03-11-2016 11:41 AM - edited 07-05-2021 04:45 AM
Dear Specialist,
I Have a BSSID1 non broadcast, WPA2 & MAC Filter, but i need to create other in the same conditions BSSID2, but when i add any MAC address to ACS this User can connect to any BSSID, how can I restrict users (mac address) to connect only BSSID?.
Cisco Prime 2.2
WLC Software version 8.0.120.0
ACS Version 5.1.0.44.6
03-12-2016 07:33 AM
Your need to add an extra "condition" to your policy in ACS in which you filter on the SSID name. You can use the RADIUS "Called Station ID" attribute for this (the WLC adds the SSID name at the end of this attribute). The WLC sends this attribute by default to the RADIUS server, so you don't need to change anything on that side.
Please rate useful posts... :-)
03-14-2016 06:26 AM
Dear, Do you have more information or any paper?
03-14-2016 07:49 AM
Check these:
https://supportforums.cisco.com/discussion/11428016/ssid-authentication-acs-5
https://rscciew.wordpress.com/2014/11/29/calling-called-station-id/
Regards
Don't forget to rate helpful posts
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide