<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Can a policy be assigned to a vlan on a S series ingress trunk port. in ExtremeCloud IQ- Site Engine Management Center</title>
    <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/can-a-policy-be-assigned-to-a-vlan-on-a-s-series-ingress-trunk/m-p/77006#M8632</link>
    <description>&lt;P&gt;There are big differences between C3 and S. (not only in price, but also in features/capabilities)&lt;/P&gt; &lt;P&gt;The C3 is very limited on vlan to policy mapping compare to S. If I remember well it was only one mapping per switch on C3.&lt;/P&gt; &lt;P&gt;i do not see any deny rule in the list of commands.&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 25 Feb 2020 03:51:21 GMT</pubDate>
    <dc:creator>Zdeněk_Pala</dc:creator>
    <dc:date>2020-02-25T03:51:21Z</dc:date>
    <item>
      <title>Can a policy be assigned to a vlan on a S series ingress trunk port.</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/can-a-policy-be-assigned-to-a-vlan-on-a-s-series-ingress-trunk/m-p/77003#M8629</link>
      <description>&lt;P&gt;Trying to set a policy on a vlan on an S Series switch/router ingress port (trunk port).&amp;nbsp; This is to prevent these users from accessing other vlans/networks/devices.&amp;nbsp; No NAC involved here.&amp;nbsp; The policy works but it is being applied to everything coming in the port.&amp;nbsp; Both student and employee networks are being restricted.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Feb 2020 23:02:59 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/can-a-policy-be-assigned-to-a-vlan-on-a-s-series-ingress-trunk/m-p/77003#M8629</guid>
      <dc:creator>Walt_Witkowski</dc:creator>
      <dc:date>2020-02-24T23:02:59Z</dc:date>
    </item>
    <item>
      <title>Re: Can a policy be assigned to a vlan on a S series ingress trunk port.</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/can-a-policy-be-assigned-to-a-vlan-on-a-s-series-ingress-trunk/m-p/77004#M8630</link>
      <description>&lt;P&gt;You can assign policy to port&lt;/P&gt; &lt;P&gt;you can assign policy to subnet&lt;/P&gt; &lt;P&gt;you can assign policy to MAC&lt;/P&gt; &lt;P&gt;you can assign policy to Vlan&lt;/P&gt; &lt;P&gt;you can assign policy to authenicated entity (radius/nac)&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;so I suggest to use either IP to policy mapping or Vlan to policy mapping. You may need to use TCI override.&lt;/P&gt; &lt;P&gt;all is configurable through policy manager or through CLI.&lt;/P&gt;</description>
      <pubDate>Mon, 24 Feb 2020 23:30:10 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/can-a-policy-be-assigned-to-a-vlan-on-a-s-series-ingress-trunk/m-p/77004#M8630</guid>
      <dc:creator>Zdeněk_Pala</dc:creator>
      <dc:date>2020-02-24T23:30:10Z</dc:date>
    </item>
    <item>
      <title>Re: Can a policy be assigned to a vlan on a S series ingress trunk port.</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/can-a-policy-be-assigned-to-a-vlan-on-a-s-series-ingress-trunk/m-p/77005#M8631</link>
      <description>&lt;P&gt;&amp;nbsp;I am testing on a trunk port of a C3 which is connected to a downstream user switch before trying on the cores “S” Series trunk ports.&amp;nbsp; Although it appears to be attached to the ports the deny services do not function.&amp;nbsp; What am I missing.&amp;nbsp; This was set with EMC Policy mngr.&lt;/P&gt; &lt;P&gt;&lt;BR /&gt;&lt;BR /&gt; set policy profile 12 name "Assessing" pvid-status enable pvid 0&lt;BR /&gt; set policy profile 13 name "Base Services Student"&lt;BR /&gt; set policy profile 14 name "Student_Access_Role"&lt;BR /&gt; set policy rule admin-profile vlantag 849 admin-pid 14&lt;BR /&gt; set policy rule admin-profile vlantag 849 admin-pid 14 port-string ge.1.2&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt; &amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Feb 2020 01:53:05 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/can-a-policy-be-assigned-to-a-vlan-on-a-s-series-ingress-trunk/m-p/77005#M8631</guid>
      <dc:creator>Walt_Witkowski</dc:creator>
      <dc:date>2020-02-25T01:53:05Z</dc:date>
    </item>
    <item>
      <title>Re: Can a policy be assigned to a vlan on a S series ingress trunk port.</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/can-a-policy-be-assigned-to-a-vlan-on-a-s-series-ingress-trunk/m-p/77006#M8632</link>
      <description>&lt;P&gt;There are big differences between C3 and S. (not only in price, but also in features/capabilities)&lt;/P&gt; &lt;P&gt;The C3 is very limited on vlan to policy mapping compare to S. If I remember well it was only one mapping per switch on C3.&lt;/P&gt; &lt;P&gt;i do not see any deny rule in the list of commands.&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 25 Feb 2020 03:51:21 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/can-a-policy-be-assigned-to-a-vlan-on-a-s-series-ingress-trunk/m-p/77006#M8632</guid>
      <dc:creator>Zdeněk_Pala</dc:creator>
      <dc:date>2020-02-25T03:51:21Z</dc:date>
    </item>
  </channel>
</rss>

