cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3465
Views
0
Helpful
1
Replies

Cisco WLC routing

acleri
Level 1
Level 1

We have a WLC-2106 and we need to configure 802.1x,

we notice that the Radius traffic is sent always through the management port, considered that the radius server is behind a vpn the we don't want to change the crypto map on the firewall in order to encrypt also the traffic from the managent network, a solution would be to sent the radius traffic from a port connected to the LAN that can reach the Radius server without changing the vpn parameter.

On the WLC we setup the interface with the correct default gateway but the traffic is always sent from the management port, is it possible to set manual routes on the WLC?

Thank you.

Kind regards.

Andy

1 Accepted Solution

Accepted Solutions

Nicolas Darchis
Cisco Employee
Cisco Employee

Hi,

no. The WLC is supposed to be a layer 2 device. One way of tricking it is when you have a 4404, you can have the radius server in the service port vlan and communication would go through the service port. But the design is management traffic (=radius) is through management interface.

Especially with the 2106, I'm afraid that's not possible to even configure a static route.

Regards,

Nicolas

===

Don't forget to rate answers that you find useful

View solution in original post

1 Reply 1

Nicolas Darchis
Cisco Employee
Cisco Employee

Hi,

no. The WLC is supposed to be a layer 2 device. One way of tricking it is when you have a 4404, you can have the radius server in the service port vlan and communication would go through the service port. But the design is management traffic (=radius) is through management interface.

Especially with the 2106, I'm afraid that's not possible to even configure a static route.

Regards,

Nicolas

===

Don't forget to rate answers that you find useful

Review Cisco Networking for a $25 gift card