Deployment Guide

Table Of Contents
Table 19: Centralized Web Authentication Network Settings (continued)
Field Description
MAC-Based Authentication (Optional) Select this option to enable MBA. When selected,
multi-factor authentication is enabled.
The following parameter displays when MAC-based
Authentication is enabled:
MBA Timeout Role. Select the role that will be assigned to a
wireless client during MAC-based authentication (MBA) if
the RADIUS server access request times out. If no MBA
Timeout Role is selected, then a RADIUS server timeout is
treated like an Access-Reject, which prevents the client from
accessing the network. Other options:
— create a new role
— edit role
— delete role
Captive Portal Type CWA
AAA Policy Specify the AAA Policy associated with the captive portal.
Define the RADIUS server used for authentication in the AAA
Policy. This is the IP address of the captive portal on
ExtremeControl.
Note: Local Network Access Control is not supported.
Default Auth Role Specify the default authorization role that is configured on
Extreme Campus Controller.
Default VLAN Specify the default VLAN that is configured on Extreme
Campus Controller Bridged at AC VLANs are supported.
CWA Network Settings - ExtremeControl Deploying Centralized Web Authentication
142 Extreme Campus Controller Deployment Guide for version 5.46.03