<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Fabric wireless dynamic IP pool assignment in Software-Defined Access (SD-Access)</title>
    <link>https://community.cisco.com/t5/software-defined-access-sd-access/fabric-wireless-dynamic-ip-pool-assignment/m-p/3859016#M137</link>
    <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For the dynamic assignment of wired users to a particular VN/IP pool, we can configure an authorisation policy in ISE to return the VLAN name that matches the required IP pool's auth policy (such as 10.1.1.0-CAMPUS). I have tested and this works without any problems. Is it also possible to achieve the same thing with Fabric wireless? For example, if my corporate SSID is associated to corporate data pool 10.1.1.0/24 within DNAC, but I want to dynamically assign certain users to a different IP pool when connecting to the same SSID, (such as a dedicated pool for BYOD), can I use the same method as above? I dont have fabric wireless currently enabled so I cant test this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
    <pubDate>Sun, 19 May 2019 19:23:07 GMT</pubDate>
    <dc:creator>dm2020</dc:creator>
    <dc:date>2019-05-19T19:23:07Z</dc:date>
    <item>
      <title>Fabric wireless dynamic IP pool assignment</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/fabric-wireless-dynamic-ip-pool-assignment/m-p/3859016#M137</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For the dynamic assignment of wired users to a particular VN/IP pool, we can configure an authorisation policy in ISE to return the VLAN name that matches the required IP pool's auth policy (such as 10.1.1.0-CAMPUS). I have tested and this works without any problems. Is it also possible to achieve the same thing with Fabric wireless? For example, if my corporate SSID is associated to corporate data pool 10.1.1.0/24 within DNAC, but I want to dynamically assign certain users to a different IP pool when connecting to the same SSID, (such as a dedicated pool for BYOD), can I use the same method as above? I dont have fabric wireless currently enabled so I cant test this.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Sun, 19 May 2019 19:23:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/fabric-wireless-dynamic-ip-pool-assignment/m-p/3859016#M137</guid>
      <dc:creator>dm2020</dc:creator>
      <dc:date>2019-05-19T19:23:07Z</dc:date>
    </item>
    <item>
      <title>Re: Fabric wireless dynamic IP pool assignment</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/fabric-wireless-dynamic-ip-pool-assignment/m-p/3859562#M140</link>
      <description>Yes you should be able to accomplish this by using different authz conditions. Assuming you will use your SSID as one of the conditions just separate the different use cases out using other conditions such as AD security group, local ise endpoint group, etc. You just need to simply determine how you want conditions to be met in order to push different authz result profiles. As you mentioned your authz profiles will push policy for the different ip pools/sgts that you wish to push. In DNAC just create your other IP pools, assign to VN, and follow your same wired steps. They should be similar and straightforward. HTH!</description>
      <pubDate>Mon, 20 May 2019 17:45:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/fabric-wireless-dynamic-ip-pool-assignment/m-p/3859562#M140</guid>
      <dc:creator>Mike.Cifelli</dc:creator>
      <dc:date>2019-05-20T17:45:16Z</dc:date>
    </item>
  </channel>
</rss>

