<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Mac-address authentication per vlan/ssid in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/mac-address-authentication-per-vlan-ssid/m-p/367057#M140673</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;One of the attributes passed by the AP back to the RADIUS server is the SSID.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My thoughts are that you need two RADIUS policies.  One that requires a specific SSID and a MAC address from a specified pool, and a second policy for the second SSID and the second pool of MAC addresses.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 28 Mar 2005 01:15:53 GMT</pubDate>
    <dc:creator>Philip D'Ath</dc:creator>
    <dc:date>2005-03-28T01:15:53Z</dc:date>
    <item>
      <title>Mac-address authentication per vlan/ssid</title>
      <link>https://community.cisco.com/t5/wireless/mac-address-authentication-per-vlan-ssid/m-p/367054#M140670</link>
      <description>&lt;P&gt;Requirement is a user with macaddress1 is supposed to connect using SSID abc only. Second user with macaddress2 should connect using SSID xyz only.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If user with macaddress1 ever tries to connect using SSID xyz, he should NOT be given access to the network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Effectively we are trying to restrict certain mac-addresses to certain vlans (or, ssids) only!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is it possible to configure this, if so, how?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for any info provided.&lt;/P&gt;&lt;P&gt;PB &lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 17:37:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mac-address-authentication-per-vlan-ssid/m-p/367054#M140670</guid>
      <dc:creator>pbarman</dc:creator>
      <dc:date>2021-07-04T17:37:11Z</dc:date>
    </item>
    <item>
      <title>Re: Mac-address authentication per vlan/ssid</title>
      <link>https://community.cisco.com/t5/wireless/mac-address-authentication-per-vlan-ssid/m-p/367055#M140671</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The easiest way to do this is to tie it in with RADIUS.  Then you simply define a policy on the RADIUS server saying user "x" is only valid in SSID "abc".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Might be just as easy to pass the VLAN ID back to the access point that the user is allowed to use.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Mar 2005 08:31:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mac-address-authentication-per-vlan-ssid/m-p/367055#M140671</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2005-03-27T08:31:09Z</dc:date>
    </item>
    <item>
      <title>Re: Mac-address authentication per vlan/ssid</title>
      <link>https://community.cisco.com/t5/wireless/mac-address-authentication-per-vlan-ssid/m-p/367056#M140672</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Agreed to the above. However customer wants to tie the macaddress instead of userid with ssid. We can do mac address authentication using radius and have a pool of macaddresses that would be allowed. However what we want is two pools of allowed macaddresses and each tied to its own ssid. Is it possible???&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Mar 2005 22:11:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mac-address-authentication-per-vlan-ssid/m-p/367056#M140672</guid>
      <dc:creator>pbarman</dc:creator>
      <dc:date>2005-03-27T22:11:22Z</dc:date>
    </item>
    <item>
      <title>Re: Mac-address authentication per vlan/ssid</title>
      <link>https://community.cisco.com/t5/wireless/mac-address-authentication-per-vlan-ssid/m-p/367057#M140673</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;One of the attributes passed by the AP back to the RADIUS server is the SSID.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My thoughts are that you need two RADIUS policies.  One that requires a specific SSID and a MAC address from a specified pool, and a second policy for the second SSID and the second pool of MAC addresses.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 28 Mar 2005 01:15:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mac-address-authentication-per-vlan-ssid/m-p/367057#M140673</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2005-03-28T01:15:53Z</dc:date>
    </item>
  </channel>
</rss>

