05-11-2015 10:33 AM - edited 03-10-2019 10:43 PM
Hi,
I am after building sponsored guest access for wireless guests in ISE running on software release 1.3.
I wonder if there is a way to keep the guest on the initial vlan after successful authentication and grant him Internet-Only access. I mean to say, I do not want to assign him to different vlan and restrict his access by an ACL applied on Layer-3 Vlan Interface.
I could have done it by dACL, if the guest is connecting through the wired network, but because Wireless Controller do not accepts dACLs, I am not aware of any way to do it without changing vlan
Appreciate your idea.
Mike
Solved! Go to Solution.
05-12-2015 07:13 AM
Sure, just create the ACL you wan't to use for your guests directly on your WLC, and then reference the name of that ACL in your authorization profile in the option called "Airespace ACL Name".
05-12-2015 07:13 AM
05-12-2015 12:36 PM
Thanks Jan. Appreciate your pictorial answer.
05-14-2015 06:52 AM
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: