I have a Cluster of 02 WM3600 Controllers with SW version 5.4.
Need to implement MAC address based Local ( On Controller) authentication.
Requirement is for two type of users:
WLAN User should not be asked any password. Only a set of MAC IDs should be allowed to use the SSID. Users with other MAC IDs should not be allowed (restricted) to access the SSID.
WLAN User has to login a KEY/Password and get access. But SSID other than used for Employees.
Any one can guide on this?
Please refer the page number 12 from the link below to configure MAC authentication using controller internal radius server.
You will be creating new SSID and select security as "PSK/None' and set the passphrase details..
Herewith please find the links for configuration files.
OLD/Initial start-up Config: https://www.dropbox.com/s/jjzt5irc5b0hlag/startup-config-OLD?dl=0
Config after following the document: https://www.dropbox.com/s/g4n4lclldutw0r1/startup-config?dl=0
I see the MAC authentication configuration seems to correct.
description MAC based
use aaa-policy NTPC-AAA\ Policy
aaa-policy NTPC-AAA\ Policy authentication server 1 onboard controller
radius-user-pool-policy NTPC-User\ pool
user 88708cd34ebd password 0 88708cd34ebd group NTPC-Radius-Group
Except the production SSID configured in "bridging-mode local" and the MAC authentication SSID configured in "bridging-mode tunnel".
wlan NTPC-GUEST description NTPC Employee WiFi user
wpa-wpa2 psk 0 abcdefghijkl
Could you please confirm, what exactly not working? Does the client able to connect to the SSID?
Or its connecting and not getting IP address?
Can you please open a TAC case and give me the case #, will work on it further.