10-07-2020 04:19 AM
Hi
Have a Foreign/Anchor set on DMZ, got a free wifi service by a 3rd party.
There is no authentication configured, just a EOIP tunnel.
There is no profiling enabled, no radius, no helper address point to the ISE.
These Anchors point to their relevant Interface which is on a 172.17.*.*,
But I'm seeing endpoints on the ISE from these ranges I'm using.
I'm just looking to see where this traffic is coming from.
ise 2.2 patch 17
Solved! Go to Solution.
10-07-2020 07:08 AM
I assume you have another SSID on these controllers that is using ISE for something. In your global Radius Accounting configuration on the WLC, check to make sure you do not have the checkbox enabled for network user. When it is enabled globally, it will send accounting records to ISE for ANY device that connects to ANY SSID. And if ISE receives an accounting record for a device, it will store it and count it as an endpoint.
10-07-2020 07:08 AM
I assume you have another SSID on these controllers that is using ISE for something. In your global Radius Accounting configuration on the WLC, check to make sure you do not have the checkbox enabled for network user. When it is enabled globally, it will send accounting records to ISE for ANY device that connects to ANY SSID. And if ISE receives an accounting record for a device, it will store it and count it as an endpoint.
10-08-2020 01:59 AM
cheers for that
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide