02-08-2011 08:43 AM - edited 03-10-2019 05:48 PM
I have a wireless service set that I have configured on ACS 5.2. It basically handles radius requests comming from wireless controllers. I have a special SSID that I only want specific users to log into. In my service set, how can I add the SSID as a condition?
02-08-2011 05:52 PM
You need to create a SSID set under the policy elements by going to end-station filter >> create >> CLI/DNIS > DNIS=*SSID
Save changes.
Go to access-policy >> network access service >> authorization >> customize >> move the end-station filter on the right end side >> ok
Now if you have users on the AD then from the customize tab you need to select and move one more attribute AD1:Externals-groups >> ok
Edit the policy and fetch the end-station filter and external groups you created before.
Rgds, Jatin
Do rate helpful posts~
02-28-2011 08:01 AM
Hi Jatin,
That was very helpful! Thank you. Another question regarding the same thing. Would it be better to create a new Access Service for this or should I just add an additional authorization Rule in my current wirless policy and will it matter on the order my authorization policies are in? I currently have a wireless access server that has 2 authorization policies, one for mac addresses and one for AD groups. I want to add another authorization but only have it apply to a specific SSID.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide