300-430 · Question #62
A network engineer is configuring a Cisco AireOS WLC environment for central web authentication using Cisco ISE. The controllers are configured using auto-anchor for the guest network. Which three…
The correct answer is C. UDP/1812-1813 open to ISE D. downloadable preauth ACL on ISE E. local preauth ACL on WLC. For central web authentication with Cisco ISE in a Cisco AireOS WLC environment using auto- anchor for the guest network, the foreign WLC must have UDP ports 1812 and 1813 open to ISE for RADIUS authentication and accounting. Additionally, a downloadable preauth ACL on ISE is…
Question
A network engineer is configuring a Cisco AireOS WLC environment for central web authentication using Cisco ISE. The controllers are configured using auto-anchor for the guest network. Which three components must be implemented for the foreign WLC? (Choose three.)
Options
- ADHCP RADIUS profiling enabled.
- BHTTP RADIUS profiling enabled.
- CUDP/1812-1813 open to ISE
- Ddownloadable preauth ACL on ISE
- Elocal preauth ACL on WLC
- FWLAN Layer 2 security
How the community answered
(51 responses)- A24% (12)
- B10% (5)
- C61% (31)
- F6% (3)
Explanation
For central web authentication with Cisco ISE in a Cisco AireOS WLC environment using auto- anchor for the guest network, the foreign WLC must have UDP ports 1812 and 1813 open to ISE for RADIUS authentication and accounting. Additionally, a downloadable preauth ACL on ISE is required to define the permissions for the guest user before authentication, and a local preauth ACL on the WLC is needed to restrict or allow traffic prior to authentication.
Topics
Community Discussion
No community discussion yet for this question.