For machine authentication on a wireless network (EAP-TLS or PEAP), 1) do the computers have to be member of a windows domain, 2) can the computer be authenticated to a one SSID/VLAN and denied to others.
This sounds like the problem I'm looking into. I've got a single ACS server. I want to run PEAP. I have two WLAN SSIDs. I want some users to be authenticated to one SSID, and denied to the other SSID. Cant see how to make this work without using 2 ACS servers....
At the moment, I think anybody who can authenticate to one SSID can gain access to the other SSID.
Transferring Crash file from standby:
Login to the Active WLC in HA.
(Cisco Controller) >transfer upload datatype crash
(Cisco Controller) >transfer upload filename <Desired filename>
(Cisco Controller) >transfer up...
This is the start of a display filter cross reference between Wireshark and OmniPeek.
The 1st installment is a table of advanced filters. More filters will be added as time allows.
It is a living doc, so check back for changes every so often
Please feel ...
I have created a Powershell script to automatically add a Wireless Guest User on Cisco WLCs. (tested on 2500 Series)
The script should be completely self explanatory.
Powershell SNMP Module (Install-Module -Name SNMP)
SNMP Write Access to...