<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FlexConnect VLAN Based Central Switching - WLC 5500 in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3751159#M206822</link>
    <description>&lt;P&gt;It has been solved by sending&amp;nbsp;&lt;SPAN&gt;VLAN ID# from ISE not the VLAN-name despite the VLAN is defined in "FlexConnect VLAN Template"&amp;nbsp; while it is fine to send the VLAN name for the VLAN's that are presented on the AP&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Do not know&amp;nbsp;what is the sense of this special case in&amp;nbsp;&amp;nbsp;FlexConnect VLAN Based Central Switching&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Cheers,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Sam&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 22 Nov 2018 04:21:40 GMT</pubDate>
    <dc:creator>husam.hasan</dc:creator>
    <dc:date>2018-11-22T04:21:40Z</dc:date>
    <item>
      <title>FlexConnect VLAN Based Central Switching - WLC 5500</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746168#M206815</link>
      <description>&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 12.0pt; color: #58585b;"&gt;Hey guys,&lt;/P&gt;
&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 11.0pt;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 12.0pt; color: #58585b;"&gt;I got dot1x wireless deployment of&amp;nbsp; Cisco WLC 5500 and ISE. Currently we have centrally switched WLAN with 2 VLANs Data and Remediation and all work fine. we need to make the Data VLAN local breakout while keeping the Remediation VLAN centrally switched.Based on the "FlexConnect VLAN Based Central Switching" that should work fine. But what happening is below&lt;/P&gt;
&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 12.0pt; color: #58585b;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 12.0pt; color: #58585b;"&gt;If&amp;nbsp; both Data and Remediation are locally switched ( both VLAN are presented on the AP) then all good also if both are centrally switched ( flexconnect local switching not active on the WLAN )&amp;nbsp; but when I try to do the remediation centrally (VLAN not presented on the AP) and Data locally ( VLAN presented on the AP) then the AP is ignoring the VLAN tag coming from Cisco ISE for the remediation and put the client direct into Data ( default) VLAN locally . it behaves like before the "VLAN Based Central Switching" feature has been introduced!!!&lt;/P&gt;
&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 12.0pt; color: #58585b;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 12.0pt; color: #58585b;"&gt;I had version 8.3 then upgraded to latest version 8.5 but still no joy &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;
&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 12.0pt; color: #58585b;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 12.0pt; color: #58585b;"&gt;thought please!! is it a bug somewhere or am I missing something ?&lt;/P&gt;
&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 12.0pt; color: #58585b;"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 12.0pt; color: #58585b;"&gt;Thanks,&lt;/P&gt;
&lt;P style="margin: 0in; font-family: 'Arial Mäori'; font-size: 12.0pt; color: #58585b;"&gt;Sam&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 16:26:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746168#M206815</guid>
      <dc:creator>husam.hasan</dc:creator>
      <dc:date>2021-07-05T16:26:47Z</dc:date>
    </item>
    <item>
      <title>Re: FlexConnect VLAN Based Central Switching - WLC 5500</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746217#M206816</link>
      <description>Just to clarify, are you trying to do this on the same SSID?</description>
      <pubDate>Wed, 14 Nov 2018 01:04:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746217#M206816</guid>
      <dc:creator>Jurgens L</dc:creator>
      <dc:date>2018-11-14T01:04:02Z</dc:date>
    </item>
    <item>
      <title>Re: FlexConnect VLAN Based Central Switching - WLC 5500</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746221#M206817</link>
      <description>Yes it is the same SSID and it got AAA override enable to get the VLAN name for ISE</description>
      <pubDate>Wed, 14 Nov 2018 01:11:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746221#M206817</guid>
      <dc:creator>husam.hasan</dc:creator>
      <dc:date>2018-11-14T01:11:50Z</dc:date>
    </item>
    <item>
      <title>Re: FlexConnect VLAN Based Central Switching - WLC 5500</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746222#M206818</link>
      <description>it is working fine if both VLANs (Data and Remediation) are centrally switched and if both are locally switched. but not when I try to use the "VLAN Based Central Switching" to switch the remediation centrally by not presenting this VLAN on the AP</description>
      <pubDate>Wed, 14 Nov 2018 01:14:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746222#M206818</guid>
      <dc:creator>husam.hasan</dc:creator>
      <dc:date>2018-11-14T01:14:26Z</dc:date>
    </item>
    <item>
      <title>Re: FlexConnect VLAN Based Central Switching - WLC 5500</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746230#M206819</link>
      <description>So that will happen and the reason for this is because your SSID can't do local switching and central switching at the same time.&lt;BR /&gt;You will have to look at getting an onboard SSID that is centrally switched and configure your end device to configure to another SSID that supports local switching.</description>
      <pubDate>Wed, 14 Nov 2018 01:57:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746230#M206819</guid>
      <dc:creator>Jurgens L</dc:creator>
      <dc:date>2018-11-14T01:57:27Z</dc:date>
    </item>
    <item>
      <title>Re: FlexConnect VLAN Based Central Switching - WLC 5500</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746261#M206820</link>
      <description>&lt;P&gt;Here is the traffic flow when that feature enabled on FlexConnect local switching WLAN. In your scenario, I hope that remediation vlan is trunk to WLC (In that case, behavior should similar to step 1). As far as I understand, you see behavior described in step 2. Pls clarify if I understood it wrongly.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/wireless/controller/8-5/Enterprise-Mobility-8-5-Design-Guide/Enterprise_Mobility_8-5_Deployment_Guide/ch7_HREA.html" target="_self"&gt;https://www.cisco.com/c/en/us/td/docs/wireless/controller/8-5/Enterprise-Mobility-8-5-Design-Guide/Enterprise_Mobility_8-5_Deployment_Guide/ch7_HREA.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="pB1_Body1"&gt;Traffic flow on WLANs configured for Local Switching when FlexConnect APs are in connected mode are as follows:&lt;/P&gt;
&lt;UL&gt;
&lt;LI class="pBu1_Bullet1"&gt;&lt;A target="_blank" name="pgfId-1092571"&gt;&lt;/A&gt;If the VLAN is returned as one of the AAA attributes and that VLAN is not present in the FlexConnect AP database, traffic will switch centrally and the client is assigned this VLAN/Interface returned from the AAA server provided that the VLAN exists on the WLC.&lt;/LI&gt;
&lt;LI class="pBu1_Bullet1"&gt;&lt;A target="_blank" name="pgfId-1092573"&gt;&lt;/A&gt;If the VLAN is returned as one of the AAA attributes and that VLAN is not present in the FlexConnect AP database, traffic will switch centrally. If that VLAN is also not present on the WLC, the client will be assigned a VLAN/Interface mapped to a WLAN on the WLC.&lt;/LI&gt;
&lt;LI class="pBu1_Bullet1"&gt;&lt;A target="_blank" name="pgfId-1092575"&gt;&lt;/A&gt;If the VLAN is returned as one of the AAA attributes and that VLAN is present in the FlexConnect AP database, traffic will switch locally.&lt;/LI&gt;
&lt;LI class="pBu1_Bullet1"&gt;&lt;A target="_blank" name="pgfId-1092578"&gt;&lt;/A&gt;If the VLAN is not returned from the AAA server, the client is assigned a WLAN mapped VLAN on that FlexConnect AP and traffic is switched locally.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P class="pB1_Body1"&gt;Traffic flow on WLANs configured for Local Switching when FlexConnect APs are in standalone mode are as follows:&lt;/P&gt;
&lt;UL&gt;
&lt;LI class="pBu1_Bullet1"&gt;&lt;A target="_blank" name="pgfId-1092582"&gt;&lt;/A&gt;If the VLAN returned by the AAA server is not present in the FlexConnect AP database, the client will be put on a default VLAN (that is, a WLAN mapped VLAN on a FlexConnect AP). When the AP connects back, this client is de-authenticated and will switch traffic centrally.&lt;/LI&gt;
&lt;LI class="pBu1_Bullet1"&gt;&lt;A target="_blank" name="pgfId-1092584"&gt;&lt;/A&gt;If the VLAN returned by the AAA server is present in the FlexConnect AP database, the client is placed into a returned VLAN and traffic will switch locally.&lt;/LI&gt;
&lt;LI class="pBu1_Bullet1"&gt;&lt;A target="_blank" name="pgfId-1132299"&gt;&lt;/A&gt;If the VLAN is not returned from the AAA server, the client is assigned a WLAN mapped VLAN on that FlexConnect AP and traffic will switch locally.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;HTH&lt;/P&gt;
&lt;P&gt;Rasika&lt;/P&gt;
&lt;P&gt;*** Pls rate all useful responses ***&lt;/P&gt;</description>
      <pubDate>Wed, 14 Nov 2018 04:05:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3746261#M206820</guid>
      <dc:creator>Rasika Nayanajith</dc:creator>
      <dc:date>2018-11-14T04:05:20Z</dc:date>
    </item>
    <item>
      <title>Re: FlexConnect VLAN Based Central Switching - WLC 5500</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3747754#M206821</link>
      <description>&lt;P&gt;Hi Rasika,&lt;/P&gt;
&lt;P&gt;It has to behave like described in step 1 as the VLAN is presented on the WLC but not on the AP and this feature is enabled. But what is happening that it is being switched locally using the default VLAN (data) presented on the AP.&amp;nbsp; So it is something similar to step 2 but locally not Centrally&amp;nbsp;so it behaves like the feature is not enabled.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To make sure that there is no issue with the VLAN/interface (Remediation) on the WLC, I have changed the WLAN to central switching then both VLANs ( Remediation and Data) work fine centrally.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Also to make sure that ISE is returning the VLAN attribute when it is local breakout (so it is not something like in step 4) I tried to make both VLANs local breakout (both presented on the AP and available locally in the remote site ) then both VLANs worked fine local breakout (as described in step&amp;nbsp;3 above)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;But when the WLAN is local breakout and the Remediation VLAN is not presented on the AP, it is ignoring this feature and breakout locally to the default VLAN presented on the AP&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thought!&lt;BR /&gt;Thanks,&lt;BR /&gt;Sam&lt;/P&gt;</description>
      <pubDate>Fri, 16 Nov 2018 00:16:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3747754#M206821</guid>
      <dc:creator>husam.hasan</dc:creator>
      <dc:date>2018-11-16T00:16:18Z</dc:date>
    </item>
    <item>
      <title>Re: FlexConnect VLAN Based Central Switching - WLC 5500</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3751159#M206822</link>
      <description>&lt;P&gt;It has been solved by sending&amp;nbsp;&lt;SPAN&gt;VLAN ID# from ISE not the VLAN-name despite the VLAN is defined in "FlexConnect VLAN Template"&amp;nbsp; while it is fine to send the VLAN name for the VLAN's that are presented on the AP&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Do not know&amp;nbsp;what is the sense of this special case in&amp;nbsp;&amp;nbsp;FlexConnect VLAN Based Central Switching&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Cheers,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Sam&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Nov 2018 04:21:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-vlan-based-central-switching-wlc-5500/m-p/3751159#M206822</guid>
      <dc:creator>husam.hasan</dc:creator>
      <dc:date>2018-11-22T04:21:40Z</dc:date>
    </item>
  </channel>
</rss>

