cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
748
Views
0
Helpful
3
Replies

Are there any wireless controler that will accept Downloadable Access-list ?

michael.lussier
Level 1
Level 1

Currently any vpn user apon connection the network has an ACL pushed from ACS to ASA.

I want to do the same for wireless but I dont use the ASA. Will one of the wireless controllers accept Downloadable ACL's like the ASA ?

Michael

1 Accepted Solution

Accepted Solutions

Leo Laohoo
Hall of Fame
Hall of Fame

NO.  Because the ACL syntax on the WLC are different.

View solution in original post

3 Replies 3

dancampb
Level 7
Level 7

You can create an ACL on the controller and have the Radius server apply that ACL to specifiec users .

http://www.cisco.com/en/US/docs/wireless/controller/6.0/configuration/guide/c60sol.html#wp1086421

Dan,

That would be tricky at best. If its per user would mean 10,000 ACL at about 200 lines each.  hmmm that won't fit on a 4402 now will it ?

I'm using RSA authentication, If I can do it like I do with the ACS/RSA on a per group basis would drop to about 144 ACLs at about 200 lines.

Correct me if I'm wrong but I can't use the ASA with DACL unless I'm using IpSec.


At this point I'm not limiting myself to the Wireless controllers I thought it would be the simplest solution.

Leo Laohoo
Hall of Fame
Hall of Fame

NO.  Because the ACL syntax on the WLC are different.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: