Cisco Meraki : Add ISE as a RADIUS Server for Guest SSID

Add ISE as a RADIUS Server for Guest SSID

In this article, we will going to discuss how to add ISE as a RADIUS Server for Guest SSID in the Meraki Dashboard. 

Fig 1.1- Meraki Basic Design 

Step 1: Under the Configure menu in the Meraki dashboard, select Access control.

Step 2 Select the SSID from the drop down menu that will be used by the Guest Identity Group

Step 3 Ensure the Open (no encryption) radio button is selected for Association Requirements.

Step 4 Select Single sign on for Splash Page and ensure my RADIUS server is selected from the drop down menu.

Step 5 Under RADIUS for splash page, enter the publically reachable IP address, port 1812 and secret of the ISE policy service node.

Step 6 Ensure that Assign group policies by device type is disabled. 

Step 7 Select Bridge mode for Client IP Assignment.

Step 8 Set the VLAN tagging option to Use VLAN tagging. 

Step 9 Under VLAN ID, select Add VLAN.

Step 10 Enter the AP Tag name for the Guest VLAN ID.

Step 11 For RADIUS override, select Ignore VLAN attribute in RADIUS responses.

Step 12 Click Save Changes to complete the configuration of the SSID

Fig 1.2- Meraki Guest SSID Access Control 

Other Cisco Meraki Articles
Cisco Catalyst 9k on Meraki Dashboard - The Network DNA
Cisco Meraki: Add ISE as a RADIUS Server for Dot1x SSID - The Network DNA
Part 1: 10 Basic interview questions on Cisco Meraki - The Network DNA
Cisco Meraki: Configure Meraki Wireless Group Policy with ISE - The Network DNA