Cisco Wireless controller with Cisco ACS 5.3 as Radius servers for fail over
Our Setup is as explained below
Cisco Wireless Controller with Configured Cisco ACS 5.3 as Radius Server
Cisco ACS 5.3 has been integrated with AD for Wireless Authentication
We have Primary and secondary Servers which running on cisco acs 18.104.22.168.8 (In standalone mode)
These two entries has been mapped in SSID configurations of the Controller
We want fail over feature on this, in case of Primary ACS Server is reachable but due to some reasons failed to authenticate via AD (Ex: AD disconnection state in Primary ACS) it should fall back to secondary ACS for AD authentication
We tried the Radius fallback feature in WLC, but of no luck.
Is this possible, please help on this related to configurations.
You can add both primary and secondary server under Radius authentication server with time out value , if you primary server doesnt respond within time out value , WLC will fall back to secondary server .
You can configure up to 17 RADIUS authentication and accounting servers each. For example, you may want to have one central RADIUS authentication server but several RADIUS accounting servers in different regions. If you configure multiple servers of the same type and the first one fails or becomes unreachable, the controller automatically tries the second one, then the third one if necessary, and so on.
If multiple RADIUS servers are configured for redundancy, the user database must be identical in all the servers for the backup to work properly.
Transferring Crash file from standby:
Login to the Active WLC in HA.
(Cisco Controller) >transfer upload datatype crash
(Cisco Controller) >transfer upload filename <Desired filename>
(Cisco Controller) >transfer up...
This is the start of a display filter cross reference between Wireshark and OmniPeek.
The 1st installment is a table of advanced filters. More filters will be added as time allows.
It is a living doc, so check back for changes every so often
Please feel ...
I have created a Powershell script to automatically add a Wireless Guest User on Cisco WLCs. (tested on 2500 Series)
The script should be completely self explanatory.
Powershell SNMP Module (Install-Module -Name SNMP)
SNMP Write Access to...