Specifications
4-3
Cisco NAC Appliance - Clean Access Manager Configuration Guide
OL-28003-01
Chapter 4 Wireless LAN Controller Management: Configuring Wireless Out-of-Band Deployment
Overview
• Clean Access Servers supporting wireless client login and authentication must be installed and
configured in Virtual Gateway mode for Cisco NAC Appliance Release 4.8(1) and earlier versions.
• For Cisco NAC Appliance Release 4.8(2) and later, Cisco Wireless LAN Controllers must be
configured in bridging mode to interoperate with Layer 3 Out-of-Band wireless client login. Refer
to DHCP Bridging Mode, page 4-3.
Note Administrators can update the object IDs (OIDs) of supported WLCs through CAM updates (under
Device Management > Clean Access > Updates > Summary | Settings). For example, if a new WLC
of a supported model (Cisco 4400 Series) is released, administrators only need to perform Cisco Updates
on the CAM to obtain support for the WLC OIDs, instead of performing a software upgrade of the
CAM/CAS.
The update WLC OID feature only applies to existing models. If a new WLC series is introduced,
administrators will still need to upgrade to ensure Wireless OOB support for the new WLCs. See
Configure and Download Updates, page 9-14.
Note The supported mode of HREAP in Cisco NAC Wireless Out-Of-Band is central authentication, central
switching. In this state, the controller handles client authentication, and all client data is tunneled back
to the controller. This state is valid only in connected mode.
Local Switching is not supported with Cisco NAC Wireless OOB.
Note For the most current details on WLC model/IOS version support, refer to Switch Support for Cisco NAC
Appliance.
DHCP Bridging Mode
To enable the DHCP bridging functionality on the controller, you must disable the DHCP proxy feature
on the controller. By default, DHCP proxy is enabled.
In the 4.2.x.x codes this can be done using the CLI using the following commands:
(Cisco Controller) > config dhcp proxy disable
(Cisco Controller) > show dhcp proxy
DHCP Proxy Behavior: disabled
Table 4-2 Supported Wireless LAN Controller Models
Supported Wireless LAN Controllers
Wireless LAN
Controller
Release
Cisco NAC
Appliance
Release
Cisco 4400 Series Wireless LAN Controllers 5.1 and later 4.9
Cisco 2000 Series Wireless LAN Controllers
Cisco Catalyst 3750G Integrated Wireless LAN Controller
Cisco Catalyst 6500/7600 Series Wireless Services Module (WiSM)
Cisco Wireless LAN Controller Module