<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic RE: Idea: IdentiFi MAC Authentication without RADIUS in ExtremeWireless (Identifi)</title>
    <link>https://community.extremenetworks.com/t5/extremewireless-identifi/idea-identifi-mac-authentication-without-radius/m-p/53484#M5945</link>
    <description>Hi Doug,&lt;BR /&gt;
&lt;BR /&gt;
Thanks for your reply. &lt;BR /&gt;
Then this idea will not work out if customer have more than 64 MAC addresses. In that case RADIUS should come to scene.&lt;BR /&gt;</description>
    <pubDate>Thu, 30 Apr 2015 16:12:00 GMT</pubDate>
    <dc:creator>Karthik1</dc:creator>
    <dc:date>2015-04-30T16:12:00Z</dc:date>
    <item>
      <title>Idea: IdentiFi MAC Authentication without RADIUS</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/idea-identifi-mac-authentication-without-radius/m-p/53482#M5943</link>
      <description>&lt;B&gt;MAC Authentication without RADIUS Server/Only with Controller&lt;BR /&gt;
&lt;/B&gt;I was getting these request from couple of customers where in MAC Auth without RADIUS/only with controller. I have tested below config and found out working. I am posting here for more tweaks and suggestions.&lt;BR /&gt;
&lt;BR /&gt;
Controller : V2110&lt;BR /&gt;
OS : 9.15.03.005&lt;BR /&gt;
&lt;B&gt;&lt;BR /&gt;
&lt;/B&gt; 1. Create Role for MAC Authentication with access control  option as Default deny.&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-20752-3lsl01-1_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/313iF7290C1A608AB2CA/image-size/large?v=v2&amp;amp;px=999" role="button" title="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-20752-3lsl01-1_inline.png" alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-20752-3lsl01-1_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
    2. Add rules under the role by clicking ADD button.&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-1172-9sj9ur-2_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/1494iAE5699ED1C548DC6/image-size/large?v=v2&amp;amp;px=999" role="button" title="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-1172-9sj9ur-2_inline.png" alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-1172-9sj9ur-2_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
    3. For both In and Out Filters, allow specified MAC Address&lt;BR /&gt;
&lt;BR /&gt;
    &lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-32436-urihw2-3_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/5992i0F87A56C4AFD4306/image-size/large?v=v2&amp;amp;px=999" role="button" title="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-32436-urihw2-3_inline.png" alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-32436-urihw2-3_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
      4. Similarly Create individual entries for each allowed MAC  Address.&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-21123-1961tnw-4_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/3027i42A79BE266B4C6D6/image-size/large?v=v2&amp;amp;px=999" role="button" title="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-21123-1961tnw-4_inline.png" alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-21123-1961tnw-4_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
    5. Now Role has been created. Create WLAN for MAC auth&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-12208-tjgy9l-5_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/5415i97AD56F9067766B3/image-size/large?v=v2&amp;amp;px=999" role="button" title="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-12208-tjgy9l-5_inline.png" alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-12208-tjgy9l-5_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
    6. Let the privacy be none and Authentication as disabled.  Create new VNS to map WLAN services and Role.&lt;BR /&gt;
&lt;BR /&gt;
    &lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-11043-ij58y5-6_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/5570i0B34B426F215D62B/image-size/large?v=v2&amp;amp;px=999" role="button" title="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-11043-ij58y5-6_inline.png" alt="685c0d135af54f3db80002a2eb6c27ed_RackMultipart20150430-11043-ij58y5-6_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
     &lt;BR /&gt;
&lt;BR /&gt;
    &lt;B&gt;What to do if you have hundreds of MAC address to be  added?&lt;/B&gt;&lt;BR /&gt;
&lt;BR /&gt;
&lt;B&gt;    &lt;/B&gt;Get all MAC address in and excel sheet and use concatenate  functon to create the create command [Syntax given below]. Login to controller  through putty and navigate to &lt;I&gt;role &lt;/I&gt;and &lt;I&gt;macauth &lt;/I&gt;and issue &lt;I&gt;create &lt;/I&gt;commands copied  from excel sheet. Sample given below&lt;BR /&gt;
&lt;BR /&gt;
    role&lt;BR /&gt;
macauth&lt;BR /&gt;
create 1 proto any eth any mac AB:CD:EF:12:34:56/48  0.0.0.0/0 in both out both allow priority none tos-dscp none cos none&lt;BR /&gt;
applyOne Question I have in mind is "How many MAC address can be used to put in a single ruleset?"</description>
      <pubDate>Thu, 30 Apr 2015 15:01:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/idea-identifi-mac-authentication-without-radius/m-p/53482#M5943</guid>
      <dc:creator>Karthik1</dc:creator>
      <dc:date>2015-04-30T15:01:00Z</dc:date>
    </item>
    <item>
      <title>RE: Idea: IdentiFi MAC Authentication without RADIUS</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/idea-identifi-mac-authentication-without-radius/m-p/53483#M5944</link>
      <description>Hello, &lt;BR /&gt;
&lt;BR /&gt;
This should answer your question...&lt;BR /&gt;
&lt;BR /&gt;
&lt;A href="http://gtacknowledge.extremenetworks.com/articles/Q_A/IdentiFi-How-many-Rules-can-I-have-per-Role" target="_blank" rel="nofollow noreferrer noopener"&gt;http://gtacknowledge.extremenetworks.com/articles/Q_A/IdentiFi-How-many-Rules-can-I-have-per-Role&lt;/A&gt; &lt;BR /&gt;
&lt;BR /&gt;</description>
      <pubDate>Thu, 30 Apr 2015 16:12:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/idea-identifi-mac-authentication-without-radius/m-p/53483#M5944</guid>
      <dc:creator>Doug</dc:creator>
      <dc:date>2015-04-30T16:12:00Z</dc:date>
    </item>
    <item>
      <title>RE: Idea: IdentiFi MAC Authentication without RADIUS</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/idea-identifi-mac-authentication-without-radius/m-p/53484#M5945</link>
      <description>Hi Doug,&lt;BR /&gt;
&lt;BR /&gt;
Thanks for your reply. &lt;BR /&gt;
Then this idea will not work out if customer have more than 64 MAC addresses. In that case RADIUS should come to scene.&lt;BR /&gt;</description>
      <pubDate>Thu, 30 Apr 2015 16:12:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/idea-identifi-mac-authentication-without-radius/m-p/53484#M5945</guid>
      <dc:creator>Karthik1</dc:creator>
      <dc:date>2015-04-30T16:12:00Z</dc:date>
    </item>
  </channel>
</rss>

