05-21-2013 06:42 PM - edited 03-10-2019 08:27 PM
Existing environment has a dedicated guest controller. Principal would like to retain the guest controller in the DMZ and open ports for CWA to ISE inside the firewall. The question is on configuration of the wireless LAN. Should the foreign controller be configured for MAC auth? Obviously the anchor would need to be but not sure about the foreign.
05-25-2013 09:08 AM
When you have anchor/foreign, the web auth traffic always go to the anchor, so with CWA, the traffic from the anchor to the ISE will need to be permitted . go through the following link this may of help
05-28-2013 05:45 AM
Gotcha. That doc doesn't answer my question, but some of the questions in the doc do talk about anchor/foreign setup. I will tests it later.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide