<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic RE: IdentiFi; Is there a way to Block MU to MU traffic with B@AP in the same Virtual Network or Wlan Services? in ExtremeWireless (Identifi)</title>
    <link>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33842#M1222</link>
    <description>Hi Rien&lt;BR /&gt;
&lt;BR /&gt;
You can create a rule in the applied role to block traffic to all hosts in the local subnet, make this rule the first in the rule list and permit (or deny) other required traffic types.&lt;BR /&gt;
&lt;BR /&gt;
See this article: &lt;A href="https://gtacknowledge.extremenetworks.com/articles/Solution/Block-MU-to-MU-enabled-but-users-can-still-communicate" target="_blank" rel="nofollow noreferrer noopener"&gt;https://gtacknowledge.extremenetworks.com/articles/Solution/Block-MU-to-MU-enabled-but-users-can-still-communicate&lt;/A&gt;&lt;BR /&gt;
&lt;BR /&gt;
Best regards&lt;BR /&gt;
&lt;BR /&gt;
-Gareth&lt;BR /&gt;
&lt;BR /&gt;</description>
    <pubDate>Thu, 16 Jul 2015 18:46:00 GMT</pubDate>
    <dc:creator>Gareth_Mitchell</dc:creator>
    <dc:date>2015-07-16T18:46:00Z</dc:date>
    <item>
      <title>IdentiFi; Is there a way to Block MU to MU traffic with B@AP in the same Virtual Network or Wlan Services?</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33841#M1221</link>
      <description>We are installing a new Identify installation for a customer with  several locations, ( +/- 200)&lt;BR /&gt;
&lt;BR /&gt;
the Wlan on the remote locations are going to use by Employees and customers. because of the expensive WAN connections we want that the customers are  the internet connections on the remote site, so we configure B@AP. And we also want to block the customer mobile unit to mobile unit traffic.  &lt;BR /&gt;
&lt;BR /&gt;
Is there a way to block MU to MU traffic at the AP?&lt;BR /&gt;
&lt;BR /&gt;
Thank you for your help&lt;BR /&gt;
&lt;BR /&gt;
Rien van Maurik&lt;BR /&gt;
&lt;BR /&gt;</description>
      <pubDate>Thu, 16 Jul 2015 15:46:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33841#M1221</guid>
      <dc:creator>Rien_Maurik</dc:creator>
      <dc:date>2015-07-16T15:46:00Z</dc:date>
    </item>
    <item>
      <title>RE: IdentiFi; Is there a way to Block MU to MU traffic with B@AP in the same Virtual Network or Wlan Services?</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33842#M1222</link>
      <description>Hi Rien&lt;BR /&gt;
&lt;BR /&gt;
You can create a rule in the applied role to block traffic to all hosts in the local subnet, make this rule the first in the rule list and permit (or deny) other required traffic types.&lt;BR /&gt;
&lt;BR /&gt;
See this article: &lt;A href="https://gtacknowledge.extremenetworks.com/articles/Solution/Block-MU-to-MU-enabled-but-users-can-still-communicate" target="_blank" rel="nofollow noreferrer noopener"&gt;https://gtacknowledge.extremenetworks.com/articles/Solution/Block-MU-to-MU-enabled-but-users-can-still-communicate&lt;/A&gt;&lt;BR /&gt;
&lt;BR /&gt;
Best regards&lt;BR /&gt;
&lt;BR /&gt;
-Gareth&lt;BR /&gt;
&lt;BR /&gt;</description>
      <pubDate>Thu, 16 Jul 2015 18:46:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33842#M1222</guid>
      <dc:creator>Gareth_Mitchell</dc:creator>
      <dc:date>2015-07-16T18:46:00Z</dc:date>
    </item>
    <item>
      <title>RE: IdentiFi; Is there a way to Block MU to MU traffic with B@AP in the same Virtual Network or Wlan Services?</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33843#M1223</link>
      <description>Hello Garath,&lt;BR /&gt;
&lt;BR /&gt;
could you please post an example of this solution? It tried to configure it, but after adding the second rule to deny MU-to-MU traffic communication to the internet stopped working, to.&lt;BR /&gt;
&lt;BR /&gt;
Could post a screenshot for this or a compareable example: client subnet 192.168.100.0/24 and gateway 192.168.100.254.&lt;BR /&gt;
&lt;BR /&gt;
Best Regards&lt;BR /&gt;
Hartmut &lt;BR /&gt;
&lt;BR /&gt;</description>
      <pubDate>Thu, 16 Jul 2015 18:46:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33843#M1223</guid>
      <dc:creator>hsachse</dc:creator>
      <dc:date>2015-07-16T18:46:00Z</dc:date>
    </item>
    <item>
      <title>RE: IdentiFi; Is there a way to Block MU to MU traffic with B@AP in the same Virtual Network or Wlan Services?</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33844#M1224</link>
      <description>Is your DNS server in the same IP range as your clients?  The deny might have blocked DNS traffic.  I usually allow DNS, DHCP server and client ports first, then start blocking local subnets in the rule sequence.</description>
      <pubDate>Thu, 16 Jul 2015 18:46:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33844#M1224</guid>
      <dc:creator>Brian_Anderson3</dc:creator>
      <dc:date>2015-07-16T18:46:00Z</dc:date>
    </item>
    <item>
      <title>RE: IdentiFi; Is there a way to Block MU to MU traffic with B@AP in the same Virtual Network or Wlan Services?</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33845#M1225</link>
      <description>The DNS is in another subnet. But you are right, i should add DNS and DHCP, too. &lt;BR /&gt;</description>
      <pubDate>Thu, 16 Jul 2015 18:46:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33845#M1225</guid>
      <dc:creator>hsachse</dc:creator>
      <dc:date>2015-07-16T18:46:00Z</dc:date>
    </item>
    <item>
      <title>RE: IdentiFi; Is there a way to Block MU to MU traffic with B@AP in the same Virtual Network or Wlan Services?</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33846#M1226</link>
      <description>Hi Hartmut&lt;BR /&gt;
&lt;BR /&gt;
Sure, in its simplest form, here is my lab rule:&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="9635cfcc2c334815af81d9cb62e6d584_RackMultipart20151113-32244-yqe7nv-block_mu_mu_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/1401i8E68B6A0E8B90310/image-size/large?v=v2&amp;amp;px=999" role="button" title="9635cfcc2c334815af81d9cb62e6d584_RackMultipart20151113-32244-yqe7nv-block_mu_mu_inline.png" alt="9635cfcc2c334815af81d9cb62e6d584_RackMultipart20151113-32244-yqe7nv-block_mu_mu_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
I know the article says to allow to the subnets default gateway but I don't see a reason to do that, generally traffic is passing through the default gateway, not directly to it.&lt;BR /&gt;
&lt;BR /&gt;
I just tested the above in my lab and it works.&lt;BR /&gt;
&lt;BR /&gt;
-Gareth</description>
      <pubDate>Thu, 16 Jul 2015 18:46:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33846#M1226</guid>
      <dc:creator>Gareth_Mitchell</dc:creator>
      <dc:date>2015-07-16T18:46:00Z</dc:date>
    </item>
    <item>
      <title>RE: IdentiFi; Is there a way to Block MU to MU traffic with B@AP in the same Virtual Network or Wlan Services?</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33847#M1227</link>
      <description>Thanks for both answers, i will test Gareths policy, too. Now i have successfully tested policy with more rules only allowing specific services.  &lt;BR /&gt;</description>
      <pubDate>Thu, 16 Jul 2015 18:46:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33847#M1227</guid>
      <dc:creator>hsachse</dc:creator>
      <dc:date>2015-07-16T18:46:00Z</dc:date>
    </item>
    <item>
      <title>RE: IdentiFi; Is there a way to Block MU to MU traffic with B@AP in the same Virtual Network or Wlan Services?</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33848#M1228</link>
      <description>Hello Gareth&lt;BR /&gt;
&lt;BR /&gt;
Thank You &lt;BR /&gt;
&lt;BR /&gt;
We are going to test this solution.&lt;BR /&gt;
&lt;BR /&gt;
greetings Rien&lt;BR /&gt;
&lt;BR /&gt;</description>
      <pubDate>Fri, 17 Jul 2015 11:50:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33848#M1228</guid>
      <dc:creator>Rien_Maurik</dc:creator>
      <dc:date>2015-07-17T11:50:00Z</dc:date>
    </item>
    <item>
      <title>RE: IdentiFi; Is there a way to Block MU to MU traffic with B@AP in the same Virtual Network or Wlan Services?</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33849#M1229</link>
      <description>Hello, &lt;BR /&gt;
&lt;BR /&gt;
does anyone can confirm the rules? I actually tried it with code version 10.31. and it doesn't work for me. If i apply the rule on top no client can even connect, if i apply it on bottom Mu to MU traffic is still working. I also applied rules for DHCP and DNS&lt;BR /&gt;
&lt;BR /&gt;
Philipp</description>
      <pubDate>Thu, 04 May 2017 14:42:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/identifi-is-there-a-way-to-block-mu-to-mu-traffic-with-b-ap-in/m-p/33849#M1229</guid>
      <dc:creator>Philipp_Tittman</dc:creator>
      <dc:date>2017-05-04T14:42:00Z</dc:date>
    </item>
  </channel>
</rss>

