cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2263
Views
5
Helpful
5
Replies

ISE 2.0 Guest Authorization

Mostafa.Ragab
Level 1
Level 1

Hello All,

I have configured a Guest SSID users for Cisco 5520 WLC to be redirected to ISE 2.0 Guest portal.

The redirection phase done successfully but when the Guest try to re authenticate via the Guest portal the authorization fails with log no 11213 "No response received from Network Access Device after sending a Dynamic Authorization request".

Note, That my authorization policy checks that the user is in the Guest users groups and that he is using the right guest SSID ID and that the flow is a guest flow. (A snap shoots for the authorization rule and ISE log is attached)

Any advice what should i check for?

Thanks in advance :)

1 Accepted Solution

Accepted Solutions

Peter Koltl
Level 7
Level 7

Is CoA enabled on WLC (RADIUS server page)?

View solution in original post

5 Replies 5

Gagandeep Singh
Cisco Employee
Cisco Employee

Is ISE and WLC on different subnet.  I believe guest portal flow should work as expected even you are getting this error.

We do have a bug CSCux37498    CoA with wlc 8.1.131.0 shows error message on ISE server

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCux37498/?reffering_site=dumpcr

Fixed in 8.3 code of WLC.

Regards

Gagan

ps : rate as correct if it helps!!!!

I upgraded the WLC image but the problem still exist.

Peter Koltl
Level 7
Level 7

Is CoA enabled on WLC (RADIUS server page)?

No it wasn't enabled. I enabled it and it worked.

Thanks for your support.

Zain Khan
Level 1
Level 1

Hi

 

in order to get User to authenticate you must've to think mechanism how WLC redirects and allow user over wifi and over internet.

 

you must have to configure Access list under Security tab Access list control. for more assistance share your network design via email/PM


Zain Khan
https://www.linkedin.com/in/forzain/
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: