07-02-2013 01:19 AM - edited 03-10-2019 08:36 PM
We are trying to configure downloadable ACL on ACS 5.4 for wireless users with [WPA2][Auth(802.1X)] authentication. Users are able to authenticate with ACS 5.4 server even in authentication log it is showing configured DACL is getting applied but applied acl is not taking effect on user i.e we have confgured some restrictions in DACL still user is able to access everything.
Attache is the screenshot of passd authentication with DACL.
Need assistance for the same.
07-02-2013 02:04 AM
The screen shot shows that DACL being pushed from the ACS. I'd like to check if you've "AAA OVERRIDE" option enabled under WLC > WLAN > edit > Advanced > AAA Override.
~BR
Jatin Katyal
**Do rate helpful posts**
07-02-2013 02:06 AM
Yes AAA Override option is already selected in WLC.
07-02-2013 05:34 AM
Yusuf,
Please verify if you've configured in the same way.
Policy Elements > Network Access > Authorization Profile, please use the following configuration:
Dictionary Type: Radius-Cisco Airespace
Attribute name: Airespace-ACL-NAme
Attribute Type: String
Value=ACL-WLC ( This would be the name of the ACL that you've created on the WLC)
ACLs on Wireless LAN Controller Configuration Example
~BR
Jatin Katyal
**Do rate helpful posts**
07-07-2013 07:54 PM
Hello,
May this link will help you:-
http://www.cisco.com/en/US/products/ps9911/products_tech_note09186a0080bb8100.shtml#p40
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide