Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

WLC 4404 Security

Dear All,

i need to implement the wlc into one of my customer.

The security issue as below has to be solved.

How can we stop the APs to send the discovery request to the wlc.We need few APs to be associated with it.If any one insert the APs to send the recovery and join the wlc THATthreat to be identified and blocked.

This is the major security issue needs to be solved.

What featre in the wlc that can be used to solve the problem.



  • Other Wireless - Mobility Subjects

Re: WLC 4404 Security

You configure WLC to make APs configure against the Radius Server. On the WLC Web GUI:Security>RADIUS authentication>New> , Add ACS server IP, ASCII Shared secret, port number and check the boxes for

network user, management, IPSEC if used for AAA authentication , On the ACS server: Network Configuration>Add entry>

Add WLC hostname, IP address and matching shared key, for authenticate , using select RADIUS Cisco Aironet or Cisco Airespace if using ACS 4.0 , To configure the WLC so AP's authenticate against ACS: On the WLC: Security>AP Policies>Select the checkbox for Authorize APs against AAA, On the ACS server:, Add a user account for the MAC address of the AP with no dots or dashes, the password will also be the MAC address of the AP with no dots or dashes.

This widget could not be displayed.