cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
569
Views
0
Helpful
2
Replies

ACS Service set for specific SSIDs

jlhainy
Level 2
Level 2

I have a wireless service set that I have configured on ACS 5.2.  It basically handles radius requests comming from wireless controllers.  I have a special SSID that I only want specific users to log into.  In my service set, how can I add the SSID as a condition?

2 Replies 2

Jatin Katyal
Cisco Employee
Cisco Employee

You need to create a SSID set under the policy elements by going to end-station filter >> create >> CLI/DNIS > DNIS=*SSID

Save changes.


Go to access-policy >> network access service >> authorization >> customize >> move the end-station filter on the right end side >> ok

Now if you have users on the AD then from the customize tab you need to select and move one more attribute AD1:Externals-groups >> ok

Edit the policy and fetch the end-station filter and external groups you created before.



Rgds, Jatin



Do rate helpful posts~

~Jatin

Hi Jatin,

That was very helpful!  Thank you.  Another question regarding the same thing.  Would it be better to create a new Access Service for this or should I just add an additional authorization Rule in my current wirless policy and will it matter on the order my authorization policies are in?  I currently have a wireless access server that has 2 authorization policies, one for mac addresses and one for AD groups.  I want to add another authorization but only have it apply to a specific SSID.