04-26-2016 03:25 AM - edited 07-05-2021 04:57 AM
Hi All,
It seems that, mac filtering doesn't support in flexconnect environment.
Is there another solution for mobile users for authentication, instead of PSK.
We have ISE with base license.
Thanks
Kamlesh
04-26-2016 09:38 AM
the mac filtering is not supported in stand alone mode , will your AP be in stand alone mode frequently ? if not then you can use mac filtering .
you can use 802.1x authentication , and it will work in connected and stand alone mode .
04-26-2016 10:54 PM
Hi Ali,
We are using WLC 5520 and lightweight APs 1700. There is no AP in Standalone or Autonomous AP. How can I achieve the requirement for mobile devices.
Thanks
Kamlesh
04-29-2016 01:16 PM
Hello,
You have WLC 2504, APs on flex-connect and ISE, do you want to use 802.1x and have users log on with their AD credentials and use an eap method or maybe you want to use a web portal for wireless clients to authenticate?
Here you have some references that may help you:
http://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/115732-central-web-auth-00.html
http://www.cisco.com/c/en/us/support/docs/wireless-mobility/wlan-security/82135-wlc-authenticate.html
I do not know that much about licensing on ISE so not sure which one you could do with the one you currently have,
Also, there may be some variations depending if you want the authentication to go through the WLC or have the AP on flex-connect mode be the authenticator. I would let the WLC do it.
Regards.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide