cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
503
Views
0
Helpful
5
Replies

Apple MacBook MAC Filter

Andrey23
Level 1
Level 1

Hello,

I need to filter Apple MacBook and alow it connect to corp SSID.

My corp SSID have 802.1x auth with NPS server.

Who can suggest me what to do?

Filter the MAC address on the NPS? create new SSID and filter on the WLC?

I have WLC 2504

 

BR,

5 Replies 5

Scott Fella
Hall of Fame
Hall of Fame
I don’t understand what you mean? You want MacBooks to connect to 802.1x and not any other SSID? You only want MacBooks to connect to 802.1x and not any other?
-Scott
*** Please rate helpful posts ***

I would like to have 1 corp SSID.

All WIN users will authenticate with 802.1x and AppleMAC with MAC FILTER.

 

When you have one Corp SSID, there is no reason to have multiple types of ways to authenticate as that complicates your overall implementation. If you have one SSID, dot1x, then you should just allow all devices to authenticate via dot1x. To have dot1x and then add a Mac filter list to only allow certain MacBooks, doesn’t make sense. You should have a rule for WIN machines to use computer authentication and or tap-tls and then another rule that uses Mac filter that allows any other devices.
-Scott
*** Please rate helpful posts ***

you talking about rules on NPS?

BR

Yes so you have a single point to manage.
-Scott
*** Please rate helpful posts ***
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card