cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
480
Views
0
Helpful
4
Replies

802.1x limit access ACS 5.5

pawelzubkowicz
Level 1
Level 1

Hi,

mygoal is to limit access to WiFi network from one device per one user. I'm using 802.1x, PKI infrastructure, Cisco ACS and Aruba controller.

I have enabled Radius accounting on Aruba controller and ACS. I can check logged in users on ACS system in System Administration ->Users->Purge User Sessions.

My question is, can I use this information somehow to prohibit access for user name who is already connected to wifi network?

 

Thanks in advance

4 Replies 4

Saurav Lodh
Level 7
Level 7

http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_user_guide_chapter09186a008007e6a6.html#366352

@salodh

thanks for link but this one is regarding ACS older than 5.x, despite this you point out right direction.

Since I'm using 802.1x and PKI how can I assign specific user from certificate to ACS group for limiting max sessions?

 

Thanks!

pawelzubkowicz
Level 1
Level 1

Hi,

I have found solution in this link https://supportforums.cisco.com/discussion/11488141/acs-53-how-do-i-associate-identity-group-ad-group

 

Thanks

abwahid
Level 4
Level 4

Hi,

please go through the below post for the same query

https://supportforums.cisco.com/discussion/11488141/acs-53-how-do-i-associate-identity-group-ad-group