Latest

Cisco Meraki: Add ISE as a RADIUS Server for Dot1x SSID

Add ISE as a RADIUS Server for Dot1x SSID

In this article, we will going to discuss how to add ISE as a RADIUS server for Dot1x SSID in the Meraki Dashboard. 

Fig 1.1- Meraki Basic Network

Step 1 Under the Configure menu in the Meraki dashboard, select Access control.

Step 2 Select the SSID from the drop down menu that will be used by the Employee Identity Group.

Step 3 Ensure the WPA2-­‐Enterprise radio button is selected along with my RADIUS server in the drop down menu

Step 4 Select None (direct access) for Splash Page.

Step 5 In the RADIUS servers field, enter the IP address, port 1812 and secret of the ISE policy service nodes.

Step 6 Disable RADIUS testing.

Step 7 Enable RADIUS accounting.

Step 8 In the RADIUS accounting field, enter the IP address, port 1813 and secret of the ISE policy service nodes. 

Step 9 In the RADIUS attribute specifying group policy name field, select Airespace-­‐ACL-­‐Name.

Step 10 Ensure that Assign group policies by device type is disabled. 

Step 11 Select Bridge mode for Client IP Assignment.

Step 12 Set the VLAN tagging option to Don’t use VLAN tagging.

Step 13 Click Save Changes to complete the configuration of the SSID