02-17-2016 06:09 PM - edited 07-05-2021 04:37 AM
Hi all IoT enthusiasts,
I got a dumb wireless device which require internet access and I have a Guest SSID which requires username/password authentication.
The authentication is managed by ACS 5.3 and wireless is handled by cisco 2504.
What options do I have in order to allow this dumb device access to internet and at the same time only allow approved devices.
Thanks
PJ
Solved! Go to Solution.
02-18-2016 05:40 PM
if that only supports WPA-Personal then you have to have a SSID that supports it.
I would create a seperate SSID and advertise it via selected APs (using AP Group).
HTH
Rasika
02-17-2016 10:19 PM
what is this dumb device & how can it configure for wireless ?
02-18-2016 04:39 PM
Hi Rasika,
It is a 3D printed device, but the chip inside can only support
(WPA personal)with password, but not username (WPA enterprise). It can also select an SSID.
02-18-2016 05:40 PM
if that only supports WPA-Personal then you have to have a SSID that supports it.
I would create a seperate SSID and advertise it via selected APs (using AP Group).
HTH
Rasika
02-18-2016 06:05 PM
I agree with Ras... Thats the easiest way to do it.
02-21-2016 03:22 PM
Thanks for the feedback George
02-21-2016 03:21 PM
Thank you Rasika
02-18-2016 01:40 AM
If you are using ACS as Radius authentication server, and if authentication pass!!.. then the WLC will allow device for accessing internet.
02-18-2016 06:48 AM
Your guest network sounds like its doing radius authentication I assume ? You're IoT device would need to be able to support the same authentication. Honestly many of the IoT devices Ive seen do not support radius.
You need to see what that device supports for authentication. If you don't have an SSID that supports it your easiest thing to do is create one.
02-18-2016 04:49 PM
Hi George,
You are right, we have setup Guest to do Radius authentication. And this device only supports, (WPA personal)with password, but not username (WPA enterprise). It can also select an SSID.
How can this be setup so that when more of this kind of device wants to connect to our guest network. They get guest access without much of manual addition of MAC address in the ACS.
Is there a way where ACS can be configured to allow access based on MAC address range / device type/ any other custom attributes ?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide