<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic NAC Using Extreme Platform ONE Security and E1120 Controller in ExtremeWireless (General)</title>
    <link>https://community.extremenetworks.com/t5/extremewireless-general/nac-using-extreme-platform-one-security-and-e1120-controller/m-p/121405#M3693</link>
    <description>&lt;P class=""&gt;&lt;SPAN&gt;Hi,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;I have a customer with an existing WLAN based on AP505i access points and an E1120 controller. This year, we are planning to expand the WLAN with Wi-Fi 7 access points managed through Extreme Platform ONE.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;We understand that the AP505i cannot be managed from the cloud, so the customer would eventually have two separate management environments: cloud management for the Wi-Fi 7 APs, and on-premises management for the Wi-Fi 6 APs. This scenario has already been accepted by the customer.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Our main question is about WLAN NAC deployment.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;We are evaluating Extreme Platform ONE Security with the Security Tier license, but we are not sure how this would work in a mixed environment where part of the WLAN is managed on-premises and part from the cloud.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;We assume Platform ONE Security should work well for the Wi-Fi 7 network, but what would happen with the Wi-Fi 6 network that is still running with the on-premises controller?&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Would we need a RADIUS proxy to support NAC authentication for the controller-managed WLAN? Also, is it possible to integrate the cloud-based NAC directly with the controller, without using a RADIUS proxy?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Any guidance or best practices for this type of mixed deployment would be appreciated.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 25 Mar 2026 20:25:46 GMT</pubDate>
    <dc:creator>rortega</dc:creator>
    <dc:date>2026-03-25T20:25:46Z</dc:date>
    <item>
      <title>NAC Using Extreme Platform ONE Security and E1120 Controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-general/nac-using-extreme-platform-one-security-and-e1120-controller/m-p/121405#M3693</link>
      <description>&lt;P class=""&gt;&lt;SPAN&gt;Hi,&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;I have a customer with an existing WLAN based on AP505i access points and an E1120 controller. This year, we are planning to expand the WLAN with Wi-Fi 7 access points managed through Extreme Platform ONE.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;We understand that the AP505i cannot be managed from the cloud, so the customer would eventually have two separate management environments: cloud management for the Wi-Fi 7 APs, and on-premises management for the Wi-Fi 6 APs. This scenario has already been accepted by the customer.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Our main question is about WLAN NAC deployment.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;We are evaluating Extreme Platform ONE Security with the Security Tier license, but we are not sure how this would work in a mixed environment where part of the WLAN is managed on-premises and part from the cloud.&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;We assume Platform ONE Security should work well for the Wi-Fi 7 network, but what would happen with the Wi-Fi 6 network that is still running with the on-premises controller?&lt;/SPAN&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;SPAN&gt;Would we need a RADIUS proxy to support NAC authentication for the controller-managed WLAN? Also, is it possible to integrate the cloud-based NAC directly with the controller, without using a RADIUS proxy?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Any guidance or best practices for this type of mixed deployment would be appreciated.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 25 Mar 2026 20:25:46 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-general/nac-using-extreme-platform-one-security-and-e1120-controller/m-p/121405#M3693</guid>
      <dc:creator>rortega</dc:creator>
      <dc:date>2026-03-25T20:25:46Z</dc:date>
    </item>
    <item>
      <title>Re: NAC Using Extreme Platform ONE Security and E1120 Controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-general/nac-using-extreme-platform-one-security-and-e1120-controller/m-p/121406#M3694</link>
      <description>&lt;P&gt;Hi Rortega,&lt;/P&gt;&lt;P&gt;As far as I remember, EP1 Security doesn't have native integration with XIQ-C.&lt;BR /&gt;Depending on the number of APs involved, the most suitable approach would be to control everything through XIQ-C, using the internal NAC.&lt;BR /&gt;If you still want to keep XIQ and XIQ-C, there's the possibility of treating XIQ-C as a third-party solution in ZTNA (EP1 Security), but using XIQ-SE + NAC should certainly be simpler at this point as it's a more mature solution.&lt;/P&gt;&lt;P&gt;Regardless, and now talking about hardware, it's not good to mix the deployment of APs in the same coverage areas, as newer clients (WiFi 7) will prefer to connect to the new APs rather than the 505i.&lt;/P&gt;&lt;P&gt;The latest version of XIQ-C already supports the AP5020 and AP5022, and will soon also support PPSK.&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I hope this helps.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;Raúl Carbonari&lt;/P&gt;</description>
      <pubDate>Wed, 25 Mar 2026 22:06:35 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-general/nac-using-extreme-platform-one-security-and-e1120-controller/m-p/121406#M3694</guid>
      <dc:creator>Raul_Carbonari</dc:creator>
      <dc:date>2026-03-25T22:06:35Z</dc:date>
    </item>
    <item>
      <title>Re: NAC Using Extreme Platform ONE Security and E1120 Controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-general/nac-using-extreme-platform-one-security-and-e1120-controller/m-p/121407#M3695</link>
      <description>&lt;P&gt;Hi rortega,&lt;/P&gt;&lt;P&gt;I’ve just reviewed the hardware, and the E113O reaches End-of-Software-Maintenance (EOSM) on 4/15/2026, while the AP505i reaches EOSM on 1/15/2027.&lt;/P&gt;&lt;P&gt;Replacing them might be the better path if the client isn't overly concerned about the budget. Given that the 505i are WiFi 6 and everything is moving toward WiFi 7, a complete refresh makes sense, assuming most of their devices are WiFi 7-ready.&lt;/P&gt;&lt;P&gt;Raúl Carbonari&lt;/P&gt;</description>
      <pubDate>Wed, 25 Mar 2026 22:22:55 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-general/nac-using-extreme-platform-one-security-and-e1120-controller/m-p/121407#M3695</guid>
      <dc:creator>Raul_Carbonari</dc:creator>
      <dc:date>2026-03-25T22:22:55Z</dc:date>
    </item>
    <item>
      <title>Re: NAC Using Extreme Platform ONE Security and E1120 Controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-general/nac-using-extreme-platform-one-security-and-e1120-controller/m-p/121411#M3696</link>
      <description>&lt;P&gt;Hi Raúl,&lt;/P&gt;&lt;P&gt;Thank you again for the clarification.&lt;/P&gt;&lt;P&gt;Based on your comment about the possibility of treating XIQ-C as a third-party solution in EP1 Security, I would like to clarify one more point:&lt;/P&gt;&lt;P&gt;If we go in that direction, should we consider deploying a RADIUS Proxy in order to establish communication between XIQ-C and EP1 Security, or is it possible to integrate them directly without the proxy?&lt;/P&gt;&lt;P&gt;I would appreciate any guidance on whether this type of integration is supported, and if so, what the recommended approach would be.&lt;/P&gt;&lt;P&gt;Thanks again.&lt;/P&gt;</description>
      <pubDate>Thu, 26 Mar 2026 19:12:14 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-general/nac-using-extreme-platform-one-security-and-e1120-controller/m-p/121411#M3696</guid>
      <dc:creator>rortega</dc:creator>
      <dc:date>2026-03-26T19:12:14Z</dc:date>
    </item>
    <item>
      <title>Re: NAC Using Extreme Platform ONE Security and E1120 Controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-general/nac-using-extreme-platform-one-security-and-e1120-controller/m-p/121412#M3697</link>
      <description>&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;Hi,&lt;BR /&gt;Unfortunately, I haven't implemented ZTNA yet, and I don't have all the details, but the XIQ-C has RADSEC support, so I imagine it's eventually possible to connect directly.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;The proxy solution is for cases where the device doesn't have that capability.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;I took a look at the documentation, but there's nothing specific about the XIQ-C. Perhaps it's necessary to contact SE or open a case with GTAC.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt; &lt;A href="https://documentation.extremenetworks.com/Extreme%20Platform%20ONE%20Security%20v25.5.0%20User%20Guide/downloads/Extreme_Platform_ONE_Security_25_5_0_User_Guide.pdf" target="_blank" rel="noopener"&gt;https://documentation.extremenetworks.com/Extreme%20Platform%20ONE%20Security%20v25.5.0%20User%20Guide/downloads/Extreme_Platform_ONE_Security_25_5_0_User_Guide.pdf &lt;/A&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;Regards, &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;Raúl Carbonari&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Mar 2026 20:25:33 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-general/nac-using-extreme-platform-one-security-and-e1120-controller/m-p/121412#M3697</guid>
      <dc:creator>Raul_Carbonari</dc:creator>
      <dc:date>2026-03-26T20:25:33Z</dc:date>
    </item>
  </channel>
</rss>

