<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic AP130 Firewalls - application deny not working in Aerohive Migrated Content</title>
    <link>https://community.extremenetworks.com/t5/aerohive-migrated-content/ap130-firewalls-application-deny-not-working/m-p/77252#M7381</link>
    <description>&lt;P&gt;I’m trying to block Netflix by extending an existing IP firewall rule.&lt;/P&gt;&lt;P&gt;Some more entries on top of the below, the two lines referring to netflix is what I have added&amp;nbsp;&lt;/P&gt;&lt;P&gt;ip-policy Guest-FW id 28 from 0.0.0.0 0.0.0.0 to 0.0.0.0 0.0.0.0 service "L7-NETFLIX VIDEO STREAM" action deny log packet-drop&lt;BR /&gt;ip-policy Guest-FW id 29 from 0.0.0.0 0.0.0.0 to 0.0.0.0 0.0.0.0 service "L7-NETFLIX SITE" action deny log packet-drop&lt;BR /&gt;user-profile GUEST_WIFI security ip-policy from-access Guest-FW&lt;BR /&gt;user-profile GUEST_WIFI ip-policy-default-action permit&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I’m not sure why but this doesn’t seem to be working&amp;nbsp;&lt;/P&gt;&lt;P&gt;Version: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;HiveOS 8.2r4 build-207023&lt;BR /&gt;app signatures&amp;nbsp;ver 5.3.4 &amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 29 Oct 2020 20:45:52 GMT</pubDate>
    <dc:creator>PPat</dc:creator>
    <dc:date>2020-10-29T20:45:52Z</dc:date>
    <item>
      <title>AP130 Firewalls - application deny not working</title>
      <link>https://community.extremenetworks.com/t5/aerohive-migrated-content/ap130-firewalls-application-deny-not-working/m-p/77252#M7381</link>
      <description>&lt;P&gt;I’m trying to block Netflix by extending an existing IP firewall rule.&lt;/P&gt;&lt;P&gt;Some more entries on top of the below, the two lines referring to netflix is what I have added&amp;nbsp;&lt;/P&gt;&lt;P&gt;ip-policy Guest-FW id 28 from 0.0.0.0 0.0.0.0 to 0.0.0.0 0.0.0.0 service "L7-NETFLIX VIDEO STREAM" action deny log packet-drop&lt;BR /&gt;ip-policy Guest-FW id 29 from 0.0.0.0 0.0.0.0 to 0.0.0.0 0.0.0.0 service "L7-NETFLIX SITE" action deny log packet-drop&lt;BR /&gt;user-profile GUEST_WIFI security ip-policy from-access Guest-FW&lt;BR /&gt;user-profile GUEST_WIFI ip-policy-default-action permit&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I’m not sure why but this doesn’t seem to be working&amp;nbsp;&lt;/P&gt;&lt;P&gt;Version: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;HiveOS 8.2r4 build-207023&lt;BR /&gt;app signatures&amp;nbsp;ver 5.3.4 &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 29 Oct 2020 20:45:52 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/aerohive-migrated-content/ap130-firewalls-application-deny-not-working/m-p/77252#M7381</guid>
      <dc:creator>PPat</dc:creator>
      <dc:date>2020-10-29T20:45:52Z</dc:date>
    </item>
    <item>
      <title>Re: AP130 Firewalls - application deny not working</title>
      <link>https://community.extremenetworks.com/t5/aerohive-migrated-content/ap130-firewalls-application-deny-not-working/m-p/77253#M7382</link>
      <description>&lt;P&gt;Is the AP configuration fully updated? If it is, I might recommend updating the firmware to the latest version to make sure you have all the available bug fixes in place.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 29 Oct 2020 21:02:11 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/aerohive-migrated-content/ap130-firewalls-application-deny-not-working/m-p/77253#M7382</guid>
      <dc:creator>SamPirok</dc:creator>
      <dc:date>2020-10-29T21:02:11Z</dc:date>
    </item>
    <item>
      <title>Re: AP130 Firewalls - application deny not working</title>
      <link>https://community.extremenetworks.com/t5/aerohive-migrated-content/ap130-firewalls-application-deny-not-working/m-p/77254#M7383</link>
      <description>&lt;P&gt;yes, the part of the config I have showed before is taken form an actual AP.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We’d really want to upgrade to the latest but our HM isn’t in the best state at the moment so this is not possible - pending case&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 29 Oct 2020 21:10:25 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/aerohive-migrated-content/ap130-firewalls-application-deny-not-working/m-p/77254#M7383</guid>
      <dc:creator>PPat</dc:creator>
      <dc:date>2020-10-29T21:10:25Z</dc:date>
    </item>
    <item>
      <title>Re: AP130 Firewalls - application deny not working</title>
      <link>https://community.extremenetworks.com/t5/aerohive-migrated-content/ap130-firewalls-application-deny-not-working/m-p/77255#M7384</link>
      <description>&lt;P&gt;You should only need to add those two rules and set the action to deny, which I can see you’ve done already. I’d recommend opening a second case for the firewall issue so our techs can start collecting logs to dig deeper in to this issue with you.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 30 Oct 2020 21:35:02 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/aerohive-migrated-content/ap130-firewalls-application-deny-not-working/m-p/77255#M7384</guid>
      <dc:creator>SamPirok</dc:creator>
      <dc:date>2020-10-30T21:35:02Z</dc:date>
    </item>
  </channel>
</rss>

