I have a 4402 behind our firewall acting as the anchor for our guest wireless and wired WLANs, the mobility tunnels work via holes through the firewall to port 1 on the WLC and then the traffic goes back out of port 1 to the firewall to get to the internet, no problems there.
I am now trying to get a third guest ssid working, but this time taking the Internet side of the traffic out of a second firewall which is connected to port 2 on the Anchor WLC. I can see the test client hitting the new firewall but the system seems to fail when the client tries to browse as the redirection to the web authentication page doesn't happen. If I point the ssid out of the WLC's port 1 it works straight away.
I really don;t know where to start looking to fault find, can anyone help?