cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
515
Views
0
Helpful
3
Replies

using In-Band Central L2 Real-IP VLAN deployment

schen
Level 1
Level 1

Hi Syed,

I see Mr.Greg post the request "Using in-Band L2 Real-IP VLAN Deployment" as similar to Figure 2-3 in this document:

http://www.cisco.com/en/US/docs/security/nac/appliance/configuration_guide/412/cas/s_deploy.html#wp1051105. and You recommend use CAS DHCP server auto-generate of /30 subnet advantage to fullfill this function. Now, We have customer also require same structure to deploy their CCA with Cisco wireless controller solution. We configure two managed Vlans on CAS server for WLC two vlans( guest and Employee ); but We face a problem; ie: Wireless clients on guest or employee vlan can't get the ip address dispatch from CAS DHCP server. We turn on the DHCP debug on WLC and can't find any IP dispatch out from CAS DHCP server. but if We use wire client ( PC direct connect the switch VLANs ) the ip address can be dispatch from CAS DHCP server. Do You know if any limitation for WLC works with CAS DHCP server ? please advise ! Many Thanks !

3 Replies 3

owillins
Level 6
Level 6

The following document describes how to integrate the Cisco Clean Access (CCA) solution with a Cisco Wireless LAN Controller to provide guest user access management and posture assessment features for wireless networks.

http://www.cisco.com/en/US/docs/wireless/technology/clean_access/technical/reference/cleanAN.html

scottyschafer
Level 1
Level 1

Where you ever able to resolve this. i am running into the same issue currently. I get spotty dhcp responces to my WLC controllers.

Any help is appreciated.

scott

Hi Scott,

You can try the L2 Inband Virtual gateway mode for the NAC with Wireless LAN controller as per the attached link.

This works fine

http://www.cisco.com/application/pdf/en/us/guest/netsol/ns337/c649/ccmigration_09186a0080871da1.pdf

with regards

sathappan.s