<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: WPA2 and Captive Portal for Guest Network in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337897#M986</link>
    <description>&lt;P&gt;Thanks for the reply.&amp;nbsp; We want to be able to utilize WPA2 for our guest network, so that it's encrypted but also require guests to enter in something unique (their email address, name, etc.) so that we know who is connecting.&amp;nbsp; I understand that the guest user could just enter something fictitious, but it's just another measure.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I should have mentioned that we are using Mobility Express, not a controller.&amp;nbsp; Is this possible to accomplish with Mobility Express?&lt;/P&gt;</description>
    <pubDate>Mon, 26 Feb 2018 14:59:34 GMT</pubDate>
    <dc:creator>drudich</dc:creator>
    <dc:date>2018-02-26T14:59:34Z</dc:date>
    <item>
      <title>WPA2 and Captive Portal for Guest Network</title>
      <link>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337874#M984</link>
      <description>&lt;P&gt;We have an Aironet 2802i.&amp;nbsp; Is it possible to configure a combination of WPA2 and Captive Portal for a guest network?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It does not look like it can be setup this way in the GUI, but I didn't know if it's possible to accomplish this in the CLI?&amp;nbsp; Ideally, we want people to enter a pre-shared key to connect to the network and then they would be taken to a Captive Portal and/or forced to go to a web site once connected to put in their info.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks in advance!&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 15:18:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337874#M984</guid>
      <dc:creator>drudich</dc:creator>
      <dc:date>2021-07-05T15:18:23Z</dc:date>
    </item>
    <item>
      <title>Re: WPA2 and Captive Portal for Guest Network</title>
      <link>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337886#M985</link>
      <description>&lt;P&gt;is there any specif reason to use WPA with webauth ??&lt;/P&gt;
&lt;P&gt;There isn't any issue doing that, but if you are going to do this for guest access then you should probably keep it open and use webauth to allow guest access. You don't want to be responsible to setup non-employee devices and you don't want to take on the responsibility of something going wrong with their equipment. Now if you want to use it for internal use, then I guess it is okay, but it defeats the purpose of single sign on.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Normally most of us use only webauth or wpa2 with PSK!!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;as far as your question is concern: it must work with WPA/WPA2 with Layer 3 webauth.&lt;/P&gt;
&lt;P&gt;chekc the combtibility matrix:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/106082-wlc-compatibility-matrix.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/106082-wlc-compatibility-matrix.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Dont forget to rate helpful posts&lt;/P&gt;</description>
      <pubDate>Mon, 26 Feb 2018 14:48:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337886#M985</guid>
      <dc:creator>Sandeep Choudhary</dc:creator>
      <dc:date>2018-02-26T14:48:05Z</dc:date>
    </item>
    <item>
      <title>Re: WPA2 and Captive Portal for Guest Network</title>
      <link>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337897#M986</link>
      <description>&lt;P&gt;Thanks for the reply.&amp;nbsp; We want to be able to utilize WPA2 for our guest network, so that it's encrypted but also require guests to enter in something unique (their email address, name, etc.) so that we know who is connecting.&amp;nbsp; I understand that the guest user could just enter something fictitious, but it's just another measure.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I should have mentioned that we are using Mobility Express, not a controller.&amp;nbsp; Is this possible to accomplish with Mobility Express?&lt;/P&gt;</description>
      <pubDate>Mon, 26 Feb 2018 14:59:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337897#M986</guid>
      <dc:creator>drudich</dc:creator>
      <dc:date>2018-02-26T14:59:34Z</dc:date>
    </item>
    <item>
      <title>Re: WPA2 and Captive Portal for Guest Network</title>
      <link>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337901#M987</link>
      <description>&lt;P&gt;I think yes..but only with CLI as GUI has very limited feature.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;*** I dont see any document about it on cisoc web.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Dont forget to arte helpful posts&lt;/P&gt;</description>
      <pubDate>Mon, 26 Feb 2018 15:01:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337901#M987</guid>
      <dc:creator>Sandeep Choudhary</dc:creator>
      <dc:date>2018-02-26T15:01:19Z</dc:date>
    </item>
    <item>
      <title>Re: WPA2 and Captive Portal for Guest Network</title>
      <link>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337914#M988</link>
      <description>&lt;P&gt;What is the command to do it without Mobility Express?&amp;nbsp; That might help me figure out how to do it in this version.&lt;/P&gt;</description>
      <pubDate>Mon, 26 Feb 2018 15:09:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337914#M988</guid>
      <dc:creator>drudich</dc:creator>
      <dc:date>2018-02-26T15:09:49Z</dc:date>
    </item>
    <item>
      <title>Re: WPA2 and Captive Portal for Guest Network</title>
      <link>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337930#M989</link>
      <description>&lt;P&gt;its not a single command..&lt;/P&gt;
&lt;P&gt;you need to configure the AP via CLI.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. Create a dynamic interface&lt;/P&gt;
&lt;P&gt;2. create a wlan, assign security (Layer 2 and Layer 3 security)&lt;/P&gt;
&lt;P&gt;2. Assign the dynamic interface to wlan.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;you may try this:&lt;/P&gt;
&lt;P&gt;change interface name/wlan name and IP address accordingly.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config interface create test 192&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config interface address dynamic-interface test 192.168.178.5 255.255.255.0 192.168.178.1&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config interface dhcp dynamic-interface test primary 192.168.178.1&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config interface port 1&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="#FF0000"&gt;config wlan create 8 TEST TEST&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config wlan security wpa wpa2 ciphers aes enable 8&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config wlan security wpa akm 802.1x disable&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config wlan security wpa akm psk enable 8&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config wlan security wpa akm psk set-key ascii cisco123 8&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config wlan security web-auth enable 8&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config wlan security web-passthrough email-input enable 8&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config wlan interface 8 test&lt;/FONT&gt;&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;config wlan enable 8&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;
&lt;P&gt;Dont forget to arte ehlpful posts&lt;/P&gt;</description>
      <pubDate>Mon, 26 Feb 2018 15:26:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wpa2-and-captive-portal-for-guest-network/m-p/3337930#M989</guid>
      <dc:creator>Sandeep Choudhary</dc:creator>
      <dc:date>2018-02-26T15:26:23Z</dc:date>
    </item>
  </channel>
</rss>

