<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic RE: L7 ROLE versio 10.21.01 in ExtremeWireless (Identifi)</title>
    <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54939#M6369</link>
    <description>I've done ECP only with NAC but I think it's the same principle for internal/external which is you get only redirected to the portal if a deny rule is hit in the the unauthenticate role.&lt;BR /&gt;
&lt;BR /&gt;
As a example take a look right here...&lt;BR /&gt;
&lt;A href="https://community.extremenetworks.com/extreme/topics/how-to-identifi-wireless-appliances-guest-portal" target="_blank" rel="nofollow noreferrer noopener"&gt;https://community.extremenetworks.com/extreme/topics/how-to-identifi-wireless-appliances-guest-porta...&lt;/A&gt;&lt;BR /&gt;
&lt;BR /&gt;
If I unterstand that correctly that would mean that you'd need to deny mail, facebook so that clients get redirected to the portal if they use mail, facebook - right ?! *confused*</description>
    <pubDate>Tue, 28 Feb 2017 21:44:00 GMT</pubDate>
    <dc:creator>Ronald_Dvorak</dc:creator>
    <dc:date>2017-02-28T21:44:00Z</dc:date>
    <item>
      <title>L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54925#M6355</link>
      <description>I using L7 roles to authenticate. I created a portal (external portal) to authenticate using GMAIL, WINDOWS (OUTLOOK), OR FACEBOOK login to authenticate. &lt;BR /&gt;
&lt;BR /&gt;
 Create rules L7 with these networks and only facebook not work. The customer authenticate with anothers networks.  &lt;BR /&gt;
&lt;BR /&gt;
  I need create L7 rules with permit FACEBOOK, GMAIL. But only gmail Works. Any idea, i use ap 3705 and version 10.21.01&lt;BR /&gt;
&lt;BR /&gt;</description>
      <pubDate>Tue, 28 Feb 2017 02:53:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54925#M6355</guid>
      <dc:creator>Luis_Mendes</dc:creator>
      <dc:date>2017-02-28T02:53:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54926#M6356</link>
      <description>You are trying to create a rule that only allows Gmail, Facebook?</description>
      <pubDate>Tue, 28 Feb 2017 03:35:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54926#M6356</guid>
      <dc:creator>Jeremy_Gibbs</dc:creator>
      <dc:date>2017-02-28T03:35:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54927#M6357</link>
      <description>Can you send a screenshot of the rule you are trying to create? &lt;BR /&gt;
&lt;BR /&gt;</description>
      <pubDate>Tue, 28 Feb 2017 03:39:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54927#M6357</guid>
      <dc:creator>Jeremy_Gibbs</dc:creator>
      <dc:date>2017-02-28T03:39:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54928#M6358</link>
      <description>Yes, gmail, Microsoft.. Works fine.. but facebook not.. I will test with custom to.. and not works</description>
      <pubDate>Tue, 28 Feb 2017 03:39:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54928#M6358</guid>
      <dc:creator>Luis_Mendes</dc:creator>
      <dc:date>2017-02-28T03:39:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54929#M6359</link>
      <description>AFAIK ... Layer 7 Application policy enforcement requires AP38xx+. &lt;BR /&gt;</description>
      <pubDate>Tue, 28 Feb 2017 03:43:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54929#M6359</guid>
      <dc:creator>Ronald_Dvorak</dc:creator>
      <dc:date>2017-02-28T03:43:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54930#M6360</link>
      <description>&lt;A href="https://gtacknowledge.extremenetworks.com/articles/Q_A/What-is-AP-Feature-Compatibility-Matrix-in-V10-11" target="_blank" rel="nofollow noreferrer noopener"&gt;https://gtacknowledge.extremenetworks.com/articles/Q_A/What-is-AP-Feature-Compatibility-Matrix-in-V1...&lt;/A&gt;&lt;BR /&gt;
&lt;BR /&gt;</description>
      <pubDate>Tue, 28 Feb 2017 03:44:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54930#M6360</guid>
      <dc:creator>Ronald_Dvorak</dc:creator>
      <dc:date>2017-02-28T03:44:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54931#M6361</link>
      <description>But if the POLICE is apply on the controller (b@ewc), why ap influence? And why the others app like gmail, Hotmail Works fine</description>
      <pubDate>Tue, 28 Feb 2017 03:44:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54931#M6361</guid>
      <dc:creator>Luis_Mendes</dc:creator>
      <dc:date>2017-02-28T03:44:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54932#M6362</link>
      <description>I was under the impression that the 38xx and 39xx series were required because of the flow based architecture of the AP, allowing it to do the AVC portion.  But i'm not 100% sure about that.﻿</description>
      <pubDate>Tue, 28 Feb 2017 03:44:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54932#M6362</guid>
      <dc:creator>Jeremy_Gibbs</dc:creator>
      <dc:date>2017-02-28T03:44:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54933#M6363</link>
      <description>I was going to say that, but I couldn't find the material.</description>
      <pubDate>Tue, 28 Feb 2017 03:55:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54933#M6363</guid>
      <dc:creator>Jeremy_Gibbs</dc:creator>
      <dc:date>2017-02-28T03:55:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54934#M6364</link>
      <description>As Jeremy mentioned could you please post a screenshot of the role configuration and the policy rules.</description>
      <pubDate>Tue, 28 Feb 2017 04:46:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54934#M6364</guid>
      <dc:creator>Ronald_Dvorak</dc:creator>
      <dc:date>2017-02-28T04:46:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54935#M6365</link>
      <description>&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="3bf8eb49260a470987bab152cbba1721_RackMultipart20170227-86335-1p3g543-UNISINOS_inline.jpg"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/973iF6A54F686A789A4E/image-size/large?v=v2&amp;amp;px=999" role="button" title="3bf8eb49260a470987bab152cbba1721_RackMultipart20170227-86335-1p3g543-UNISINOS_inline.jpg" alt="3bf8eb49260a470987bab152cbba1721_RackMultipart20170227-86335-1p3g543-UNISINOS_inline.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
The customer has a external portal with authenticate on gmail,microsoft and facebook. . The page of facebook not working... gmail and microsoft works fine, the customer review the script of page...The version of controller has upgraded to 10.21.02.0017﻿&lt;BR /&gt;
&lt;BR /&gt;</description>
      <pubDate>Tue, 28 Feb 2017 04:46:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54935#M6365</guid>
      <dc:creator>Luis_Mendes</dc:creator>
      <dc:date>2017-02-28T04:46:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54936#M6366</link>
      <description>Works for me - bridge@EWC, V10.21.02, AP3705i, in my case I've blocked traffic as that was easier to test.&lt;BR /&gt;
&lt;BR /&gt;
Note: it took some minutes before the traffic was blocked so I'm not sure whether I've done something wrong or whether there is some sync happening until it's active.&lt;BR /&gt;
&lt;BR /&gt;
&lt;P class="fancybox-image"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="59274111038a4d738c97d92a1d5bfb87_RackMultipart20170227-104265-14ajfxa-EWC_L7_inline.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/4809i5A8F33FB8F19DBF9/image-size/large?v=v2&amp;amp;px=999" role="button" title="59274111038a4d738c97d92a1d5bfb87_RackMultipart20170227-104265-14ajfxa-EWC_L7_inline.png" alt="59274111038a4d738c97d92a1d5bfb87_RackMultipart20170227-104265-14ajfxa-EWC_L7_inline.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;BR /&gt;
&lt;BR /&gt;
Have you enabled application visibility on the WLAN service ?&lt;BR /&gt;
&lt;BR /&gt;
Back to the overall goal...I'm not sure whether I unterstand the setup.. &lt;BR /&gt;
the WLAN service is set to authentication for external captive portal and the screenshot show the unauthenticated traffic role ?&lt;BR /&gt;
And then in case someone uses facebook, mail it should redirect to the portal and the user needs to authenticate on the portal ?&lt;BR /&gt;</description>
      <pubDate>Tue, 28 Feb 2017 06:19:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54936#M6366</guid>
      <dc:creator>Ronald_Dvorak</dc:creator>
      <dc:date>2017-02-28T06:19:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54937#M6367</link>
      <description>Yes, application visibility is enable. &lt;BR /&gt;
The screenshot show unauthenticated traffic. &lt;BR /&gt;
Yes, mail, or google redirect because this traffic pass... &lt;BR /&gt;
On facebook customer will be review the config of facebook portal and i will update you...</description>
      <pubDate>Tue, 28 Feb 2017 06:19:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54937#M6367</guid>
      <dc:creator>Luis_Mendes</dc:creator>
      <dc:date>2017-02-28T06:19:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54938#M6368</link>
      <description>Hello, Luis!&lt;BR /&gt;
&lt;BR /&gt;
What solution you use for external portal to authenticate using GMAIL, WINDOWS (OUTLOOK), OR FACEBOOK login to authenticate?&lt;BR /&gt;
&lt;BR /&gt;
Can you share your solution?&lt;BR /&gt;
It's just interesting you experience.&lt;BR /&gt;
&lt;BR /&gt;
Thank you!</description>
      <pubDate>Tue, 28 Feb 2017 13:55:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54938#M6368</guid>
      <dc:creator>Alexandr_P</dc:creator>
      <dc:date>2017-02-28T13:55:00Z</dc:date>
    </item>
    <item>
      <title>RE: L7 ROLE versio 10.21.01</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54939#M6369</link>
      <description>I've done ECP only with NAC but I think it's the same principle for internal/external which is you get only redirected to the portal if a deny rule is hit in the the unauthenticate role.&lt;BR /&gt;
&lt;BR /&gt;
As a example take a look right here...&lt;BR /&gt;
&lt;A href="https://community.extremenetworks.com/extreme/topics/how-to-identifi-wireless-appliances-guest-portal" target="_blank" rel="nofollow noreferrer noopener"&gt;https://community.extremenetworks.com/extreme/topics/how-to-identifi-wireless-appliances-guest-porta...&lt;/A&gt;&lt;BR /&gt;
&lt;BR /&gt;
If I unterstand that correctly that would mean that you'd need to deny mail, facebook so that clients get redirected to the portal if they use mail, facebook - right ?! *confused*</description>
      <pubDate>Tue, 28 Feb 2017 21:44:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-identifi/l7-role-versio-10-21-01/m-p/54939#M6369</guid>
      <dc:creator>Ronald_Dvorak</dc:creator>
      <dc:date>2017-02-28T21:44:00Z</dc:date>
    </item>
  </channel>
</rss>

