12-25-2013 07:04 AM - edited 07-04-2021 11:50 PM
Hi,
I am using 3850 and 5760 with converged access mode.
There is also ISE to provide dACL for wireless user.
In 3850, I can issue "show access-list" to see the dACL from ISE.
But I can't be sure which ACL apply to which user when there are more than one dACL.
I have tried command like "show wireless client mac-address MAC detail" but didn't see anything related.
I can only achieve that by checking logs on ISE.
Is there any command I can do for this purpose?
3850 and 5760 version : 3.3.0
ISE version : 1.2
Thanks!!!
Solved! Go to Solution.
03-25-2014 05:21 AM
Hi Mason,
I know that for switch IOS the command "show authentication session interface INTERFACE" shows the dACL that is applied to this port. I think the new command for the IOSXE devices is "show access-session mac H.H.H detail" is the corresponding one which should show the dACL that was applied to that MAC-address.
Please see if that works for you.
Best regards,
Patrick Meyer
03-25-2014 05:21 AM
Hi Mason,
I know that for switch IOS the command "show authentication session interface INTERFACE" shows the dACL that is applied to this port. I think the new command for the IOSXE devices is "show access-session mac H.H.H detail" is the corresponding one which should show the dACL that was applied to that MAC-address.
Please see if that works for you.
Best regards,
Patrick Meyer
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide