04-09-2019 06:18 AM - edited 07-05-2021 10:13 AM
Hey all,
I got a 2802 Access Point where I installed the CME image 8.5.140.0 on.
I can add local mac addresses for mac filtering.
Is it also possible to use a Radius server e.g. freeradius for mac address authentication?
04-09-2019 06:45 AM
Yes, you can use mac filtering via Freeradius (see the freeradius wiki page).
04-09-2019 07:03 AM
Yes but how to configure on a 2802 AP with Cisco Mobility Express?
04-09-2019 12:11 PM
Hi,
Please find the link for configuring external radius server on Mobility express.
External Radius Server Configuration ME
Radius Configuration GUI Steps
04-12-2019 06:10 AM
mmh, but how exaclty can I define a 802.1x MAC-based Port-Security ?
04-12-2019 07:37 AM
You can’t perform dot.1x and MAB at a same time.
04-15-2019 06:27 AM
Sorry, I just want to do MAB .
But with a freeradius server and not local database.
How can I do that?
04-15-2019 07:18 AM
Please check the reply of mine on this thread for configuring external radius.
you have to enable the MaC filtering in SSID and need to enable and configure the external radius server IP with shared secret key.
So that whenever user tries to connect it will verify the mac address on external server. Then provide access accordingly.
04-16-2019 05:48 AM - edited 04-16-2019 05:48 AM
I understand.
But then I can't use WPA2-Personal with a PSK right?
My idea was to setup a WPA2-personal with a PSK and a mac filter with external radius.
Is that possible?
04-16-2019 06:25 AM
That is possible.
you can have a WPA2 Personal and Mac with external radius can be done. Configure a SSID with PSK and MaC filtering as usual only additional thing you have to do is configuration of Radius server. So that you can achieve the thing you want.
you can’t have WPA2 Enterprise and MAC with external radius is not possible.
04-16-2019 07:08 AM
04-16-2019 07:49 AM
Refer this thread . You can do this via CLI Commands.
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: