Which two commands are required on a Cisco 9800 WLC to configure AAA for central web authentication?
Choose an answer
Tap an option to check your answer.
Correct answer: Device(config)# aaa server radius dynamic-author, Device(config-locsvr-da-radius)# client 10.10.10.12 server-key 0 SECRET.
Why this is the answer
The aaa server radius dynamic-author command globally enables the WLC to act as a RADIUS Dynamic Authorization Client, allowing it to receive Change of Authorization (CoA) messages from a RADIUS server. This is crucial for central web authentication as the RADIUS server sends CoA messages to re-authenticate or re-authorize clients after successful web authentication. The client 10.10.10.12 server-key 0 SECRET command then specifies the IP address of the RADIUS server (10.10.10.12) that will send these CoA messages and the shared secret (SECRET) for secure communication. Without these two commands, the WLC cannot properly process CoA messages for central web authentication. The other options are either incorrect syntax for a Cisco IOS XE WLC (like the 9800 series) or relate to different AAA configurations (e.g., RADIUS accounting or WLAN AAA override, which is not directly part of enabling dynamic authorization).
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed