01-24-2021 09:38 PM
Dear everyone,
My system has WLC, ISE, PI. My operator IT want to manage themselves all the APs that are installed inside their building.
On the WLC, we have AP group based on location but I don't know how to limit admin access to a specific AP group.
Could you please share your experience on this issue?
Thank you so much!
Solved! Go to Solution.
01-26-2021 11:44 PM
01-24-2021 10:23 PM
01-25-2021 08:01 AM
HI @phuoc.nt
As @Mohammed al Baqari mentioned ISE controls access to WLC in the form of the vertical menus at WLC, so there's no way to limit access to specific AP group or any other sub-menu.
Check this guide also (Device Administration of Cisco WLC using TACACS+)
01-25-2021 01:35 PM
I assume you are talking about Device Administration with TACACS and not RADIUS for network access.
See https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine-24/215125-device-administration-of-cisco-wlc-using.html where it shows you can only control access to the individual tabs in the WLC. The WLC does not have options for finer control than the tabs in the web GUI.
01-26-2021 11:44 PM
Thank you everyone for the clear explanation.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide