Menu

US Region

Grandmetric LLC
Lewes DE 19958
16192 Coastal Hwy USA
EIN: 98-1615498
+1 302 691 94 10
info@grandmetric.com

EMEA Region

GRANDMETRIC Sp. z o.o.
ul. Metalowa 5, 60-118 Poznań, Poland
NIP 7792433527
+48 61 271 04 43
info@grandmetric.com

UK

Grandmetric LTD
Office 584b
182-184 High Street North
London
E6 2JA
+44 20 3321 5276
info@grandmetric.com

  • en
  • pl
  • Cisco WLC does not switch to newly added Radius server

    Cisco WLC does not switch to newly added Radius server

    Date: 13.06.2018

    Author:


    Problem description

    I came across one of customer’s problem with Cisco WLC wireless controller and 802.1x network. Radius service was driven by NPS (Microsoft Windows Radius). After setup of new NPS server customer configured the second Radius server on WLC swapping the radius server priority (on the first place under the WLAN Security -> Advanced tab he set newly created radius and on the second place the old one). However, devices were still presented with old server certificates causing connectivity issues.

    Radius fallback mechanism

    Above behaviour is well known. The problem is, the NAD (Network Access Device) in this case Cisco WLC will request from the last known Radius server till the communication fails. Then and only then WLC will fallback to alternate Radius even it is on the first place. How to force the WLC to take the newly configured Radius? Switch off the old one Radius by choosing “None” from drop down list and apply changes. Then choose this server again if you prefer to have two for redundancy purposes.

    Cisco_WLC_Radius_Server

    Hope this helps!

    Author

    Marcin Bialy

    Marcin Biały is Network and Security Architect with over 14 years of experience, with Service Provider and Enterprise networking background. He used to work for large service providers, global vendors and integration services companies as Network Architect, Leading Architect and Techincal Solution Manager positions. He designed, implemented and supported dozens large scale projects and infrastructure migrations, solved hundreds of tickets and spent hours with CLI and GUI of many flavors. Marcin is also holding industry recognizable certificates such as CCNP, CCNA, CCSI #35269, FCNSP #7207, FCNSA and more.

    Leave a Reply

    Your email address will not be published. Required fields are marked *


    Grandmetric