<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic No you shouldnt have to in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/guest-wireless-portal-url-redirection-to-the-client-is-not/m-p/2777639#M41157</link>
    <description>&lt;P&gt;No you shouldnt have to because the CWA detection on the controller should allow dhcp and dns traffic through, in my acl that I have I only redirect the webauth port and the ip of ISE and thats all. What version of code are you running on your setup?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 31 Dec 2015 16:27:32 GMT</pubDate>
    <dc:creator>Tarik Admani</dc:creator>
    <dc:date>2015-12-31T16:27:32Z</dc:date>
    <item>
      <title>Guest Wireless portal :- URL redirection to the client is not happened</title>
      <link>https://community.cisco.com/t5/network-access-control/guest-wireless-portal-url-redirection-to-the-client-is-not/m-p/2777636#M41154</link>
      <description>&lt;P&gt;Currently we have POC Anchor-Foreign Scenario for DMZ wireless guest accesses using portal. Once we connected to SSID then we can see the foreign WLC quickly shows the client is in the &lt;STRONG&gt;&lt;SPAN style="font-family: 'Calibri',sans-serif;"&gt;RUN&lt;/SPAN&gt;&lt;/STRONG&gt; state and Anchor WLC shows &lt;STRONG&gt;CENTRAL_WEB_AUTH. &lt;/STRONG&gt;But still URL redirection to the client is not happened. But when we copy and paste URL from logs to client browser then it is getting correctly. I have attached the redirection ACL for both WLCs and client debugs from both side.&lt;/P&gt;
&lt;P&gt;We are using 5760 as Foreign WLC and 5508 WLC with ISE 1.3 patch 5.&lt;/P&gt;
&lt;P&gt;Highly appreciated any help.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 06:21:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/guest-wireless-portal-url-redirection-to-the-client-is-not/m-p/2777636#M41154</guid>
      <dc:creator>pradeepgun</dc:creator>
      <dc:date>2019-03-11T06:21:48Z</dc:date>
    </item>
    <item>
      <title>The ACL entry can be blank on</title>
      <link>https://community.cisco.com/t5/network-access-control/guest-wireless-portal-url-redirection-to-the-client-is-not/m-p/2777637#M41155</link>
      <description>&lt;P&gt;The ACL entry can be blank on the foreign controller since the acl that is enforced is on the anchor, you have to make sure that the redirect acls that are configured on both controllers are identical as they are case sensitive.&lt;/P&gt;</description>
      <pubDate>Thu, 31 Dec 2015 05:57:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/guest-wireless-portal-url-redirection-to-the-client-is-not/m-p/2777637#M41155</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2015-12-31T05:57:26Z</dc:date>
    </item>
    <item>
      <title>Many thanks Tarik.</title>
      <link>https://community.cisco.com/t5/network-access-control/guest-wireless-portal-url-redirection-to-the-client-is-not/m-p/2777638#M41156</link>
      <description>&lt;P&gt;Many thanks Tarik.&lt;/P&gt;
&lt;P&gt;Here we are using identical ACLs in both controllers and name also same. Do we need to allow DHCP as well. I have configured ACL based on below document.&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/115732-central-web-auth-00.html&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 31 Dec 2015 06:19:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/guest-wireless-portal-url-redirection-to-the-client-is-not/m-p/2777638#M41156</guid>
      <dc:creator>pradeepgun</dc:creator>
      <dc:date>2015-12-31T06:19:20Z</dc:date>
    </item>
    <item>
      <title>No you shouldnt have to</title>
      <link>https://community.cisco.com/t5/network-access-control/guest-wireless-portal-url-redirection-to-the-client-is-not/m-p/2777639#M41157</link>
      <description>&lt;P&gt;No you shouldnt have to because the CWA detection on the controller should allow dhcp and dns traffic through, in my acl that I have I only redirect the webauth port and the ip of ISE and thats all. What version of code are you running on your setup?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 31 Dec 2015 16:27:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/guest-wireless-portal-url-redirection-to-the-client-is-not/m-p/2777639#M41157</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2015-12-31T16:27:32Z</dc:date>
    </item>
    <item>
      <title>Thanks Tarik,</title>
      <link>https://community.cisco.com/t5/network-access-control/guest-wireless-portal-url-redirection-to-the-client-is-not/m-p/2777640#M41158</link>
      <description>&lt;P&gt;Thanks Tarik, &lt;/P&gt;
&lt;P&gt;Anchor WLC is CT5508 - 7.6.130.0&lt;/P&gt;
&lt;P&gt;Foreign WLC is 5760 - 15.2&lt;/P&gt;
&lt;P&gt;Would you please check the attached ALCs and if it is possible share your working ACLs&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 31 Dec 2015 21:52:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/guest-wireless-portal-url-redirection-to-the-client-is-not/m-p/2777640#M41158</guid>
      <dc:creator>pradeepgun</dc:creator>
      <dc:date>2015-12-31T21:52:16Z</dc:date>
    </item>
  </channel>
</rss>

