cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
906
Views
10
Helpful
2
Replies

how to check the users with access to some application?

adrianch12
Level 1
Level 1

Hi

 

I want to know which users are using the ares application, Is this is possible? 

I have WLC 5508 with IOS 8.2.166.0

 

 

2 Accepted Solutions

Accepted Solutions

Seb Rupik
VIP Alumni
VIP Alumni

Hi there,

Configure netflow on the WLC and a server as a neflow collector/ analyser.

Looking at the Cisco NBAR protocol list:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/prot_lib/config_library/pp2400/nbar-prot-pack2400/0A.html#wp2665307882

 

...use these details to filter the netflow data to find source IPs (your wireless clients). Using time, date and IP address cross reference with your authentication logs to determine the user ID.

 

cheers,

Seb.

View solution in original post

With 5508, it does not support enhanced netflow fields that supported in 8540/5520 with AireOS 8.2.x. With those newer platform, you get wireless username (if it is 802.1X configured SSID) as part of netflow data. If you have a netflow collector understand all these WLC netflow fields, you can work it out. (see below)

https://mrncciew.com/2018/02/20/wlc-netflow-with-extrahop/

 

With 5508, you may get something similar to below

https://mrncciew.com/2013/02/12/configuring-netflow-on-wlc-7-4/

 

Using WLC, CLI commands you can't get information you wanted.

 

HTH

Rasika

*** Pls rate all useful responses ***

View solution in original post

2 Replies 2

Seb Rupik
VIP Alumni
VIP Alumni

Hi there,

Configure netflow on the WLC and a server as a neflow collector/ analyser.

Looking at the Cisco NBAR protocol list:

https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_nbar/prot_lib/config_library/pp2400/nbar-prot-pack2400/0A.html#wp2665307882

 

...use these details to filter the netflow data to find source IPs (your wireless clients). Using time, date and IP address cross reference with your authentication logs to determine the user ID.

 

cheers,

Seb.

With 5508, it does not support enhanced netflow fields that supported in 8540/5520 with AireOS 8.2.x. With those newer platform, you get wireless username (if it is 802.1X configured SSID) as part of netflow data. If you have a netflow collector understand all these WLC netflow fields, you can work it out. (see below)

https://mrncciew.com/2018/02/20/wlc-netflow-with-extrahop/

 

With 5508, you may get something similar to below

https://mrncciew.com/2013/02/12/configuring-netflow-on-wlc-7-4/

 

Using WLC, CLI commands you can't get information you wanted.

 

HTH

Rasika

*** Pls rate all useful responses ***

Review Cisco Networking for a $25 gift card