11-06-2017 06:39 AM
Two node ISE cluster. One outside the FW. The other inside the firewall. Customer would like to have initial WLC RADIUS request be sent to the internal ISE. The internal ISE would then send a radius URL redirect for the Outside ISE to the client. The customer does not want to put any firewall holes or second interfaces on the Outside-ISE. Would like that ISE to remain completely outside the firewall. Is this scenario possible for Inside-ISE to start the session and hand off to Outside-ISE session ownership?
Solved! Go to Solution.
11-06-2017 07:58 AM
This will not work as there is no session hand-off from one PSN to another.
What about using WLC anchor and foreign, for example?
11-06-2017 07:52 AM
researching
11-06-2017 07:58 AM
This will not work as there is no session hand-off from one PSN to another.
What about using WLC anchor and foreign, for example?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide