06-18-2025 11:43 PM
As far as I know, when I use cwa that floats a redirection page like google sso
I understand that you use OPEN + MAB.
I'm trying to set the authentication method of SSID to 802.1X and two-factor authentication through google so, is it possible?
06-22-2025 01:53 PM
Not sure if that is feasible in any situation, since 802.1X authentication is very chatty and doesn't happen in a single Request/Response - you would need a system that can keep track of state and do the SSO. ISE supports SAML for the Admin portals but not for Policy Set Authorization workflows. In SSO there is quite a bit of setup (Federation Metadata exchange) and that doesn't exist in ISE for this use case.
SSO works better at the application authentication level (e.g. app web logins), than it does at the network authentication level (i.e. client connecting to network).
06-22-2025 04:56 PM
I'm currently using PSK + google SSO
If you enter the PSK correctly when you connect the wireless, you will get a google SSO portal page.
By the way, I was wondering if it would work even if I changed it to 802.1X instead of PSK.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide