<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic RE: Client-2-Client communication monitor in ExtremeWireless (WiNG)</title>
    <link>https://community.extremenetworks.com/t5/extremewireless-wing/client-2-client-communication-monitor/m-p/54589#M3488</link>
    <description>Hi Daniel,&lt;BR /&gt;
&lt;BR /&gt;
You would not be able to confirm short of a packet capture.&lt;BR /&gt;
It would be easier to turn on no client-2-client and run "service pktcap on drop" then look for wireless client-to-client output. Best place to start would be on an AP with the guest WLAN mapped.&lt;BR /&gt;
&lt;BR /&gt;
Note:&lt;BR /&gt;
On Guest WLAN there should be no reason for wireless client to communicate with each other.&lt;BR /&gt;
Communication for the most part is direct to internet. So it would be safe to enable that setting.</description>
    <pubDate>Wed, 31 Oct 2018 19:44:00 GMT</pubDate>
    <dc:creator>Daren_E</dc:creator>
    <dc:date>2018-10-31T19:44:00Z</dc:date>
    <item>
      <title>Client-2-Client communication monitor</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/client-2-client-communication-monitor/m-p/54587#M3486</link>
      <description>Hello,&lt;BR /&gt;
&lt;BR /&gt;
I'm currently looking to disable client-2-client communication on our tunneled Guest network. Before it, I wanted to see if there is a way to know if this traffic exist.&lt;BR /&gt;
&lt;BR /&gt;
Is there a way to monitor Client-2-Client communication short of pkt-cpt for the subnets?&lt;BR /&gt;
&lt;BR /&gt;
Thanks in advance</description>
      <pubDate>Wed, 31 Oct 2018 18:47:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/client-2-client-communication-monitor/m-p/54587#M3486</guid>
      <dc:creator>Daniel_Chernovs</dc:creator>
      <dc:date>2018-10-31T18:47:00Z</dc:date>
    </item>
    <item>
      <title>RE: Client-2-Client communication monitor</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/client-2-client-communication-monitor/m-p/54588#M3487</link>
      <description>add the line in the wlan &lt;BR /&gt;
&lt;BR /&gt;
no client-client-communication to disable clients-2-client&lt;BR /&gt;
&lt;BR /&gt;
if you enable this you can then use packet capture to monitor the dropped traffic &lt;BR /&gt;
&lt;BR /&gt;
Ok its reverse to what you were looking to do but it simple &lt;BR /&gt;
&lt;BR /&gt;
remote-debug live-pktcap rf-domain &lt;ENTER-DOMAIN&gt;  drop  count 10000&lt;BR /&gt;
&lt;BR /&gt;&lt;/ENTER-DOMAIN&gt;</description>
      <pubDate>Wed, 31 Oct 2018 19:05:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/client-2-client-communication-monitor/m-p/54588#M3487</guid>
      <dc:creator>Andrew_Blomley</dc:creator>
      <dc:date>2018-10-31T19:05:00Z</dc:date>
    </item>
    <item>
      <title>RE: Client-2-Client communication monitor</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/client-2-client-communication-monitor/m-p/54589#M3488</link>
      <description>Hi Daniel,&lt;BR /&gt;
&lt;BR /&gt;
You would not be able to confirm short of a packet capture.&lt;BR /&gt;
It would be easier to turn on no client-2-client and run "service pktcap on drop" then look for wireless client-to-client output. Best place to start would be on an AP with the guest WLAN mapped.&lt;BR /&gt;
&lt;BR /&gt;
Note:&lt;BR /&gt;
On Guest WLAN there should be no reason for wireless client to communicate with each other.&lt;BR /&gt;
Communication for the most part is direct to internet. So it would be safe to enable that setting.</description>
      <pubDate>Wed, 31 Oct 2018 19:44:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/client-2-client-communication-monitor/m-p/54589#M3488</guid>
      <dc:creator>Daren_E</dc:creator>
      <dc:date>2018-10-31T19:44:00Z</dc:date>
    </item>
    <item>
      <title>RE: Client-2-Client communication monitor</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/client-2-client-communication-monitor/m-p/54590#M3489</link>
      <description>Only thing I came think of would be to do something like:&lt;BR /&gt;
Create an IPv4ACL and set it to allow from the wireless client subnet *to* the wireless client subnet and setup the ACL to log (which should then cause any traffic detected going from one wireless client on that subnet to another wireless client on that same subnet to get log in the event viewer) and then apply this IPv4ACL to one of the APs.  &lt;BR /&gt;
This is really a 'kludgey' way to try to test this though.&lt;BR /&gt;
As Daren mentioned, probably best to enable the option and then run the 'service pktcap on drop' command and look at the traffic.&lt;BR /&gt;
&lt;BR /&gt;
Or...if you don't want to YET enable the no client-2-client feature but just want to see if it's happening...then you could still run that command, but look for Source and Destination addresses of traffic that belong the the DHCP pool for the SSID you want to monitor.  If you see traffic that is going back and forth between wireless clients on the subnet, then there *is* client-2-client traffic happening.&lt;BR /&gt;
&lt;BR /&gt;
I don't see any other way to checking this w/o it the process getting more complicated.</description>
      <pubDate>Thu, 01 Nov 2018 00:07:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/client-2-client-communication-monitor/m-p/54590#M3489</guid>
      <dc:creator>ckelly</dc:creator>
      <dc:date>2018-11-01T00:07:00Z</dc:date>
    </item>
  </channel>
</rss>

