<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FlexConnect Local Authentication in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/flexconnect-local-authentication/m-p/2492679#M68964</link>
    <description>&lt;P&gt;Hi Guys,&lt;/P&gt;&lt;P&gt;In the process of implementing a Virtual WLC. Just want to find out about FlexConnect Local authentication process. My question is am I able to configure FlexConnect groups to send client athentication (PEAP Authentication)&amp;nbsp;requests to a local RADIUS (MS NPS)&amp;nbsp;server when&amp;nbsp;LWAPs lose Connectivity to the vWLC.&lt;/P&gt;&lt;P&gt;Thanks in Advance&lt;/P&gt;</description>
    <pubDate>Mon, 05 Jul 2021 07:23:37 GMT</pubDate>
    <dc:creator>CHANDIMAL RATNAYAKE</dc:creator>
    <dc:date>2021-07-05T07:23:37Z</dc:date>
    <item>
      <title>FlexConnect Local Authentication</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-local-authentication/m-p/2492679#M68964</link>
      <description>&lt;P&gt;Hi Guys,&lt;/P&gt;&lt;P&gt;In the process of implementing a Virtual WLC. Just want to find out about FlexConnect Local authentication process. My question is am I able to configure FlexConnect groups to send client athentication (PEAP Authentication)&amp;nbsp;requests to a local RADIUS (MS NPS)&amp;nbsp;server when&amp;nbsp;LWAPs lose Connectivity to the vWLC.&lt;/P&gt;&lt;P&gt;Thanks in Advance&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 07:23:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-local-authentication/m-p/2492679#M68964</guid>
      <dc:creator>CHANDIMAL RATNAYAKE</dc:creator>
      <dc:date>2021-07-05T07:23:37Z</dc:date>
    </item>
    <item>
      <title>FlexConnect Groups allow you</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-local-authentication/m-p/2492680#M68965</link>
      <description>&lt;P&gt;FlexConnect Groups allow you to define the primary and or secondary radius in case the AP goes into standalone mode.&lt;/P&gt;&lt;H3 class="p_H_Head3"&gt;FlexConnect Groups and Backup RADIUS Servers&lt;/H3&gt;&lt;P class="pB1_Body1"&gt;You can configure the controller to allow a FlexConnect access point in standalone mode to perform full 802.1X authentication to a backup RADIUS server. You can configure a primary backup RADIUS server or both a primary and secondary backup RADIUS server. These servers can be used when the FlexConnect access point is in of these two modes: standalone or connected.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Mar 2014 01:43:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-local-authentication/m-p/2492680#M68965</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2014-03-11T01:43:06Z</dc:date>
    </item>
    <item>
      <title>Thanks for the Quick response</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-local-authentication/m-p/2492681#M68966</link>
      <description>&lt;P&gt;Thanks for the Quick response Scott. I've already configured Primary and Secondary RADIUS servers in my FlexConnect group. Is that all I have to do to allow APs to forward 802.1X requests when WLC is unavailable? Also I'm using MS NPS as my RADIUS. Do I have to create RADIUS client entries for all APs in the FlexConnect group?&lt;/P&gt;&lt;P&gt;Thanks in Advance&lt;/P&gt;</description>
      <pubDate>Tue, 11 Mar 2014 01:51:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-local-authentication/m-p/2492681#M68966</guid>
      <dc:creator>CHANDIMAL RATNAYAKE</dc:creator>
      <dc:date>2014-03-11T01:51:51Z</dc:date>
    </item>
    <item>
      <title>You do not have to create a</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-local-authentication/m-p/2492682#M68967</link>
      <description>You do not have to create a AAA client for each FlexConnect access point. Using FlexConnect Groups will define the radius when in standalone.  FlexConnect groups take care of that. Old autonomous way you need to have each AP defined as a AAA client in radius. 

Here is a good read

&lt;A href="https://netboyers.wordpress.com/category/wlc/" target="_blank"&gt;https://netboyers.wordpress.com/category/wlc/&lt;/A&gt;</description>
      <pubDate>Tue, 11 Mar 2014 05:02:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-local-authentication/m-p/2492682#M68967</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2014-03-11T05:02:39Z</dc:date>
    </item>
    <item>
      <title>Hi Scott,I enabled Local</title>
      <link>https://community.cisco.com/t5/wireless/flexconnect-local-authentication/m-p/2492683#M68968</link>
      <description>&lt;P&gt;Hi Scott,&lt;/P&gt;&lt;P&gt;I enabled Local Authentication (PEAP) on a FlexConnect scenario and obviously not working. After just reading your post, I got the reason: requests are sourced by AP and this AP is not registered with the Radius Server. Thank you!&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;About using FlexConnect Groups not requiring the previous AP&amp;amp;RADIUS Server registration. How’s this possible?&lt;/P&gt;&lt;P&gt;Supposing AP transits in standalone mode and Local Authentication is enabled, BUT there is no registration on the RADIUS server for the authenticating AP, is this AP going to use the WLC IP&amp;nbsp;from its configuration ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Mar 2014 09:23:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/flexconnect-local-authentication/m-p/2492683#M68968</guid>
      <dc:creator>Florin Barhala</dc:creator>
      <dc:date>2014-03-11T09:23:59Z</dc:date>
    </item>
  </channel>
</rss>

