Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

ISE 1.2 and WLC 7.6.100.0 Flex Config

I've one SSID used for both Head Office users and branch users. The problem is that branch users are using flexconnect. All the branch users are using vlan 10 as pre authC and vlan 20 after authenctication. But H.O. users are using vlan 50 to connect. Now i've make the AuthZ policy to match wlan-id and wireless 802.1x.

The question is that how i'll make the H.O. users to match different AuthZ policy and branch users with other AuthZ policy since i need to return different vlan for them.

 

Thanks and Regards,

Zohaib

Everyone's tags (3)
1 ACCEPTED SOLUTION

Accepted Solutions

If you use AP groups on your

If you use AP groups on your controller, you can set different NAS-IDs for each AP Group on the controller, and that attribute will be sent to ISE so you can create two different authz rules for the two ap groups.

2 REPLIES

If you use AP groups on your

If you use AP groups on your controller, you can set different NAS-IDs for each AP Group on the controller, and that attribute will be sent to ISE so you can create two different authz rules for the two ap groups.

New Member

Hi Jan,Thanks for the reply.

Hi Jan,

Thanks for the reply. I just want to know if there is any other way to identify the users in the policy since im using only default group and the network in operational. Shifting these AP to a new group will be difficult. Is there a way to put NAS-ID on flexconnect group?

96
Views
0
Helpful
2
Replies
CreatePlease to create content