06-05-2024 08:37 PM
Hi All,
I would like to know if Local switching is happening for a SSID then traffic match for redirect ACL will be perform by AP or WLC.
For central switching, If I mot mistaken then traffic match for redirect ACL will be perform by WLC, but I am confused what will happened if Local switching is happening.
06-05-2024 11:14 PM
- For local switching it will then happen on the APs ; checkout :
https://www.cisco.com/c/en/us/support/docs/wireless/catalyst-9800-series-wireless-controllers/213920-central-web-authentication-cwa-on-cata.html#toc-hId-814074466
M.
06-07-2024 11:16 PM
Hi,
If I am correct then you are taking about below section, right?
What if you have Flexconnect local switching access points and WLANs? The previous sections are still valid. However, you need an extra step in order to push the redirect ACL to the APs in advance.
Navigate to Configuration > Tags & Profiles > Flex and choose your Flex profile. Then, navigate to the Policy ACL tab.
06-08-2024 12:15 AM
check there is couple of example on this configuraiton guide that explain how you can configure :
06-08-2024 11:38 AM
An easy way to think about it is that for the traffic to be redirected the traffic must hit to redirect ACL, in central switching the traffic is carried all the way to the controller through CAPWAP tunnel and controller is the first place traffic hits the ACL so the redirect happens on the controller. In local switching The traffic is terminated on the local AP so the redirect happens at the AP. The redirect ACL is pushed to the AP by mapping the redirect ACL under the flex connect profile.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide