cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1785
Views
15
Helpful
2
Replies

authentication event server dead

williamtan
Level 1
Level 1

For switch, we have command 'authentication event server dead action reinitialize vlan 10' to authorized/fail-open to vlan 10 when all Radius servers become unavailable. How about WLC and ASA for VPN? What is the backup if all the radius server is unavailable?

2 Replies 2

Oliver Laue
Level 4
Level 4

For WLC: a wpa2/3-enterprise SSID can't have a fallback because the Authentication needs to be done. There are some Options for local auth in Flex-Connect but the configuration is a mess.

For ASA: there should be a mechanism to fallback to local but I don't have access to an ASA right now.

Is it possible to add AD as radius server in WLC as backup plan?