12-05-2021 02:45 AM
Dear All,
We are facing couple of issue at customer end.
We have deployed Anyconnect (4.10.x) with NAM module for Cisco ISE posturing.
Client has a requirement to connect the corporate SSID when it is in range and when they want to switch to other SSIDs/Network they can switch as well manually and they also want to keep the corporate SSID hidden.
What happens sometimes, it works well, but sometimes it is auto connecting to some other SSIDs even corporate is in range and sometimes it stuck connecting other network.
How we can prefer the corporate SSID and when customer need to switch other SSID, they can easily do it even though the corporate SSID in range.
Cisco ISE version 3.0.x with Patch 2
12-05-2021 05:26 AM
You need to focus on the following settings within your client's NAM profile:
Hidden Network—Allow a connection to a network even if it is not broadcasting its SSID.
Corporate Network—Forces a connection to a network configured as Corporate first, if one is in proximity. When a corporate network uses a non-broadcasting (hidden) SSID, and is configured as hidden, the Network Access Manager actively probes for hidden SSIDs and establishes the connection when a corporate SSID is in range.
For the corporate network are both of those settings enabled? Have you attempted to generate a dart bundle and/or check NAM logs?
12-05-2021 05:38 AM
Dear Mike,
Hidden SSID is the corporate SSID.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide