<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Mixed Mode SSID in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474171#M293445</link>
    <description>&lt;P&gt;Thanks for the information, but just to make sure I'm not misunderstanding, the group policy itself will not determine whether the client should breakout locally from the SSID or tunnel back to the MX, it only sets the local vlan override, L3/7 FW and traffic shaping.&lt;/P&gt;&lt;P&gt;If that is the case, then I guess &lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/340"&gt;@Philip D'Ath&lt;/A&gt; can change his 99% too 100%. &lt;SPAN class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;&lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Thanks all for the responses. I'd raise a feature request but suspect I'd be the only client requesting it.&lt;/P&gt;</description>
    <pubDate>Mon, 03 Jul 2023 07:29:33 GMT</pubDate>
    <dc:creator>sysint-12</dc:creator>
    <dc:date>2023-07-03T07:29:33Z</dc:date>
    <item>
      <title>Mixed Mode SSID</title>
      <link>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474167#M293441</link>
      <description>&lt;P&gt;I'm trying to reduce the number of SSIDs that our company utilises. We are in the process of deploying a new ISE service, and so we should be able to combine 4 SSIDs into one, by getting ISE to assign the relevant local VLAN that clients should breakout on depending on the domain/user/group that is authenticating.&lt;/P&gt;&lt;P&gt;However, that still leaves a few SSIDs which either authenticate using passphrases or need to breakout centrally at an MX appliance.&lt;/P&gt;&lt;P&gt;Is there anyway to have an SSID which can breakout both locally on a vlan and centrally at an MX depending on either authentication or device type or by TAG associated with the AP the devices are connecting to?&lt;/P&gt;</description>
      <pubDate>Thu, 29 Jun 2023 09:42:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474167#M293441</guid>
      <dc:creator>sysint-12</dc:creator>
      <dc:date>2023-06-29T09:42:40Z</dc:date>
    </item>
    <item>
      <title>Re: Mixed Mode SSID</title>
      <link>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474168#M293442</link>
      <description>&lt;DIV&gt;&lt;SPAN&gt;You can create policies in ISE to assign different VLANs. This will depend on how you configure the politics of course. This example is for the Catalyst 9800, but you can reproduce it for Meraki.&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV&gt;&lt;SPAN&gt;This is something that depends more on ISE than Meraki itself.&lt;/SPAN&gt;&lt;/DIV&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/wireless/catalyst-9800-series-wireless-controllers/216130-configure-catalyst-9800-wlc-ipsk-with-ci.html" target="_blank" rel="nofollow noopener noreferrer"&gt;https://www.cisco.com/c/en/us/support/docs/wireless/catalyst-9800-series-wireless-controllers/216130-configure-catalyst-9800-wlc-ipsk-with-ci.html&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 29 Jun 2023 11:25:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474168#M293442</guid>
      <dc:creator>aleabrahao</dc:creator>
      <dc:date>2023-06-29T11:25:17Z</dc:date>
    </item>
    <item>
      <title>Re: Mixed Mode SSID</title>
      <link>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474169#M293443</link>
      <description>&lt;P&gt;&amp;gt;&lt;SPAN&gt;Is there anyway to have an SSID which can breakout both locally on a vlan and centrally at an MX&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;I'm 99% sure the answer is no.  The SSID must either be configured for tunnelling to an MX, or not.  It is not a setting done per client.&lt;/P&gt;</description>
      <pubDate>Thu, 29 Jun 2023 20:23:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474169#M293443</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2023-06-29T20:23:31Z</dc:date>
    </item>
    <item>
      <title>Re: Mixed Mode SSID</title>
      <link>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474170#M293444</link>
      <description>&lt;P&gt;have your RADIUS server return the filter-id attribute which will correspond with  the name  of a locally defined group policy that is configured on the Meraki network. You can perform wireless VLAN overrides and traffic shaping,  L3 and L7 FW rules in this manner, all locally. For your central MX you can define the group policy and manually bind that policy to the interface.&lt;/P&gt;</description>
      <pubDate>Fri, 30 Jun 2023 15:46:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474170#M293444</guid>
      <dc:creator>DainBrammage</dc:creator>
      <dc:date>2023-06-30T15:46:25Z</dc:date>
    </item>
    <item>
      <title>Re: Mixed Mode SSID</title>
      <link>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474171#M293445</link>
      <description>&lt;P&gt;Thanks for the information, but just to make sure I'm not misunderstanding, the group policy itself will not determine whether the client should breakout locally from the SSID or tunnel back to the MX, it only sets the local vlan override, L3/7 FW and traffic shaping.&lt;/P&gt;&lt;P&gt;If that is the case, then I guess &lt;A href="https://community.meraki.com/t5/user/viewprofilepage/user-id/340"&gt;@Philip D'Ath&lt;/A&gt; can change his 99% too 100%. &lt;SPAN class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;&lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Thanks all for the responses. I'd raise a feature request but suspect I'd be the only client requesting it.&lt;/P&gt;</description>
      <pubDate>Mon, 03 Jul 2023 07:29:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474171#M293445</guid>
      <dc:creator>sysint-12</dc:creator>
      <dc:date>2023-07-03T07:29:33Z</dc:date>
    </item>
    <item>
      <title>Re: Mixed Mode SSID</title>
      <link>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474172#M293446</link>
      <description>&lt;P&gt;&amp;gt;&lt;SPAN&gt; the group policy itself will not determine whether the client should breakout locally from the SSID or tunnel back to the MX, it only sets the local vlan override, L3/7 FW and traffic shaping.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;That is the case.&lt;/P&gt;</description>
      <pubDate>Mon, 03 Jul 2023 22:03:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/mixed-mode-ssid/m-p/5474172#M293446</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2023-07-03T22:03:23Z</dc:date>
    </item>
  </channel>
</rss>

