Excellent video!!! Thank you so much for putting this together. Question about the "guest-redirect" ACL. Where is that applied on the Guest Anchor? and is the guest-redirect ACL also applied on the Foreign controller?
video is helpful but you are too fast - we should always assume that not everyone watching this video is an expert, this is the reason why we seek for resources like this video.
Hi Sir , I understood everything except VLAN part, you mentioned for Guest SVI and IP from same subnets is it how it should be configured? And on the firewall as well this SVI will be configured so i assume that the SVI IP on the firewall will be the IP helper which you configured ?
is it possible to do Authentication by the AP instead of centrally? We've had ongoing issues with our 9800's for over 2 years with guest breaking because "NAD did is unresponsive" TAC has scratched their head.
thanks for the vedio,, but i think for the guest network their is nothing to do with ise.where auth happened, Can we configure everthing on the wlc.. as well as user.
yes, it will be same however there will be different configuration on ISE .... flow will be as below 1) Guest will connect through mac address bypass to the SSID 2. then it will be redirected to the portal (sponsor portal) 3. once user enters credentials given by the sponsor admin 4. user will get internet access
Great Video Vinod
Very good video
Superb video 👌
Thank you! Cheers!
good one
Excellent video!!! Thank you so much for putting this together. Question about the "guest-redirect" ACL. Where is that applied on the Guest Anchor? and is the guest-redirect ACL also applied on the Foreign controller?
yes, it should be configured on both foreign and anchor controller
video is helpful but you are too fast - we should always assume that not everyone watching this video is an expert, this is the reason why we seek for resources like this video.
Hi Sir , I understood everything except VLAN part, you mentioned for Guest SVI and IP from same subnets is it how it should be configured? And on the firewall as well this SVI will be configured so i assume that the SVI IP on the firewall will be the IP helper which you configured ?
is it possible to do Authentication by the AP instead of centrally? We've had ongoing issues with our 9800's for over 2 years with guest breaking because "NAD did is unresponsive" TAC has scratched their head.
Thanks
thanks for the vedio,, but i think for the guest network their is nothing to do with ise.where auth happened, Can we configure everthing on the wlc.. as well as user.
a great video but it does not explain the ACL role - where should it be applied
you need not to apply anywhere in WLC however you need to configure it in both WLCs with exact name which you have configured in ISE.
Will the configuration for sponsorship portal authentication will remain same in WLAN SSID security configuration?
yes, it will be same however there will be different configuration on ISE .... flow will be as below 1) Guest will connect through mac address bypass to the SSID
2. then it will be redirected to the portal (sponsor portal)
3. once user enters credentials given by the sponsor admin
4. user will get internet access