<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic 9800 ACL implementation per SSID or per User session in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/9800-acl-implementation-per-ssid-or-per-user-session/m-p/4406381#M229572</link>
    <description>&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;currently we have 9800 vwlc integrated with ISE. the requirement is that when mobile connects to SSID ((flexconnect SSID with Layer2 WPA2 and 802.1x), it can access only internet and should connect to internal resources except for dns and dhcp purpose.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i tried following but nothing is working.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1.configured acl (for testing acl is permit ip any any) on 9800vwlc and called this ACL using airspace-acl as well as filter id but after i apply it to authorization policy, user is not able to connect to SSID .&lt;/P&gt;&lt;P&gt;2. configured acl (for testing acl is permit ip any any) on 9800 and configure WLAN ACL (Configuration &amp;gt; Policy &amp;gt; Policy Profile &amp;gt; Access Policies (tab)&amp;gt; WLAN ACL) and point it to ACL configured on same WLC. and i am getting incorrect ACL error.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;is it possible to configure ACL per SSID or per user session when user is authenticated via 802.1x.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Naray&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 05 Jul 2021 20:19:48 GMT</pubDate>
    <dc:creator>nareh84</dc:creator>
    <dc:date>2021-07-05T20:19:48Z</dc:date>
    <item>
      <title>9800 ACL implementation per SSID or per User session</title>
      <link>https://community.cisco.com/t5/wireless/9800-acl-implementation-per-ssid-or-per-user-session/m-p/4406381#M229572</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;currently we have 9800 vwlc integrated with ISE. the requirement is that when mobile connects to SSID ((flexconnect SSID with Layer2 WPA2 and 802.1x), it can access only internet and should connect to internal resources except for dns and dhcp purpose.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i tried following but nothing is working.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1.configured acl (for testing acl is permit ip any any) on 9800vwlc and called this ACL using airspace-acl as well as filter id but after i apply it to authorization policy, user is not able to connect to SSID .&lt;/P&gt;&lt;P&gt;2. configured acl (for testing acl is permit ip any any) on 9800 and configure WLAN ACL (Configuration &amp;gt; Policy &amp;gt; Policy Profile &amp;gt; Access Policies (tab)&amp;gt; WLAN ACL) and point it to ACL configured on same WLC. and i am getting incorrect ACL error.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;is it possible to configure ACL per SSID or per user session when user is authenticated via 802.1x.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Naray&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 20:19:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800-acl-implementation-per-ssid-or-per-user-session/m-p/4406381#M229572</guid>
      <dc:creator>nareh84</dc:creator>
      <dc:date>2021-07-05T20:19:48Z</dc:date>
    </item>
    <item>
      <title>Re: 9800 ACL implementation per SSID or per User session</title>
      <link>https://community.cisco.com/t5/wireless/9800-acl-implementation-per-ssid-or-per-user-session/m-p/4406630#M229588</link>
      <description>&lt;P&gt;What version of code are you using?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;WLAN ACL is working fine for us on 17.5.1 - applied to the policy profile - WLAN IPv4 ACL on Access Policies tab on the GUI.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On CLI:&lt;BR /&gt;wireless profile policy &amp;lt;policyname&amp;gt;&lt;BR /&gt;&amp;nbsp;ipv4 acl &amp;lt;acl-name&amp;gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 May 2021 13:43:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800-acl-implementation-per-ssid-or-per-user-session/m-p/4406630#M229588</guid>
      <dc:creator>Rich R</dc:creator>
      <dc:date>2021-05-21T13:43:05Z</dc:date>
    </item>
    <item>
      <title>Re: 9800 ACL implementation per SSID or per User session</title>
      <link>https://community.cisco.com/t5/wireless/9800-acl-implementation-per-ssid-or-per-user-session/m-p/4406656#M229590</link>
      <description>&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;version is&amp;nbsp;17.03.01&lt;/P&gt;</description>
      <pubDate>Fri, 21 May 2021 14:18:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800-acl-implementation-per-ssid-or-per-user-session/m-p/4406656#M229590</guid>
      <dc:creator>nareh84</dc:creator>
      <dc:date>2021-05-21T14:18:42Z</dc:date>
    </item>
    <item>
      <title>Re: 9800 ACL implementation per SSID or per User session</title>
      <link>https://community.cisco.com/t5/wireless/9800-acl-implementation-per-ssid-or-per-user-session/m-p/4406684#M229592</link>
      <description>&lt;P&gt;Can't remember if we tried it on 17.3.1.&lt;/P&gt;&lt;P&gt;You could try 17.5.1 or at least 17.3.3.&lt;/P&gt;</description>
      <pubDate>Fri, 21 May 2021 15:07:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800-acl-implementation-per-ssid-or-per-user-session/m-p/4406684#M229592</guid>
      <dc:creator>Rich R</dc:creator>
      <dc:date>2021-05-21T15:07:40Z</dc:date>
    </item>
  </channel>
</rss>

