07-01-2013 01:39 AM - edited 07-04-2021 12:19 AM
07-02-2013 12:15 AM
username b8782ebf55e6 mac aaa attribute list test01
client vlan 200
mac-filtering test01
no security wpa akm dot1x
security wpa akm psk set-key ascii 0 cisco123
no shutdown
07-01-2013 04:24 AM
You would do it the same as if it was any other switch.
http://www.cisco.com/en/US/docs/ios-xml/ios/san/configuration/xe-3se/3850/san-local-ldap.html#reference_E255E8E7540F4D77A79C8D5946D78EA0
Sent from Cisco Technical Support iPhone App
07-01-2013 07:17 AM
Hi:
no radius server can do this?
becase we no have radius server
thanks
07-01-2013 10:06 AM
You can do it with a radius server or not...
Thanks,
Scott
Help out other by using the rating system and marking answered questions as "Answered"
07-01-2013 07:02 PM
Hi:
i follow the example
but have some promble
Cat3850(config)#username 00-22-WP-EC-23-3C mac aaa attribute list AAA_list1
% invalid MAC address entered
can give no radius sever example
thanks
07-01-2013 08:33 PM
When you create a MAC address filter on WLCs, users are granted or denied access to the WLAN network based on the MAC address of the client they use.
There are two types of MAC authentication that are supported on WLCs:
Local MAC authentication
MAC authentication using a RADIUS server
With local MAC authentication, user MAC addresses are stored in a database on the WLC. When a user tries to access the WLAN that is configured for MAC filtering, the client MAC address is validated against the local database on the WLC, and the client is granted access to the WLAN if the authentication is successful.
By default, the WLC local database supports up to 512 user entries.
The local user database is limited to a maximum of 2048 entries. The local database stores entries for these items:
Local management users, which includes lobby ambassadors
Local network users, which includes guest users
MAC filter entries
Exclusion list entries
Access point authorization list entries
Together, all of these types of users cannot exceed the configured database size.
To Know how to configure Mac filtering please go to the below link.
http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a008084f13b.shtml
07-02-2013 12:15 AM
username b8782ebf55e6 mac aaa attribute list test01
client vlan 200
mac-filtering test01
no security wpa akm dot1x
security wpa akm psk set-key ascii 0 cisco123
no shutdown
02-22-2016 05:54 PM
There have a command missing:
aaa authorization network test01 local
https://supportforums.cisco.com/discussion/11893526/3850-wlc-mac-filter-doesnt-work#4037522
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide