<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: To which interfaces (radio or wired) are the user based ip filter options &amp;quot;inbound/outbound&amp;quot; associated (AP 230)? in Aerohive Migrated Content</title>
    <link>https://community.extremenetworks.com/t5/aerohive-migrated-content/to-which-interfaces-radio-or-wired-are-the-user-based-ip-filter/m-p/91868#M13179</link>
    <description>&lt;P&gt;Hi Andreas,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Looking at your rule name I'd guess you're trying to block Netflix therefore you'd keep this as an outbound rule. i.e. if the client tries to access Netflix, the AP would usually forward this traffic out to the internet (an outbound rule (Client -&amp;gt; AP)). Thus an inbound rule would be the opposite of this (AP -&amp;gt; Client)&lt;/P&gt;</description>
    <pubDate>Wed, 03 Apr 2019 19:22:27 GMT</pubDate>
    <dc:creator>ashley_finch</dc:creator>
    <dc:date>2019-04-03T19:22:27Z</dc:date>
    <item>
      <title>To which interfaces (radio or wired) are the user based ip filter options "inbound/outbound" associated (AP 230)?</title>
      <link>https://community.extremenetworks.com/t5/aerohive-migrated-content/to-which-interfaces-radio-or-wired-are-the-user-based-ip-filter/m-p/91867#M13178</link>
      <description>&lt;P&gt;Dear all,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we are using the Hivemanager NG (build version 12.8.1.2-NGVAMAY18 ) to configure the user based ip filters. As access points we are using the AP230 (HiveOS 8.3r4 Mayberry build-195604 ).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I do not really understand, to which interfaces the user based ip filter options "inbound/outbound" are linked? &lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;For example: If a packet/frame arrives on the wireless interface (Cient --&amp;gt; AP230), will be the inbound ACL executed? Or will be the inbound ACL executed, when a packet/frame comes for the wired interface (accessswitch --&amp;gt; AP 230)?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;And what is with the outbound ACL's? To make it more understandable please take a look on the two following figures:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="797aa9a268984845b468c4ef7bfb7e61_0690c000007saUWAAY.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/4317i465E9CE7FCC3F238/image-size/large?v=v2&amp;amp;px=999" role="button" title="797aa9a268984845b468c4ef7bfb7e61_0690c000007saUWAAY.png" alt="797aa9a268984845b468c4ef7bfb7e61_0690c000007saUWAAY.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt; &lt;IMG src="sfdc://0690c000007saUbAAI" alt="Difference Inbound-Outbound" /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am happy if someone can explain it to me &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Andreas&lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2019 17:48:48 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/aerohive-migrated-content/to-which-interfaces-radio-or-wired-are-the-user-based-ip-filter/m-p/91867#M13178</guid>
      <dc:creator>andreas_brueck</dc:creator>
      <dc:date>2019-04-03T17:48:48Z</dc:date>
    </item>
    <item>
      <title>Re: To which interfaces (radio or wired) are the user based ip filter options "inbound/outbound" associated (AP 230)?</title>
      <link>https://community.extremenetworks.com/t5/aerohive-migrated-content/to-which-interfaces-radio-or-wired-are-the-user-based-ip-filter/m-p/91868#M13179</link>
      <description>&lt;P&gt;Hi Andreas,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Looking at your rule name I'd guess you're trying to block Netflix therefore you'd keep this as an outbound rule. i.e. if the client tries to access Netflix, the AP would usually forward this traffic out to the internet (an outbound rule (Client -&amp;gt; AP)). Thus an inbound rule would be the opposite of this (AP -&amp;gt; Client)&lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2019 19:22:27 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/aerohive-migrated-content/to-which-interfaces-radio-or-wired-are-the-user-based-ip-filter/m-p/91868#M13179</guid>
      <dc:creator>ashley_finch</dc:creator>
      <dc:date>2019-04-03T19:22:27Z</dc:date>
    </item>
    <item>
      <title>Re: To which interfaces (radio or wired) are the user based ip filter options "inbound/outbound" associated (AP 230)?</title>
      <link>https://community.extremenetworks.com/t5/aerohive-migrated-content/to-which-interfaces-radio-or-wired-are-the-user-based-ip-filter/m-p/91869#M13180</link>
      <description>&lt;P&gt;Hey Ashley,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thank you very much for the explanation.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could you also answer me the following question please:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If i define a rule for example to block mDNS between wireless clients, which are connected to the same access point, is a inbound rule the right choice? &lt;/P&gt;</description>
      <pubDate>Tue, 09 Apr 2019 16:20:43 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/aerohive-migrated-content/to-which-interfaces-radio-or-wired-are-the-user-based-ip-filter/m-p/91869#M13180</guid>
      <dc:creator>andreas_brueck</dc:creator>
      <dc:date>2019-04-09T16:20:43Z</dc:date>
    </item>
    <item>
      <title>Re: To which interfaces (radio or wired) are the user based ip filter options "inbound/outbound" associated (AP 230)?</title>
      <link>https://community.extremenetworks.com/t5/aerohive-migrated-content/to-which-interfaces-radio-or-wired-are-the-user-based-ip-filter/m-p/91870#M13181</link>
      <description>&lt;P&gt;Hi Andreas,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I believe that would be correct for blocking just wireless clients, but you may need it outbound also if there are other devices on the network (from my understanding!). Depending on what traffic you need between different clients you may be able to disable inter-station traffic from within the Policy optional settings.&lt;/P&gt;</description>
      <pubDate>Tue, 09 Apr 2019 18:33:43 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/aerohive-migrated-content/to-which-interfaces-radio-or-wired-are-the-user-based-ip-filter/m-p/91870#M13181</guid>
      <dc:creator>ashley_finch</dc:creator>
      <dc:date>2019-04-09T18:33:43Z</dc:date>
    </item>
  </channel>
</rss>

