Guest

Preview Tool

Cisco Bug: CSCvi23495 - ME GUI : Redirect URL having IP address instead FQDN has issues with preauth acl rules creation

Last Modified

Nov 25, 2018

Products (1)

  • Cisco Mobility Express for Aironet Access Points

Known Affected Releases

8.7(1.146) 8.7(1.150) 8.7(1.153)

Description (partial)

Symptom:
0.0.0.0/255.255.255.255 rule created instead with Redirect server IP
eg.  1         0.0.0.0/0.0.0.0                 0.0.0.0/255.255.255.255  Any     0-65535     0-65535  Any Permit

The guest clients may not be able to be able to see captive portal page and may not be able to successfully get authenticated.

Conditions:
Redirect URL having IP address instead FQDN

This issue a raises in the following conditions:


1) When port number is attached to the IP address in captive portal URL field 

ex:  http://12.13.14.15:456/index.html 

2) When captive portal URl field contains something like below 

ex: http://1.2.3.4.login.html 


WAR for the above 2 conditions:
====================

User has to delete the below 2 acls from the pre-auth acl list and add the required acl rules manually. 

             0.0.0.0/0.0.0.0                 0.0.0.0/255.255.255.255  Any     0-65535     0-65535  Any Permit
             0.0.0.0/255.255.255.255         0.0.0.0/0.0.0.0          Any     0-65535     0-65535  Any Permit
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.