09-06-2018 11:56 PM
What will happen if a (self-registration) guest portal is configured in an ISE deployment and is assigned to Gigabitethernet 1, but Gigabitethernet 1 is not configured on all PSN nodes in the ISE deployment?
Will this work, and if so, is this a supported setup?
Thanks in advance,
Vincent
Solved! Go to Solution.
09-07-2018 05:51 AM - edited 09-07-2018 05:52 AM
I have done a couple deployments like this in the past and there are no issues with it.
I used a DNS record that pointed towards the two PSNs that had a second interface in the guest DMZ. Just be sure you have a DNS that can resolve the guest portal URLs. Many times I have seen guest networks that just use public DNS.
09-07-2018 05:45 AM
I haven't tested this out, but I would think as long as the PSNs you are sending guest traffic to have Gig1 enabled you should be okay. The redirect goes to the PSN that authenticated that MAB session so you have control of which PSNs are your "guest" PSNs.
09-07-2018 05:51 AM - edited 09-07-2018 05:52 AM
I have done a couple deployments like this in the past and there are no issues with it.
I used a DNS record that pointed towards the two PSNs that had a second interface in the guest DMZ. Just be sure you have a DNS that can resolve the guest portal URLs. Many times I have seen guest networks that just use public DNS.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide