<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACL migration from WLC to Meraki Group policies for ISE posturing and CoA in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/acl-migration-from-wlc-to-meraki-group-policies-for-ise/m-p/5464994#M290722</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;ISE is used for posturing.&lt;/P&gt;&lt;P&gt;During migration from Cisco WLC to Meraki Wireless, existing setup has ACLs created in WLC. Now we are configuring similar group policies in Meraki. Using Airspace ACL attribute for deciding the ACL.&lt;BR /&gt; Do we have to keep permit and deny as it is in WLC or need to inverse them in Meraki?&lt;BR /&gt;Confusion is because of redirect ACLs&lt;BR /&gt;Please clarify.&lt;/P&gt;</description>
    <pubDate>Fri, 08 Jul 2022 16:50:32 GMT</pubDate>
    <dc:creator>Madhan kumar G</dc:creator>
    <dc:date>2022-07-08T16:50:32Z</dc:date>
    <item>
      <title>ACL migration from WLC to Meraki Group policies for ISE posturing and CoA</title>
      <link>https://community.cisco.com/t5/wireless/acl-migration-from-wlc-to-meraki-group-policies-for-ise/m-p/5464994#M290722</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;ISE is used for posturing.&lt;/P&gt;&lt;P&gt;During migration from Cisco WLC to Meraki Wireless, existing setup has ACLs created in WLC. Now we are configuring similar group policies in Meraki. Using Airspace ACL attribute for deciding the ACL.&lt;BR /&gt; Do we have to keep permit and deny as it is in WLC or need to inverse them in Meraki?&lt;BR /&gt;Confusion is because of redirect ACLs&lt;BR /&gt;Please clarify.&lt;/P&gt;</description>
      <pubDate>Fri, 08 Jul 2022 16:50:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/acl-migration-from-wlc-to-meraki-group-policies-for-ise/m-p/5464994#M290722</guid>
      <dc:creator>Madhan kumar G</dc:creator>
      <dc:date>2022-07-08T16:50:32Z</dc:date>
    </item>
    <item>
      <title>Re: ACL migration from WLC to Meraki Group policies for ISE posturing and CoA</title>
      <link>https://community.cisco.com/t5/wireless/acl-migration-from-wlc-to-meraki-group-policies-for-ise/m-p/5464995#M290723</link>
      <description>&lt;P&gt;Meraki does not use the concept of redirect ACL.  This document outlines your use case &lt;A href="https://documentation.meraki.com/MR/Encryption_and_Authentication/Device_Posturing_using_Cisco_ISE" target="_blank" rel="nofollow noopener noreferrer"&gt;https://documentation.meraki.com/MR/Encryption_and_Authentication/Device_Posturing_using_Cisco_ISE&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Basically you need to choose the ISE portal authentication and the URL that is passed from ISE will be used.&lt;BR /&gt;Don't forget to put ISE IP's in the walled garden to avoid having the redirect loop (which kind of acts as your preauth ACL).&lt;BR /&gt;&lt;BR /&gt;If you apply any ACL AFTER authentication you will have to pass Filter-ID or Airespace-ACL which have regular permits and denies and will not be inverted.&lt;/P&gt;</description>
      <pubDate>Sat, 09 Jul 2022 17:42:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/acl-migration-from-wlc-to-meraki-group-policies-for-ise/m-p/5464995#M290723</guid>
      <dc:creator>joey.debra</dc:creator>
      <dc:date>2022-07-09T17:42:28Z</dc:date>
    </item>
  </channel>
</rss>

