06-15-2022 02:26 AM
Hi,
I did try to look for some answers but it seems my question is not answered 🙂
We have SSID-User and SSID-Mobile.
The clients should connect to wired network or to SSID-user.
Authentication is Radius based, using a security EAP method configured on the RADIUS server.
network access control via EAP-TLS as authentication protocol for devices supporting 802.1x and MAC Authentication Bypass for the rest of devices such as printers,controllers, cameras.
Now, the users sometimes manually connect to the SSID-mobile.
We would like to disallow that.
Is there a way to block laptops/PC's to a specific SSID on the Meraki ?
Thanks.
06-15-2022 03:00 AM
You could enable "Assign group policies by device type" on the mobile SSID and set Windows and Mac's to a blocked group policy. It won't prevent them from authenticating but it will prevent them from access to anything.
Otherwise you can look at the options in your RADIUS server. If it's something like Cisco ISE, I believe you an set policies based on OS.
11-10-2023 01:57 AM
HI Brash
May I Solutions for Same issue in Cisco ISE Ver 2.7
Authentication is Radius based, using a security EAP method configured on the RADIUS server.
network access control via EAP-TLS as authentication protocol for devices supporting 802.1x and MAC
Thanks
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide