cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Who Me Too'd this topic

WLC redirect traffic with intercept, make problem to https site to accept

Filip Po
Level 1
Level 1

WLC 2504, AireOS 8.0.152.0

ISE 2.1 with CWA redirect

Client Android Samsung S4 and iOS iPhone 6s

 

Problem is, that WLC trying to intercept https redirected session with SSL certificate issued to its virtual interface 192.0.2.1.

And nowadays end points do not accept it and deal it as man-in-the-middle-attack.

 

So when I do ISE BYOD onboarding on android, i have problem to get redirection from https sites, and also have problem to access play.google.com for Cisco Network Setup Assistant download.

NET::ERR_CERT_AUTHORITY_INVALID

 

How should I command wlc to do not intercept https traffic with its own certification?

 

thank you for any advice.

Who Me Too'd this topic