I'm using my virtual WLC 8.0 with ISE 1.3 to make Central Web Auth (CWA). Since the WLC is virtual, the AP is in Flex mode and accordingly any ACL needed to be forced by ISE is Flex ACL.
The problem is that whenever i try to add the FlexACL to the AP or to the FlexGroup, the WLC gives an error (Request failed: Not a Webauth/WebPassthrough enabled Local Swicthed WLAN). While the WLAN to be configured for CWA needs to be (MAC Filtering enabled + No L3 Policy).
This scenario is explained in this URL for the Flex case but it shows that he can add the ACL to the AP normally. Anything am i missing or it is kind of limitation in virtual WLC?