06-18-2016 06:13 AM - edited 03-10-2019 11:52 PM
Hi All,
I am going to install ise 2.0 in one of the enterprise network which has many branch office routed , i have few queries regarding guest user authorisation policy.
If authorisation profile is configured with Dynamic ACL where can i give vlan id details for guest users consider vlan id's for guest users are different for each branch offices? how guest users will get IP address from rite vlans?
Solved! Go to Solution.
06-18-2016 10:09 AM
Hi
If vlan is different on each location, you need to do local switching on AP instead of central switching within the WLC. This mode is called Flexconnect.
In combination with ISE and Flexconnect CWA, you some documentations available on Cisco website.
I copy right here a link of one step by step config:
http://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/116087-configure-cwa-wlc-ise-00.html
Hope this answer your question.
PS: Please don't forget to rate and mark as correct answer if this solved your issue
06-18-2016 10:09 AM
Hi
If vlan is different on each location, you need to do local switching on AP instead of central switching within the WLC. This mode is called Flexconnect.
In combination with ISE and Flexconnect CWA, you some documentations available on Cisco website.
I copy right here a link of one step by step config:
http://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/116087-configure-cwa-wlc-ise-00.html
Hope this answer your question.
PS: Please don't forget to rate and mark as correct answer if this solved your issue
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide