain users to a different policy?  Usually with radius, once you hit a policy, you either pass or fail.  You specify a certain NAS  IP ADDRESS... this you cant get around.

-Scott
*** Please rate helpful posts ***

I have configured the AP with BSSID`s (in case four VLAN`s and every VLAN has it`s own SSID)

Every Vlan has a different ruleset (ACL`s on the Firewall).

Now I would like to assign the user as follows:

User: SSID:

Admin1 Admin

Client1 Client

On the Server I have configured diffent Remote-Access Policies but the Server isn`t able to distinguish

the Source SSID of the request.

At the moment the Server is not able to distinguish the source SSID or Vlan so every existing User on the Server is accepted for every VLAN.

Message:

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: