Google OAuth sigon for Splash - Meraki Wireless

TobiB
Just browsing

Google OAuth sigon for Splash - Meraki Wireless

Hi Guys,

 

I have an unusual behaviour I need help with. I have Google OAuth enabled in my test environment (trying out a coffee shop styled wifi), and using the domain of my company (our emails is by Google) as allowed domains.

 

Walled Garden to allow:

 

*.client-channel.google.com
accounts.google.com
apis.google.com
clients*.google.com
contacts.google.com
*.googleusercontent.com
mail.google.com
ssl.gstatic.com
www.google.com
www.gstatic.com
ogs.google.com
play.google.com

 

 

It works well for people using Mac in my company. However, for Windows laptop, iPhones and Andriod mobiles, I get a 400 error.

"The server cannot process the request because it is malformed. It should not be retried."

 

 

So only MacOs works for me.


Note, I have not enabled anything from the Google admin console, as I believed OAuth should work without the need for that.

 

I'd appreciate any help or pointers or for those that have faced this issue, how did you resolve this?

4 Replies 4
Madhan_kumar_G
Getting noticed

Hi, 

 

Pls add below also to the walled garden and let us know.

 

*.googleapis.com

*.client-channel.google.com

Thanks man, that solved most of the issues. Android mobiles and Windows laptop now connect.

 

I still have an issue with iOS. I now get Access Blocked: Authorization Error


Error 403: disallowed_useragent

 

 

 

alemabrahao
Kind of a big deal
Kind of a big deal

Check the documentation here.  https://documentation.meraki.com/General_Administration/Cross-Platform_Content/Using_Google_OAuth_Sp...

 

alemabrahao_0-1687191768207.png

 

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
JoeTansey
Meraki Employee
Meraki Employee

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels