06-11-2015 02:22 AM - edited 03-10-2019 10:48 PM
hi everybody,
I'm recreating a discution I openned in another place which was this one :
https://supportforums.cisco.com/comment/10563096
In this link (http://www.cisco.com/c/en/us/support/docs/security/nac-appliance-clean-access/110304-integrated-url-log.html) it is said I could logs both usernames and URLS seen by users but i don't understand the use of every component of their architecture : why would I need TWO WLC and one ASA for this ?
If someone understands this, can you please help me ?
Thanks in advance
06-11-2015 12:17 PM
You don't need two WLC's, it's just a design choice if you wan't an anchor controller, and a foreign controller for your guest setup, it has to do with what some consider to be more secure by having the controller only managing guests, and being placed in a DMZ, than just using one controller, personally i don't subscribe to that idea.
06-11-2015 11:34 PM
Thank you for your answer.
One Controller could do then, but I would still need the Cisco NAC guest server and the ASA for URL Logging.
However, maybe having a second controller dedicated to guests, and behind it a proxy to generate connections logs would work ? There is a registration page on the Cisco WLC so this might be a solution maybe ?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide