I am interrested also for this feature on meraki switches as we have switches on remote locations using central ISE for 802.1x (connected via meraki VPN to HQ where ISE are located), via EAP-TLS auth (so meraki radius is not an option ...) If vpn is down to HQ, no ISE are available, i would like to have a fail open scenario = allow access without auth, when ISE radius are not available from Switches Guest vlan is not an option as when 802.1x auth is rejected, user goes to guest vlan ... this guest vlan cannot be the corporate vlan ... anyone from Meraki to let us know if this is in roadmap ? thanks guillaume
... View more