ISE question - per wlan radius methods
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-05-2018 07:00 AM - edited 02-21-2020 10:52 AM
I just ran into this, and have not yet scoured the forums, or the docs.
we have ISE authenticating our internal wlan. We do not have LEAP enabled as an accepted protocol, and have no plans of enabling it.
however, we do have scanners and printers in use in our warehouses, between 500-600 total, that are using LEAP. I do not know the capabilities of these devices, but reconfiguring them to use PEAP would be a nightmare. These devices are used on a separate wlan with mac filtering.
my question is:
within ISE, can I set up a radius method that includes LEAP, that will only authenticate on this wlan, and continue to use our current (which does not include LEAP) for our internal wlan? Just different methods, per wlan. I know the policy flow would have to match the wlan, then call the appropriate method.
If anyone knows offhand if this is possible, I will do the research and figure it out. I'm just wondering if this can be done. Again, just ran into this and trying to figure out something, because I do not want to accept LEAP on our internal wlan.
Thanks - chris
- Labels:
-
Other NAC
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-05-2018 07:31 AM
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
04-05-2018 07:46 AM
very good, thanks Jan. That's really all I needed to know, so I didn't spend a whole bunch of time looking into it if it couldn't be done. I'll get to researching and digging through the docs.
thanks again, I appreciate it.
Chris
