cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
371
Views
0
Helpful
2
Replies

log guest's connexions

ulric.godefroy1
Level 1
Level 1

hi everybody,

I'm recreating a discution I openned in another place which was this one :

https://supportforums.cisco.com/comment/10563096

In this link (http://www.cisco.com/c/en/us/support/docs/security/nac-appliance-clean-access/110304-integrated-url-log.html) it is said I could logs both usernames and URLS seen by users but i don't understand the use of every component of their architecture : why would I need TWO WLC and one ASA for this ?

If someone understands this, can you please help me ?

Thanks in advance

2 Replies 2

jan.nielsen
Level 7
Level 7

You don't need two WLC's, it's just a design choice if you wan't an anchor controller, and a foreign controller for your guest setup, it has to do with what some consider to be more secure by having the controller only managing guests, and being placed in a DMZ, than just using one controller, personally i don't subscribe to that idea.

Thank you for your answer.

One Controller could do then, but I would still need the Cisco NAC guest server and the ASA for URL Logging.

However, maybe having a second controller dedicated to guests, and behind it a proxy to generate connections logs would work ? There is a registration page on the Cisco WLC so this might be a solution maybe ?