cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
469
Views
0
Helpful
5
Replies

Security issue with WLC 5520 and AD

mdjan
Level 1
Level 1

Hello guys,

To facilitate all the employees to log on the company wireless, I enable 802.1x authentication to enable all persons which are in the Active directory to access wlan without additional authentication. Employee use their same credential to log on the domain to log on the WLAN. By doing this all the users are able to log on the WLC management interface.

How can I solve this issue because it cause a very big security issue?

5 Replies 5

TACACS? 

Internal User Database on ISE?

ACL?

These are all options. 

There are lots of ways.  I am not really clear on your configuration, but something is amiss.

I use Active directory user with ISE and ACL.

I based my configuration on this file

Apologies that I did not download your PDF.  Perhaps you were referring to this blog post:

https://mrncciew.com/2014/05/11/wlc-access-via-radius-ise/

yes that's right

yes that's right instead of using user created on ISE , I use those who are in my AD
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card