08-07-2016 01:19 AM - edited 03-10-2019 11:58 PM
I have WLC Users Authentication with Cisco ISE whcih is linked with LDAP , now ISE is not reachable. Will Wireless users were still able to connect and use WLC Services?
Solved! Go to Solution.
08-11-2016 12:42 PM
Hello Irshad-
All clients that were already authenticated will continue to work and be allowed on the network until they leave the network and/or re-auth, idle, etc type timers expire. At that point clients will not be allowed to join the SSID and will not get access to the network.
To prevent that from happening you can:
1. Create redundancy by having more than one ISE node
2. Create a secondary authentication method via another RADIUS server or LDAP
I hope this helps!
Thank you for rating helpful posts!
08-11-2016 12:42 PM
Hello Irshad-
All clients that were already authenticated will continue to work and be allowed on the network until they leave the network and/or re-auth, idle, etc type timers expire. At that point clients will not be allowed to join the SSID and will not get access to the network.
To prevent that from happening you can:
1. Create redundancy by having more than one ISE node
2. Create a secondary authentication method via another RADIUS server or LDAP
I hope this helps!
Thank you for rating helpful posts!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide