cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
503
Views
0
Helpful
3
Replies

Configuring VLan for Internet Only Traffic

fofanah78
Level 1
Level 1

 I’m looking for a solution to have my wireless clients on Location 2 with internet only access, but at the same time my AP can pull a DHCP address from my internal server.  Location 2 internet access is thru Location 1 ASA.  I will really appreciate your help.

Location 1 WLC 2504 is connected to ASA and Core 3650

Location 2 WLC 2504 connected to a Core 3650 no ASA firewall.

1 Accepted Solution

Accepted Solutions

I would use an ssid in central switch mode so no flex connect enabled for that ssid. Create an anchor between both wlcs so that traffic for that ssid from location without the asa will forward traffic to wlc with asa, wlc "internal" and on that wlc create an interface in a vlan that is connected to your asa where u apply the proper rules. 

View solution in original post

3 Replies 3

I would use an ssid in central switch mode so no flex connect enabled for that ssid. Create an anchor between both wlcs so that traffic for that ssid from location without the asa will forward traffic to wlc with asa, wlc "internal" and on that wlc create an interface in a vlan that is connected to your asa where u apply the proper rules. 

Thanks Sebastian!! I will try this and let you know. 

Sebastian your are awesome!!  Thank you!!

Review Cisco Networking for a $25 gift card