<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ISE &amp; Meraki Guest Integration: URL extraction in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-meraki-guest-integration-url-extraction/m-p/3481749#M509035</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ISE will not be able to extract, would recommend working with Meraki team to see if they can support ISE guest with wpa as I know they can with open ssid&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;https://communities.cisco.com/docs/DOC-68192?mobileredirect=true&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco WLC 8.3 code started supported wpa with ISE&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 13 Jun 2018 17:25:41 GMT</pubDate>
    <dc:creator>Jason Kunst</dc:creator>
    <dc:date>2018-06-13T17:25:41Z</dc:date>
    <item>
      <title>ISE &amp; Meraki Guest Integration: URL extraction</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-meraki-guest-integration-url-extraction/m-p/3481748#M509031</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm implementing ISE on an existing Meraki wireless deployment. I can’t use the “default” integration path for guest wireless as stakeholders are insisting that the traffic must be WPA-2 PSK protected (selecting ISE for the captive portal means having open access). This means that I’m having to fudge redirection to the ISE guest portal using a splash redirect on the Meraki pointing to the ISE portal test URL. The Meraki captive portal deployment guide &lt;A href="https://meraki.cisco.com/lib/pdf/meraki_whitepaper_captive_portal.pdf"&gt;https://meraki.cisco.com/lib/pdf/meraki_whitepaper_captive_portal.pdf&lt;/A&gt; says that:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Meraki will send &lt;/EM&gt;&lt;A href="https://community.cisco.com/"&gt;&lt;EM&gt;http://yourwebsite.com/clickthrough.php?base_grant_url=https%00%00%00n00.meraki.com%2Fsplash%2Fgrant&amp;amp;user_continue_url=http%3A%2F%2Fgoogle.com%2F&amp;amp;node_mac=00:18:0a:xx:xx:xx&amp;amp;client_ip=10.128.128.120&amp;amp;client_mac=xx:xx:xx:xx:xx:xx&lt;/EM&gt;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Let’s assume the client is registered as a guest and completes the GUI logon, then if ISE wants to instruct the Meraki to permit access to the client, return a URL redirect:&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt; &lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;GET[‘&lt;SPAN style="color: #4472c4;"&gt;base_grant_url’&lt;/SPAN&gt;] + “?continue_url=” + GET[‘&lt;SPAN style="color: #70ad47;"&gt;user_continue_url’&lt;/SPAN&gt;] + “&amp;amp;duration=3600” (to grant access for one hour).&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt; &lt;/EM&gt;&lt;/P&gt;&lt;OL style="list-style-type: lower-alpha;"&gt;&lt;LI&gt;&lt;EM&gt;e.g. &lt;/EM&gt;&lt;A href="https://n16.meraki.com/splash/grant?continue_url=www.google.com&amp;amp;duration=3600"&gt;&lt;EM&gt;https://n16.meraki.com/splash/grant?continue_url=www.google.com&amp;amp;duration=3600&lt;/EM&gt;&lt;/A&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The guide also states that this URL shouldn’t be hardcoded as elements such as that &lt;EM&gt;n16&lt;/EM&gt; host might change and consequently it’ll all break.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does anybody know how ISE can extract those parameters passed to it from Meraki (if it’s even possible)?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Jun 2018 15:04:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-meraki-guest-integration-url-extraction/m-p/3481748#M509031</guid>
      <dc:creator>noisey_uk</dc:creator>
      <dc:date>2018-06-13T15:04:32Z</dc:date>
    </item>
    <item>
      <title>Re: ISE &amp; Meraki Guest Integration: URL extraction</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-meraki-guest-integration-url-extraction/m-p/3481749#M509035</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ISE will not be able to extract, would recommend working with Meraki team to see if they can support ISE guest with wpa as I know they can with open ssid&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;https://communities.cisco.com/docs/DOC-68192?mobileredirect=true&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco WLC 8.3 code started supported wpa with ISE&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 13 Jun 2018 17:25:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-meraki-guest-integration-url-extraction/m-p/3481749#M509035</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2018-06-13T17:25:41Z</dc:date>
    </item>
    <item>
      <title>Re: ISE &amp; Meraki Guest Integration: URL extraction</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-meraki-guest-integration-url-extraction/m-p/3481750#M509037</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;﻿Please update us on status as well&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Jun 2018 17:12:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-meraki-guest-integration-url-extraction/m-p/3481750#M509037</guid>
      <dc:creator>Jason Kunst</dc:creator>
      <dc:date>2018-06-19T17:12:12Z</dc:date>
    </item>
  </channel>
</rss>

