<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic RE: Redirect @ AP NAC enforce deleting rules in ExtremeCloud IQ- Site Engine Management Center</title>
    <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/redirect-ap-nac-enforce-deleting-rules/m-p/17344#M490</link>
    <description>Hi Martin,&lt;BR /&gt;
&lt;BR /&gt;
The redirect rule is most likely there, just hidden in the dropdown list. If you drop down the item that says "Disabled" you should see one item that says "HTTP Redirect 1" or something along those lines.&lt;BR /&gt;
&lt;BR /&gt;
Tyler</description>
    <pubDate>Wed, 20 Jun 2018 22:56:00 GMT</pubDate>
    <dc:creator>TylerMarcotte</dc:creator>
    <dc:date>2018-06-20T22:56:00Z</dc:date>
    <item>
      <title>Redirect @ AP NAC enforce deleting rules</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/redirect-ap-nac-enforce-deleting-rules/m-p/17343#M489</link>
      <description>Hi,&lt;BR /&gt;
&lt;BR /&gt;
Currently running Extreme Control version 8.1.2.59 and Extreme Wireless (identiFi) 10.41.02.0014.&lt;BR /&gt;
&lt;BR /&gt;
I'm in the process of configuring redirection at the AP which works with the following rules:&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-46089-k37sit-RackMultipart20170922-101466-1s2xkw8-Rule_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/2355iAC96F4D7067BE6EA/image-size/large?v=v2&amp;amp;px=999" role="button" title="0532182da2de47afb70945af65593bed_RackMultipart20180620-46089-k37sit-RackMultipart20170922-101466-1s2xkw8-Rule_inline.png" alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-46089-k37sit-RackMultipart20170922-101466-1s2xkw8-Rule_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
Which I entered in the wireless controller first and then did an import from the wireless device into NAC. The rules in the NAC now look like the following:&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-27871-ba1zre-NAC-Redirect2_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/3817i48C12A8DD8C1BDF3/image-size/large?v=v2&amp;amp;px=999" role="button" title="0532182da2de47afb70945af65593bed_RackMultipart20180620-27871-ba1zre-NAC-Redirect2_inline.png" alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-27871-ba1zre-NAC-Redirect2_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
When I then do an enforce back to the EWC it wipes out the redirect rules and now looks like the following (ignore the change in IP's for a moment, just a couple of different shots from different systems, but the results are the same):&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-11328-way5bt-NAC-Redirect3_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/1601iE2FA9514F74BC6E9/image-size/large?v=v2&amp;amp;px=999" role="button" title="0532182da2de47afb70945af65593bed_RackMultipart20180620-11328-way5bt-NAC-Redirect3_inline.png" alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-11328-way5bt-NAC-Redirect3_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
I notice in the NAC rule configuration an option for HTTP Redirect, perhaps I have to configure the redirect rules using this form, which will successfully write the redirect rules back to the EWC on enforce?&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-71205-12ym40n-NAC-Redirect1_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/2935i13CC1769F17549B2/image-size/large?v=v2&amp;amp;px=999" role="button" title="0532182da2de47afb70945af65593bed_RackMultipart20180620-71205-12ym40n-NAC-Redirect1_inline.png" alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-71205-12ym40n-NAC-Redirect1_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
Thought that maybe the values in the 'Listen Sockets' might be 80,8080,443&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-26573-omuyx6-NAC-Redirect4_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/4527iED3CE5AC2C2A18C3/image-size/large?v=v2&amp;amp;px=999" role="button" title="0532182da2de47afb70945af65593bed_RackMultipart20180620-26573-omuyx6-NAC-Redirect4_inline.png" alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-26573-omuyx6-NAC-Redirect4_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
But whenever I 'OK' it the 'HTTP redirect' option comes back 'Disabled':&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-54778-qq6jeo-NAC-Redirect5_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/317i34089C524741BA59/image-size/large?v=v2&amp;amp;px=999" role="button" title="0532182da2de47afb70945af65593bed_RackMultipart20180620-54778-qq6jeo-NAC-Redirect5_inline.png" alt="0532182da2de47afb70945af65593bed_RackMultipart20180620-54778-qq6jeo-NAC-Redirect5_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
I'm probably driving this completely wrong, but would appreciate any advise.&lt;BR /&gt;
&lt;BR /&gt;
Many thanks in advance.</description>
      <pubDate>Wed, 20 Jun 2018 22:28:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/redirect-ap-nac-enforce-deleting-rules/m-p/17343#M489</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2018-06-20T22:28:00Z</dc:date>
    </item>
    <item>
      <title>RE: Redirect @ AP NAC enforce deleting rules</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/redirect-ap-nac-enforce-deleting-rules/m-p/17344#M490</link>
      <description>Hi Martin,&lt;BR /&gt;
&lt;BR /&gt;
The redirect rule is most likely there, just hidden in the dropdown list. If you drop down the item that says "Disabled" you should see one item that says "HTTP Redirect 1" or something along those lines.&lt;BR /&gt;
&lt;BR /&gt;
Tyler</description>
      <pubDate>Wed, 20 Jun 2018 22:56:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/redirect-ap-nac-enforce-deleting-rules/m-p/17344#M490</guid>
      <dc:creator>TylerMarcotte</dc:creator>
      <dc:date>2018-06-20T22:56:00Z</dc:date>
    </item>
    <item>
      <title>RE: Redirect @ AP NAC enforce deleting rules</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/redirect-ap-nac-enforce-deleting-rules/m-p/17345#M491</link>
      <description>Hi Tyler,&lt;BR /&gt;
&lt;BR /&gt;
Thanks for replying. So had a bit more of a play around and it does remain disabled, and when you go into the 'Listen Sockets' is still there, but I can't see anything anywhere that says 'HTTP Redirect 1'?&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-52931-d4i0gc-NAC-Redirect9_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/3831i3FDB7ABAFA84B9DC/image-size/large?v=v2&amp;amp;px=999" role="button" title="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-52931-d4i0gc-NAC-Redirect9_inline.png" alt="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-52931-d4i0gc-NAC-Redirect9_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
I did change the rule to permit and set the rule type to 'Wireless Controller', and then when I did an enforce it looked like the redirect are there:&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-49486-1gtd2xy-NAC-Redirect6_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/4986iA813D1810B5784E7/image-size/large?v=v2&amp;amp;px=999" role="button" title="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-49486-1gtd2xy-NAC-Redirect6_inline.png" alt="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-49486-1gtd2xy-NAC-Redirect6_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
Now the rules on the wireless controller look like the following:&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-97729-qesci3-NAC-Redirect7_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/2856iB3C8D06668F4D934/image-size/large?v=v2&amp;amp;px=999" role="button" title="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-97729-qesci3-NAC-Redirect7_inline.png" alt="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-97729-qesci3-NAC-Redirect7_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
So as you can see the rules for ports 80, 8080 and 443 are not showing up as redirect.&lt;BR /&gt;
&lt;BR /&gt;
Here is the example https (443) rule that I configured:&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-119316-6bg2v5-NAC-Redirect8_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/1967iC0D2EC25ABDD698F/image-size/large?v=v2&amp;amp;px=999" role="button" title="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-119316-6bg2v5-NAC-Redirect8_inline.png" alt="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-119316-6bg2v5-NAC-Redirect8_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-76164-9m2aku-NAC-Redirect11_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/4318i98CBF2B0D4B9338D/image-size/large?v=v2&amp;amp;px=999" role="button" title="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-76164-9m2aku-NAC-Redirect11_inline.png" alt="a917898d333b4e4aac34c419c8d6c323_RackMultipart20180620-76164-9m2aku-NAC-Redirect11_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
Don't suppose you can see where I'm going wrong?&lt;BR /&gt;
&lt;BR /&gt;
Many thanks.</description>
      <pubDate>Thu, 21 Jun 2018 03:18:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/redirect-ap-nac-enforce-deleting-rules/m-p/17345#M491</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2018-06-21T03:18:00Z</dc:date>
    </item>
    <item>
      <title>RE: Redirect @ AP NAC enforce deleting rules</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/redirect-ap-nac-enforce-deleting-rules/m-p/17346#M492</link>
      <description>Hi Martin,&lt;BR /&gt;
&lt;BR /&gt;
Sorry, I missed a part of your screenshot when I first read it. After you define the sockets to listen on in the redirect config, you need to add a Redirect Group that is your redirect URL. If you are redirecting to NAC there should already be pre-configured ones available in the drop down. If you're using something else then you can list the URL. Just be sure to include the port number (:80 or :443) in the URL.&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;A href="https://d1uyvls174j03l.cloudfront.net/extremenetworks-us/attachment/RackMultipart20180625-102475-1s6t7vo-Screen_Shot_2018-06-25_at_9.28.36_AM_inline.png" rel="image" class="fancybox"&gt;&lt;IMG src="https://d1uyvls174j03l.cloudfront.net/extremenetworks-us/attachment/RackMultipart20180625-102475-1s6t7vo-Screen_Shot_2018-06-25_at_9.28.36_AM_inline.png" /&gt;&lt;/A&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
See if that gets you a bit further. I think that's the piece you're missing though.&lt;BR /&gt;
&lt;BR /&gt;
Tyler</description>
      <pubDate>Mon, 25 Jun 2018 18:30:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/redirect-ap-nac-enforce-deleting-rules/m-p/17346#M492</guid>
      <dc:creator>TylerMarcotte</dc:creator>
      <dc:date>2018-06-25T18:30:00Z</dc:date>
    </item>
    <item>
      <title>RE: Redirect @ AP NAC enforce deleting rules</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/redirect-ap-nac-enforce-deleting-rules/m-p/17347#M493</link>
      <description>Hi Tyler,&lt;BR /&gt;
&lt;BR /&gt;
No problem.&lt;BR /&gt;
&lt;BR /&gt;
Not sure what happened but I did post a large reply with lots more screenshots, as I managed to work it out in the end.&lt;BR /&gt;
&lt;BR /&gt;
But you are correct, that's exactly what I missed, and it all worked as expected after that.&lt;BR /&gt;
&lt;BR /&gt;
Thanks for replying anyway.&lt;BR /&gt;
&lt;BR /&gt;
Cheers,&lt;BR /&gt;
&lt;BR /&gt;
Martin&lt;BR /&gt;</description>
      <pubDate>Mon, 25 Jun 2018 18:41:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/redirect-ap-nac-enforce-deleting-rules/m-p/17347#M493</guid>
      <dc:creator>Anonymous</dc:creator>
      <dc:date>2018-06-25T18:41:00Z</dc:date>
    </item>
  </channel>
</rss>

