05-11-2015 10:33 AM - edited 03-10-2019 10:43 PM
Hi,
I am after building sponsored guest access for wireless guests in ISE running on software release 1.3.
I wonder if there is a way to keep the guest on the initial vlan after successful authentication and grant him Internet-Only access. I mean to say, I do not want to assign him to different vlan and restrict his access by an ACL applied on Layer-3 Vlan Interface.
I could have done it by dACL, if the guest is connecting through the wired network, but because Wireless Controller do not accepts dACLs, I am not aware of any way to do it without changing vlan
Appreciate your idea.
Mike
Solved! Go to Solution.
05-12-2015 07:13 AM
Sure, just create the ACL you wan't to use for your guests directly on your WLC, and then reference the name of that ACL in your authorization profile in the option called "Airespace ACL Name".
05-12-2015 07:13 AM
05-12-2015 12:36 PM
Thanks Jan. Appreciate your pictorial answer.
05-14-2015 06:52 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide