cancel
Showing results for 
Search instead for 
Did you mean: 

User Profile Assignment for WPA2 Enterprise users

User Profile Assignment for WPA2 Enterprise users

Simon9
New Contributor

Hi,

in our configuration we have a guest networks that is used by guests and also employees from our company. It uses a wpa2 enterprise with ExtremeCloud IQ Authentication Service.

What i was trying to do is apply a different classification between guests and employees to avoid CWP for Policy Acceptance for employees. Both will be assigned to the same vlan and i'd like to keep a single ssid. So i activate the option "Apply a different user profile to various clients and user groups."

Simon9_0-1672737003217.png

And as ASSIGNMENT RULES I created a dedicated UPA with classification based on User Group. But there it seems that this is made only for Private PSK. 

Simon9_1-1672737121728.png

It is also showing non PPSK group but then it seems to not be working correctly when using this as classification.

Has someone had the same experience? Did someone find a way to solve this problem?

Thank you

3 REPLIES 3

Simon9
New Contributor

Thank you James,

I think that we have two problem in one. One of them can be resolved by your solution, the other is that is seems that the classification is working only for PPSK and not for WPA2 enterprise device.

Charlotte6385
New Contributor

For me exactly the same ... really annoying! MyJohnDeere

James_A
Valued Contributor

I had something similar, see https://community.extremenetworks.com/t5/extremecloud-iq/show-user-role/td-p/89228 where I note "bypass-cwp is an attribute of user-profile, not user-profile-mapping" so you'll need two user profiles that point to the same VLAN.

GTM-P2G8KFN