Cisco Cisco Identity Services Engine 1.0.4 Manual Técnica

Descargar
Página de 7
The CWA flow begins when the WLC sends a RADIUS MAC Authentication Bypass (MAB) request to the
ISE. The ISE replies with a redirect URL to the controller in order to redirect HTTP traffic to the ISE. It is
important that the RADIUS and HTTP traffic go to the same Policy Services Node (PSN) because the session
is maintained on a single PSN. This is normally performed with a single rule, and the PSN inserts its own
hostname into the CWA URL. However, with a static redirect, you must create a rule for each PSN in order to
ensure that the RADIUS and HTTP traffic are sent to the same PSN.
Complete these steps in order to configure the ISE:
Set up two rules in order to redirect the client to the PSN IP address. Navigate to Policy > Policy
Elements > Results > Authorization > Authorization Profiles
.
These images show the information for profile name DunkelGuestWireless:
These images show the information for profile name MaibockGuestWireless:
1.