Hello all,
I have a Wireless LAN controller and multiple Cisco APs with 8 SSIDs configured. Each one for the different business departments.
I want to allow Windows users to authenticate only to their specific SSID and windows group. I have a Microsoft NPS for user authentication but I dont know how to validate the SSID and the domain user at the same time.
I read in some websites about the VSA parameters, but I dont know how to configure the controller to send the SSID to my NPS and what I need to configure in my RADIUS server to validate both conditions, username and SSID.
Any help will be really appreciate.