cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1279
Views
0
Helpful
2
Replies

WLC-5508 Per user bandwidth control using RADIUS with web authentication.

roussseau
Level 1
Level 1

I have successfully deployed WLC 5508 with web authentication using FreeRADIUS. Now I would like to know, is it possible to control per user data rate with RADIUS attributes? I have found a document regarding vendor specific attribute of Cisco WLC but it's not totally clear to me. Any guideline regarding RADIUS attributes to control per user data rate will be really helpful. Just to clear I'm after different data rate per user within same SSID.

1 Accepted Solution

Accepted Solutions

Saurav Lodh
Level 7
Level 7

"If you choose to create an entry on the RADIUS server for a guest user and enable RADIUS authentication for the WLAN on which web authentication is performed rather than adding a guest user to the local user database from the controller, you need to assign the QoS role on the RADIUS server itself. To do so, a “guest-role” Airespace attribute needs to be added on the RADIUS server with a datatype of “string” and a return value of “11.” This attribute is sent to the controller when authentication occurs. If a role with the name returned from the RADIUS server is found configured on the controller, the bandwidth associated to that role is enforced for the guest user after authentication completes successfully."

View solution in original post

2 Replies 2

Saurav Lodh
Level 7
Level 7

"If you choose to create an entry on the RADIUS server for a guest user and enable RADIUS authentication for the WLAN on which web authentication is performed rather than adding a guest user to the local user database from the controller, you need to assign the QoS role on the RADIUS server itself. To do so, a “guest-role” Airespace attribute needs to be added on the RADIUS server with a datatype of “string” and a return value of “11.” This attribute is sent to the controller when authentication occurs. If a role with the name returned from the RADIUS server is found configured on the controller, the bandwidth associated to that role is enforced for the guest user after authentication completes successfully."

Thank you for your advice.

Review Cisco Networking for a $25 gift card