cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
709
Views
0
Helpful
1
Replies

ISE 3.1 Radius user login policy

isp3799
Level 1
Level 1

hello.
I am trying to set up ISE 3.1 Radius authentication.

When logging in to the WLC's admin page, the admin account created by ISE is used, and AD users should not be able to log in.
You must be able to use the linked AD account when connecting to the wireless AP and using the wireless service.

How should policy sets be configured in relation to the corresponding policy settings?

1 Accepted Solution

Accepted Solutions

PSM
Level 1
Level 1

Hi,

1. My advise you should use TACACS if you have device admin license on ISE for device administration. Then you create policy in Device Admin Policy set using Internal users as identity store.

2. To setup authentication on wireless you can configure policies in policy set and setup authorization using AD groups or other conditions.

You have provided very less information in the post. If you provide more info would be better. 

 

View solution in original post

1 Reply 1

PSM
Level 1
Level 1

Hi,

1. My advise you should use TACACS if you have device admin license on ISE for device administration. Then you create policy in Device Admin Policy set using Internal users as identity store.

2. To setup authentication on wireless you can configure policies in policy set and setup authorization using AD groups or other conditions.

You have provided very less information in the post. If you provide more info would be better.