06-06-2023 06:32 AM
I configured a test environment composed of a WLC (8.2) connected to the internal network, where the Cisco ISE 3.0 is also connected.
Via Mobility tunnel the internal WLC is connected to a WLC Anchor (8.8) located in the DMZ behind a firewall.
There is also a DHCP Server Connected to a Firewall dedicated interface the (Grey box in the layout)
Follow the basic network layout:
How I can configure both WLC to work correctly after the ISE authorization phase?
I have found an example that works I have test it, but there is only one WLC, follow the link:
Do you any suggestion?
Best regards,
JF.
06-06-2023 06:44 AM
06-08-2023 04:58 AM - edited 06-08-2023 04:58 AM
this should not be very different with an anchor controller
if I recall correctly
there are two tunnels involved
- CAPWAP/LWAPP from access point to the foreign controller
the foreign controller does the authentication with ISE
- EOIP tunnel from foreign to anchor
the anchor controller drops the packets onto the network
so authentication is the same, but the acl's and vlan assignment is done by the anchor
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide