cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
656
Views
0
Helpful
3
Replies

vWLC and Guest Wired

Luciano Vigano'
Level 1
Level 1

Ciao,

we are going to test the Guest capabilities of the vWLC (version 7.4.121.0) with no anchor.

The WiFi Guest and authentication works well.

The Wired Guest seems to have problems:

- ip to client is assigned (ok)

- then no packets seems to leave the vWLC (no dns request exit the vWLC for example) nor the auth page comes up

For the last point I was on the ASA and no packets arrives.

 

On vWLC: ingress interface is the L2 vlan, while the egress interface is the L3 vlan (with ASA as gateway)

 

Any suggestion ?

 

Cheers,

L.

1 Accepted Solution

Accepted Solutions

Saurav Lodh
Level 7
Level 7

Restrictions for Configuring Wired Guest Access

  • Wired guest access interfaces must be tagged.
  • Wired guest access ports must be in the same Layer 2 network as the foreign controller.
  • Up to five wired guest access LANs can be configured on a controller. Also in a wired guest access LAN, multiple anchors are supported.
  • Layer 3 web authentication and web passthrough are supported for wired guest access clients. Layer 2 security is not supported.
  • Do not trunk a wired guest VLAN to multiple foreign controllers, as it might produce unpredictable results.

View solution in original post

3 Replies 3

Luciano Vigano'
Level 1
Level 1

Ciao,

 

moving from VDS to 1000V everything works fine ... in attach the captures (on client side): with 1000V arp resolution for the gateway (10.129.187.25) and DNS lookup work fine (so the authentication)

With VDS the client (Vmware_b7:25:15 - 10.129.187.30) gets stuck with ARP request about the gateway.

 

Ciao!

L.

Saurav Lodh
Level 7
Level 7

Restrictions for Configuring Wired Guest Access

  • Wired guest access interfaces must be tagged.
  • Wired guest access ports must be in the same Layer 2 network as the foreign controller.
  • Up to five wired guest access LANs can be configured on a controller. Also in a wired guest access LAN, multiple anchors are supported.
  • Layer 3 web authentication and web passthrough are supported for wired guest access clients. Layer 2 security is not supported.
  • Do not trunk a wired guest VLAN to multiple foreign controllers, as it might produce unpredictable results.

Luciano Vigano'
Level 1
Level 1

Ciao,

 

the problem was due to bad configuration of the promiscuous mode on the ESX virtual switch ... arghh!!

 

Cheers,

L.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card