cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
518
Views
0
Helpful
2
Replies

Web auth ACLs

vijay kumar
Level 2
Level 2

Hi all,

I am going to configre web auth for my guest users . I have created Pre-web-auth ACL in WLC allowing traffic to DNS and to ISE .

If  the authentication is successful , I will give full network access authorization to the users in ISE .

So apart from that do I have to configure anything on switch side to support web auth?

Thanks,

TS.

2 Accepted Solutions

Accepted Solutions

Eduardo Aliaga
Level 4
Level 4

your question is confusing because you first talk about WLC and then you talk about switches.

If you are talking about CentralWebAuthentication with ISE and WLC, then you have to create an ACL to redirect to the captive portal. If authentication is succesful then WLC will use another ACL which permits all traffic.

You also need to configure your SSID. you have to check "radius NAC" and "aaa override"

Please rate if this helps

View solution in original post

Saurav Lodh
Level 7
Level 7
2 Replies 2

Eduardo Aliaga
Level 4
Level 4

your question is confusing because you first talk about WLC and then you talk about switches.

If you are talking about CentralWebAuthentication with ISE and WLC, then you have to create an ACL to redirect to the captive portal. If authentication is succesful then WLC will use another ACL which permits all traffic.

You also need to configure your SSID. you have to check "radius NAC" and "aaa override"

Please rate if this helps

Saurav Lodh
Level 7
Level 7

Agreeing with eduardoaliaga, I would suggest one Central web Auth on WLC using ISE, example.

http://www.cisco.com/en/US/products/ps11640/products_configuration_example09186a0080bead09.shtml#wlcconfiguration

Review Cisco Networking products for a $25 gift card