cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1718
Views
2
Helpful
6
Replies

Equivalent Command for 9800

roo54
Level 3
Level 3

A simple question....If I just knew where to find the answer:

Doing MAC authentication on an 5520 WLC, I can see the MAC addresses accepted by the WLC if I issue the command:

"sho macfilter summary"

Can anyone tell me the equivalent command on a 9800 (yes, I have googled it 🙂 )

Thanks

Roo

6 Replies 6

Mark Elsen
Hall of Fame
Hall of Fame

 

 - I don't think your statement is exactly true ; the mentioned command will only list the allowed mac addresses (not authenticating events) ; 'similarly' on the 9800 you follow this document for setup : https://www.cisco.com/c/en/us/support/docs/wireless/catalyst-9800-series-wireless-controllers/213922-configure-mac-authentication-ssid-on-cis.html
                       Probably the allowed MAC's can be listed in the running config somewhere afterwards , 

 M.



-- Let everything happen to you  
       Beauty and terror
      Just keep going    
       No feeling is final
Reiner Maria Rilke (1899)

That's what I was trying to do, list the allowed MAC addresses....

 

 - Yeah , because of the underlying ios-xe being used , my methodology will work , but is more cumbersome to perform , 

 M.



-- Let everything happen to you  
       Beauty and terror
      Just keep going    
       No feeling is final
Reiner Maria Rilke (1899)

roo54
Level 3
Level 3

You wrote " Probably the allowed MAC's can be listed in the running config somewhere afterwards ", that was my first thougt, but looking at the running config did not help....I'll dig somemore, but has ANYONE tried to do this? It would be much more reasonable for the MAC addresses to be managed by an ISE, but not in this case, they are managed by the WLC which seems to have hidden them 🙂

Thanks

Roo

roo54
Level 3
Level 3

OK, I dug it out myself 🙂

the MAC addresses are stored in

Config>Security>AAA>AAA Advanced>MAC Addresses

on the GUI, and if you were hoping to get a CLI command like "sho macfilter summary", I think I'm gonna disapoint you, the nearest I could get was to do "sho runn | beg username", but when you do that the MAC addresses are mixed in amongst the admin users, etc.  I guess they don't really want you managing MAC addresses on the WLC, it should be done on an IOSE or similar, and they aren't going to make it easy for you to do it

Thanks

Roo

Rich R
VIP
VIP

Yes they are saved as usernames of type mac so actually it is quite easy to filter them from running-config with:
show run | inc username ............ mac

------------------------------
Please click Helpful if this post helped you and Accept as Solution if this answered your query.
------------------------------
TAC recommended codes for AireOS WLC's   and   TAC recommended codes for 9800 WLC's
Best Practices for AireOS WLC's,   Best Practices for 9800 WLC's   and   Cisco Wireless compatibility matrix
Check your 9800 WLC config with Wireless Config Analyzer using "show tech wireless" output or "config paging disable" then "show run-config" output on AireOS and use Wireless Debug Analyzer to analyze your WLC client debugs
Field Notice: FN63942 APs and WLCs Fail to Create CAPWAP Connections Due to Certificate Expiration
Field Notice: FN72424 Later Versions of WiFi 6 APs Fail to Join WLC - Software Upgrade Required
Field Notice: FN72524 IOS APs stuck in downloading state after 4 Dec 2022 due to Certificate Expired
- Fixed in 8.10.196.0, latest 9800 releases, 8.5.182.12 (8.5.182.13 for 3504) and 8.5.182.109 (IRCM, 8.5.182.111 for 3504)
Field Notice: FN70479 AP Fails to Join or Joins with 1 Radio due to Country Mismatch, RMA needed
Field Notice: FN74383 APs Running 17.12.4/5/6/6a May Run Out of Flash Space Preventing Upgrades
How to avoid boot loop due to corrupted image on Wave 2 and Catalyst 11ax Access Points (CSCvx32806)
Field Notice: FN74035 - Wave2 APs DFS May Not Detect Radar After Channel Availability Check Time
Leo's list of bugs affecting 2800/3800/4800/1560 APs
Default AP console baud rate from 17.12.x is 115200 - introduced by CSCwe88390
Review Cisco Networking for a $25 gift card