<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ISE &amp; WLC in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978958#M201198</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Edon,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is a flex connect feature matrix, this now supported with ise 1.1 (since there is a section dedicated to it.). You will have to upgrade to 7.2 to get the new features.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps10315/products_tech_note09186a0080b3690b.shtml"&gt;http://www.cisco.com/en/US/products/ps10315/products_tech_note09186a0080b3690b.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;TABLE bgcolor="#FFFFFF" border="1" cellpadding="3" cellspacing="1" width="60%"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TH bgcolor="#CCCCFF"&gt;&lt;BR /&gt;&lt;/TH&gt; &lt;TH bgcolor="#CCCCFF"&gt;WAN Up (Central switching)&lt;/TH&gt; &lt;TH bgcolor="#CCCCFF"&gt;WAN Up (Local switching)&lt;/TH&gt; &lt;TH bgcolor="#CCCCFF"&gt;WAN Down (Standalone)&lt;/TH&gt; &lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;TABLE bgcolor="#FFFFFF" border="1" cellpadding="3" cellspacing="1" width="60%"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD bgcolor="#FFFFFF"&gt;ISE 1.1&lt;/TD&gt;&lt;TD bgcolor="#FFFFFF"&gt;Yes&lt;/TD&gt;&lt;TD bgcolor="#FFFFFF"&gt;Yes (7.2.110.0)&lt;/TD&gt;&lt;TD bgcolor="#FFFFFF"&gt;No&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Release Notes for 7.2 (&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/wireless/controller/release/notes/crn7_2.html#wp855314"&gt;http://www.cisco.com/en/US/docs/wireless/controller/release/notes/crn7_2.html#wp855314&lt;/A&gt;&lt;SPAN&gt;)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope this helps,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 03 Aug 2012 15:30:27 GMT</pubDate>
    <dc:creator>Tarik Admani</dc:creator>
    <dc:date>2012-08-03T15:30:27Z</dc:date>
    <item>
      <title>ISE &amp; WLC</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978955#M201195</link>
      <description>&lt;P&gt;Quick question:&lt;/P&gt;&lt;P&gt;If I deploy ISE+WLC and wlc is in HREAP / Flexconnect mode, the Access-Lists do not work, how am I supposed to posture clients at remote locations?&lt;/P&gt;&lt;P&gt;[cuz I was gonna put an ACL to block everything but dns/etc untill they get pastured)&lt;/P&gt;&lt;P&gt;Can I change VLAN as per user/device once they hit the AP? I am always talking about remote locations?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 02:23:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978955#M201195</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2019-03-11T02:23:03Z</dc:date>
    </item>
    <item>
      <title>Re: ISE &amp; WLC</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978956#M201196</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, are you using dacls or are calling the redirect acls that are defined on the controller?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also are you calling the acl in the redirect portal configuration and in the airspace acl attribute? Also is the controller running 7.2.110? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Aug 2012 14:16:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978956#M201196</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-08-03T14:16:33Z</dc:date>
    </item>
    <item>
      <title>Re: ISE &amp; WLC</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978957#M201197</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Tarik,&lt;/P&gt;&lt;P&gt;First thanks for your prompt reply, I haven't deployed it yet but here is what I my plans are:&lt;/P&gt;&lt;P&gt;Software Version&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 7.0.220.0, ISE 1.1.1, AP 3500, with local switching (it's called flexconnect now, HREAP legacy whatever)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No DACL, Redirect ACLs defined in the controller and in ISE I plan to use AIRSPACE ACL attribute (I've labbed this - but not in flexconnect) ---&amp;gt; This is all for pasturing. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If there is any other way of doing this (having clients denied any access and redirected to posture url) would be great.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is a cisco HREAP/FlexConnect Limitation.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Other H REAP Limitations&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;&lt;STRONG&gt;If you have configured a locally switched WLAN, then Access Control&amp;nbsp; Lists (ACLs) do not work and are not supported. On a centrally switched&amp;nbsp; WLAN, ACLs are supported.&lt;/STRONG&gt;&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now, CoA is also a concern - if I have an AP&amp;lt;====TRUNK====&amp;gt;SWITCH----vlan/2/3/4, I want to be able to swap clients to different VLAN based on their user/device they are connecting, I am not sure if this will work on HREAP/Flexconnect mode and there is a slight change on the wording in the authorization policiy attribute in ISE 1.1.x, before it used to be just the vlan u want to set the clients to, now it has TAG ID which i am not sure what it is.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your help, I hope my question is clear.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Aug 2012 14:26:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978957#M201197</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2012-08-03T14:26:23Z</dc:date>
    </item>
    <item>
      <title>ISE &amp; WLC</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978958#M201198</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Edon,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is a flex connect feature matrix, this now supported with ise 1.1 (since there is a section dedicated to it.). You will have to upgrade to 7.2 to get the new features.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps10315/products_tech_note09186a0080b3690b.shtml"&gt;http://www.cisco.com/en/US/products/ps10315/products_tech_note09186a0080b3690b.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;TABLE bgcolor="#FFFFFF" border="1" cellpadding="3" cellspacing="1" width="60%"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TH bgcolor="#CCCCFF"&gt;&lt;BR /&gt;&lt;/TH&gt; &lt;TH bgcolor="#CCCCFF"&gt;WAN Up (Central switching)&lt;/TH&gt; &lt;TH bgcolor="#CCCCFF"&gt;WAN Up (Local switching)&lt;/TH&gt; &lt;TH bgcolor="#CCCCFF"&gt;WAN Down (Standalone)&lt;/TH&gt; &lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;TABLE bgcolor="#FFFFFF" border="1" cellpadding="3" cellspacing="1" width="60%"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD bgcolor="#FFFFFF"&gt;ISE 1.1&lt;/TD&gt;&lt;TD bgcolor="#FFFFFF"&gt;Yes&lt;/TD&gt;&lt;TD bgcolor="#FFFFFF"&gt;Yes (7.2.110.0)&lt;/TD&gt;&lt;TD bgcolor="#FFFFFF"&gt;No&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Release Notes for 7.2 (&lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/wireless/controller/release/notes/crn7_2.html#wp855314"&gt;http://www.cisco.com/en/US/docs/wireless/controller/release/notes/crn7_2.html#wp855314&lt;/A&gt;&lt;SPAN&gt;)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope this helps,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Aug 2012 15:30:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978958#M201198</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-08-03T15:30:27Z</dc:date>
    </item>
    <item>
      <title>ISE &amp; WLC</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978959#M201199</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Tarik,&lt;/P&gt;&lt;P&gt;Thanks for your reply, it does help and it does make me mad that I can't upgrade my WLC to the latest version bcuz the latest version does not suport 1230 APs I have like 700 of those in 100 sites. (which makes me mad).&lt;/P&gt;&lt;P&gt;Anyway this is the problem, I am planing to deploy one 3500 AP and do local switching/central authentication, &lt;/P&gt;&lt;P&gt; and leave all other 1230 APs with central/switching&amp;nbsp; &lt;/P&gt;&lt;P&gt;now will this support ISE 1.1.1 with my current WLC, to do profiling?&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Aug 2012 15:42:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978959#M201199</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2012-08-03T15:42:36Z</dc:date>
    </item>
    <item>
      <title>ISE &amp; WLC</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978960#M201200</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It should support profiling, how are you planning to profile the devices? The big issue is that you can not use mac filtering with Radius NAC which will not allow the radius probe. Your best bet is to setup a span port so you can get the dhcp information and the http information over to ISE to make the profiling decisions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Aug 2012 15:46:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978960#M201200</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-08-03T15:46:49Z</dc:date>
    </item>
    <item>
      <title>ISE &amp; WLC</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978961#M201201</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'll see, it's kinda all messed up now for me lol, Suppor this but dont support that, I think cisco wants you to buy all the newest stuff every 6 months lol.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I appreciate your help and will do some labbing very soon and see how this all works &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Have a good day, happy friday, this job needs to be done on mondays&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 03 Aug 2012 15:49:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/1978961#M201201</guid>
      <dc:creator>edondurguti</dc:creator>
      <dc:date>2012-08-03T15:49:59Z</dc:date>
    </item>
    <item>
      <title>Re: ISE &amp; WLC</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/3364688#M201202</link>
      <description>Hi,&lt;BR /&gt;Hope your fine and doing well !!!&lt;BR /&gt;&lt;BR /&gt;please guide me for Multiple vlans with sing SSID&lt;BR /&gt;&lt;BR /&gt;WLC and connectivity is ok&lt;BR /&gt;AD integration with ISE is Ok&lt;BR /&gt;&lt;BR /&gt;now below below are vlan deatils&lt;BR /&gt;&lt;BR /&gt;Dear all,&lt;BR /&gt;&lt;BR /&gt;how can i achieve multiple vlan for single SAID.&lt;BR /&gt;&lt;BR /&gt;like i have below vlan network&lt;BR /&gt;122 	GEP-STD-FDN-WLN 	10.85.122.1/23&lt;BR /&gt;124 	GEP-STD-YR1-WLN 	10.85.124.1/23&lt;BR /&gt;126 	GEP-STD-YR2-WLN 	10.85.126.1/23&lt;BR /&gt;128 	GEP-STD-YR3-WLN 	10.85.128.1/23&lt;BR /&gt;130 	GEP-STD-YR4-WLN 	10.85.130.1/23&lt;BR /&gt;132 	GEP-STD-YR5-WLN 	10.85.132.1/23&lt;BR /&gt;134 	GEP-STD-YR6-WLN 	10.85.134.1/23&lt;BR /&gt;136 	GEP-STD-YR7-WLN 	10.85.136.1/23&lt;BR /&gt;138 	GEP-STD-YR8-WLN 	10.85.138.1/23&lt;BR /&gt;140 	GEP-STD-YR9-WLN 	10.85.140.1/23&lt;BR /&gt;142 	GEP-STD-YR10-WLN 	10.85.142.1/23&lt;BR /&gt;144 	GEP-STD-YR11-WLN 	10.85.144.1/23&lt;BR /&gt;146 	GEP-STD-YR12-WLN 	10.85.146.1/23&lt;BR /&gt;148 	GEP-STD-YR13-WLN 	10.85.148.1/23&lt;BR /&gt;&lt;BR /&gt; &lt;BR /&gt;&lt;BR /&gt;i need all this vlan to associat with Single SSID&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;please guide&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Regards&lt;BR /&gt;&lt;BR /&gt;Ayyub&lt;BR /&gt;&lt;BR /&gt; &lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 12 Apr 2018 06:56:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-wlc/m-p/3364688#M201202</guid>
      <dc:creator>ayyubsahil</dc:creator>
      <dc:date>2018-04-12T06:56:06Z</dc:date>
    </item>
  </channel>
</rss>

