cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1000
Views
0
Helpful
1
Replies

mapping Users to SSID

simonstoll
Level 1
Level 1

Hi

How can I allow a certain user or usergroup on ACS to have access only to a specific SSID? I know there is way, I just cannot find it anymore.

thanks for any tip.

1 Reply 1

gamccall
Level 4
Level 4

http://www.cisco.com/en/US/products/hw/wireless/ps4570/prod_technical_reference09186a00801444a1.html

You can either let everybody associate with the same SSID and then have the ACS override the default SSID-to-VLAN mapping on a per-user basis, so that user-to-VLAN mapping takes place with SSID being irrelevant,

or,

you can specify a list of allowed SSID's per user, and allow the default SSID-to-VLAN mapping to take effect normally.

If you want to go with the latter option, you'll need to set the device entries in ACS to Cisco IOS/PIX RADIUS (as opposed to RADIUS IETF which the docs indicate), and then create cisco-av-pair entries of the type "SSID = ssidname" in the user profile or usergroup profile.