cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
660
Views
0
Helpful
3
Replies

vWLC and Guest Wired

Luciano Vigano'
Level 1
Level 1

Ciao,

we are going to test the Guest capabilities of the vWLC (version 7.4.121.0) with no anchor.

The WiFi Guest and authentication works well.

The Wired Guest seems to have problems:

- ip to client is assigned (ok)

- then no packets seems to leave the vWLC (no dns request exit the vWLC for example) nor the auth page comes up

For the last point I was on the ASA and no packets arrives.

 

On vWLC: ingress interface is the L2 vlan, while the egress interface is the L3 vlan (with ASA as gateway)

 

Any suggestion ?

 

Cheers,

L.

1 Accepted Solution

Accepted Solutions

Saurav Lodh
Level 7
Level 7

Restrictions for Configuring Wired Guest Access

  • Wired guest access interfaces must be tagged.
  • Wired guest access ports must be in the same Layer 2 network as the foreign controller.
  • Up to five wired guest access LANs can be configured on a controller. Also in a wired guest access LAN, multiple anchors are supported.
  • Layer 3 web authentication and web passthrough are supported for wired guest access clients. Layer 2 security is not supported.
  • Do not trunk a wired guest VLAN to multiple foreign controllers, as it might produce unpredictable results.

View solution in original post

3 Replies 3

Luciano Vigano'
Level 1
Level 1

Ciao,

 

moving from VDS to 1000V everything works fine ... in attach the captures (on client side): with 1000V arp resolution for the gateway (10.129.187.25) and DNS lookup work fine (so the authentication)

With VDS the client (Vmware_b7:25:15 - 10.129.187.30) gets stuck with ARP request about the gateway.

 

Ciao!

L.

Saurav Lodh
Level 7
Level 7

Restrictions for Configuring Wired Guest Access

  • Wired guest access interfaces must be tagged.
  • Wired guest access ports must be in the same Layer 2 network as the foreign controller.
  • Up to five wired guest access LANs can be configured on a controller. Also in a wired guest access LAN, multiple anchors are supported.
  • Layer 3 web authentication and web passthrough are supported for wired guest access clients. Layer 2 security is not supported.
  • Do not trunk a wired guest VLAN to multiple foreign controllers, as it might produce unpredictable results.

Luciano Vigano'
Level 1
Level 1

Ciao,

 

the problem was due to bad configuration of the promiscuous mode on the ESX virtual switch ... arghh!!

 

Cheers,

L.

Review Cisco Networking products for a $25 gift card