07-28-2016 01:04 AM - edited 03-10-2019 11:57 PM
Dear Sir,
MS AD Server <--> ISE2.0 <---> CT5508 <--> CAP3702i
I have a AD group: StaffComputer, and a SSID: Guest
Can I configure WPA2-PSK in the ISE2.0 for SSID: Guest, and exclude the StaffComputer?
In other words, staff's computers can not access network by the SSID: Guest.
Thanks a lot.
Solved! Go to Solution.
07-28-2016 09:58 AM
No, since WPA2-PSK is only based on a pre-shared key between the client and the WLC, the ISE is not involved at all, and can't control anything.
07-28-2016 09:58 AM
No, since WPA2-PSK is only based on a pre-shared key between the client and the WLC, the ISE is not involved at all, and can't control anything.
11-07-2016 12:26 AM
Hi,
If "Staff Computers" are Windows and joined to a Domain Controller, you can can create a GPO and blacklist the Guest ssid, so corporate devices will not be able to connect to this ssid.
http://www.grouppolicy.biz/2010/03/how-to-use-group-policy-to-blackwhite-list-wireless-networks-in-vista-windows-7/
Best regards,
Christos
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide