<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: redirect url in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212498#M551450</link>
    <description>You need to make sure that the interface cwa url configured resolve to wlc&lt;BR /&gt;virtual interface IP.&lt;BR /&gt;</description>
    <pubDate>Tue, 07 Nov 2017 17:06:11 GMT</pubDate>
    <dc:creator>Mohammed al Baqari</dc:creator>
    <dc:date>2017-11-07T17:06:11Z</dc:date>
    <item>
      <title>redirect url</title>
      <link>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3211462#M551444</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;What could be the problem if the client is not getting back a redirect url from the wlc ? .&lt;/P&gt;
&lt;P&gt;and if Wlc is getting redirect url&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 18:38:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3211462#M551444</guid>
      <dc:creator>elite2010</dc:creator>
      <dc:date>2020-02-21T18:38:10Z</dc:date>
    </item>
    <item>
      <title>Re: redirect url</title>
      <link>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3211463#M551445</link>
      <description>are you using IP or name for redirect url&lt;BR /&gt;</description>
      <pubDate>Mon, 06 Nov 2017 09:43:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3211463#M551445</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2017-11-06T09:43:58Z</dc:date>
    </item>
    <item>
      <title>Re: redirect url</title>
      <link>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3211470#M551446</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;I am using fqdn , client can resolve any fqdn including node .&lt;/P&gt;
&lt;P&gt;If it is dns issue atleast I could see the something like below on the broswer&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp; &lt;A href="https://psn01.test.com:8443/portal/gateway?sessionId=0a007c0a59feec27000034cd&amp;amp;portal=27963fb0-e96e-11e4-a30a-005056bf01c9&amp;amp;action=cwa&amp;amp;token=9a7eb36c3ca61138c6adba47c9b23cde" target="_blank"&gt;https://psn01.test.com:8443/portal/gateway?sessionId=0a007c0a59feec27000034cd&amp;amp;portal=27963fb0-e96e-11e4-a30a-005056bf01c9&amp;amp;action=cwa&amp;amp;token=9a7eb36c3ca61138c6adba47c9b23cde&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In my case&amp;nbsp; Ican't see anything like that above&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 06 Nov 2017 10:00:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3211470#M551446</guid>
      <dc:creator>elite2010</dc:creator>
      <dc:date>2017-11-06T10:00:21Z</dc:date>
    </item>
    <item>
      <title>Re: redirect url</title>
      <link>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3211801#M551447</link>
      <description>&lt;P&gt;Check wlc coa configuration on AAA Radius authentication,&lt;/P&gt;
&lt;P&gt;Check SSID -- advance --- radius nac and aaa override&lt;/P&gt;
&lt;P&gt;Check WLC preauth ACL pointing to the PSN on 8443&lt;/P&gt;
&lt;P&gt;IF you are using an F5 solution, the static FQDN option does not work properly.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Nov 2017 20:17:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3211801#M551447</guid>
      <dc:creator>ajc</dc:creator>
      <dc:date>2017-11-06T20:17:26Z</dc:date>
    </item>
    <item>
      <title>Re: redirect url</title>
      <link>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212456#M551448</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Sorry .It's not static fqdn&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 07 Nov 2017 16:22:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212456#M551448</guid>
      <dc:creator>bluesea2010</dc:creator>
      <dc:date>2017-11-07T16:22:33Z</dc:date>
    </item>
    <item>
      <title>Re: redirect url</title>
      <link>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212470#M551449</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Here is the preauth acl&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ip access-list extended redirect_acl&lt;BR /&gt; deny udp any any eq bootps&lt;BR /&gt; deny udp any any eq bootpc&lt;BR /&gt; deny udp any any eq domain&lt;BR /&gt; deny ip any host 192.168.5.41 (ise)&lt;BR /&gt; deny ip any host 192.168.5.42&lt;BR /&gt; permit tcp any any eq www&lt;BR /&gt; permit tcp any any eq 443&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 07 Nov 2017 16:38:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212470#M551449</guid>
      <dc:creator>bluesea2010</dc:creator>
      <dc:date>2017-11-07T16:38:54Z</dc:date>
    </item>
    <item>
      <title>Re: redirect url</title>
      <link>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212498#M551450</link>
      <description>You need to make sure that the interface cwa url configured resolve to wlc&lt;BR /&gt;virtual interface IP.&lt;BR /&gt;</description>
      <pubDate>Tue, 07 Nov 2017 17:06:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212498#M551450</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2017-11-07T17:06:11Z</dc:date>
    </item>
    <item>
      <title>Re: redirect url</title>
      <link>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212504#M551451</link>
      <description>&lt;P&gt;We are using&amp;nbsp;hotspot portal,&amp;nbsp;sponsor portal for guest account&amp;nbsp;creation, guest webauth portal (WLC URL Redirect), etc with no issues. Try to keep it simple. AND Mohammed is correct.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The preauth acl is intended to keep the communication ONLY between&amp;nbsp;enduser and ISE/DNS&amp;nbsp;so no navigation is involved at all until your AUTHC/AUTHZ is completed (including AUP page accepted if it applies).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ACL.png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/3012i00A4C214CCE7FE0B/image-size/large?v=v2&amp;amp;px=999" role="button" title="ACL.png" alt="ACL.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Nov 2017 17:16:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212504#M551451</guid>
      <dc:creator>ajc</dc:creator>
      <dc:date>2017-11-07T17:16:03Z</dc:date>
    </item>
    <item>
      <title>Re: redirect url</title>
      <link>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212510#M551452</link>
      <description>&lt;P&gt;A few links that you could take a look:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportforums.cisco.com/t5/wireless-mobility-documents/understanding-https-redirect-over-web-auth/ta-p/3143359" target="_blank"&gt;https://supportforums.cisco.com/t5/wireless-mobility-documents/understanding-https-redirect-over-web-auth/ta-p/3143359&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportforums.cisco.com/t5/security-and-network-management/controllers-not-re-directing-client-requests-to-ise/td-p/2225094" target="_blank"&gt;https://supportforums.cisco.com/t5/security-and-network-management/controllers-not-re-directing-client-requests-to-ise/td-p/2225094&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportforums.cisco.com/t5/wireless-mobility-documents/central-web-authentication-cwa-for-guests-with-ise/ta-p/3121101" target="_blank"&gt;https://supportforums.cisco.com/t5/wireless-mobility-documents/central-web-authentication-cwa-for-guests-with-ise/ta-p/3121101&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 07 Nov 2017 17:25:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212510#M551452</guid>
      <dc:creator>ajc</dc:creator>
      <dc:date>2017-11-07T17:25:08Z</dc:date>
    </item>
    <item>
      <title>Re: redirect url</title>
      <link>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212607#M551453</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I could not follow what you have said ,Can you&amp;nbsp; explain&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Sorry for that&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Tue, 07 Nov 2017 19:42:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/redirect-url/m-p/3212607#M551453</guid>
      <dc:creator>bluesea2010</dc:creator>
      <dc:date>2017-11-07T19:42:37Z</dc:date>
    </item>
  </channel>
</rss>

