<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How enable DNS traffic in my ip ACL  for my wlan in ExtremeWireless (WiNG)</title>
    <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-enable-dns-traffic-in-my-ip-acl-for-my-wlan/m-p/79684#M7348</link>
    <description>&lt;P&gt;Hi everyone&amp;nbsp;&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;I try configurate the ACL for blocking every traffic except the DNS for only one Public IP, on the same net the all traffic is allow, and the dhcp is allow, but only the DNS resolve do not work in the navigator, I can put the public IP in my navigator and it works, I try only TCP and UDP port 53 in the ACL but do not work, actually all traffic for 8.8.8.8 and 9.9.9.9 &amp;nbsp;is allowed I do not know why the DNS resolve do not working, the firmware is Wing 5.9.6 and the model is AP7632&amp;nbsp;&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;my configuration is:&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;ip access-list Test-Block&lt;BR /&gt; &amp;nbsp;permit ip 10.10.1.0/24 10.10.1.0/24 log rule-precedence 4&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit tcp 10.10.1.0/24 host 8.8.8.8 log rule-precedence 5&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit tcp 10.10.1.0/24 host 9.9.9.9 log rule-precedence 9&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit udp 10.10.1.0/24 host 8.8.8.8 log rule-precedence 10&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit udp 10.10.1.0/24 host 9.9.9.9 log rule-precedence 11&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit ip 10.10.1.0/24 host 35.232.239.22 log rule-precedence 12&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit udp any any range 67 68 log rule-precedence 15&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit ip any host 10.10.1.1 log rule-precedence 16&amp;nbsp;&lt;BR /&gt; &amp;nbsp;disable deny ip any any log rule-precedence 18&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/P&gt; &lt;P&gt;wlan WLAN_INCO_FINAL&lt;BR /&gt; &amp;nbsp;ssid WLAN-PAD&lt;BR /&gt; &amp;nbsp;vlan 1 &amp;nbsp;&lt;BR /&gt; &amp;nbsp;bridging-mode local&amp;nbsp;&lt;/P&gt; &lt;P&gt;&amp;nbsp;use ip-access-list in Test-Block&lt;BR /&gt; &amp;nbsp;&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Do you anything Idea for this problem?&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Thanks for your help&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 07 Feb 2020 04:38:44 GMT</pubDate>
    <dc:creator>mario123na</dc:creator>
    <dc:date>2020-02-07T04:38:44Z</dc:date>
    <item>
      <title>How enable DNS traffic in my ip ACL  for my wlan</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-enable-dns-traffic-in-my-ip-acl-for-my-wlan/m-p/79684#M7348</link>
      <description>&lt;P&gt;Hi everyone&amp;nbsp;&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;I try configurate the ACL for blocking every traffic except the DNS for only one Public IP, on the same net the all traffic is allow, and the dhcp is allow, but only the DNS resolve do not work in the navigator, I can put the public IP in my navigator and it works, I try only TCP and UDP port 53 in the ACL but do not work, actually all traffic for 8.8.8.8 and 9.9.9.9 &amp;nbsp;is allowed I do not know why the DNS resolve do not working, the firmware is Wing 5.9.6 and the model is AP7632&amp;nbsp;&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;my configuration is:&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;ip access-list Test-Block&lt;BR /&gt; &amp;nbsp;permit ip 10.10.1.0/24 10.10.1.0/24 log rule-precedence 4&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit tcp 10.10.1.0/24 host 8.8.8.8 log rule-precedence 5&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit tcp 10.10.1.0/24 host 9.9.9.9 log rule-precedence 9&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit udp 10.10.1.0/24 host 8.8.8.8 log rule-precedence 10&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit udp 10.10.1.0/24 host 9.9.9.9 log rule-precedence 11&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit ip 10.10.1.0/24 host 35.232.239.22 log rule-precedence 12&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit udp any any range 67 68 log rule-precedence 15&amp;nbsp;&lt;BR /&gt; &amp;nbsp;permit ip any host 10.10.1.1 log rule-precedence 16&amp;nbsp;&lt;BR /&gt; &amp;nbsp;disable deny ip any any log rule-precedence 18&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/P&gt; &lt;P&gt;wlan WLAN_INCO_FINAL&lt;BR /&gt; &amp;nbsp;ssid WLAN-PAD&lt;BR /&gt; &amp;nbsp;vlan 1 &amp;nbsp;&lt;BR /&gt; &amp;nbsp;bridging-mode local&amp;nbsp;&lt;/P&gt; &lt;P&gt;&amp;nbsp;use ip-access-list in Test-Block&lt;BR /&gt; &amp;nbsp;&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Do you anything Idea for this problem?&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Thanks for your help&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 07 Feb 2020 04:38:44 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-enable-dns-traffic-in-my-ip-acl-for-my-wlan/m-p/79684#M7348</guid>
      <dc:creator>mario123na</dc:creator>
      <dc:date>2020-02-07T04:38:44Z</dc:date>
    </item>
    <item>
      <title>Re: How enable DNS traffic in my ip ACL  for my wlan</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-enable-dns-traffic-in-my-ip-acl-for-my-wlan/m-p/79685#M7349</link>
      <description>&lt;P&gt;Try adding this:&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;STRONG&gt;permit tcp 10.10.1.0/24 host 8.8.8.8 eq dns rule-precedence 1 &lt;/STRONG&gt;&lt;/P&gt; &lt;P&gt;&lt;STRONG&gt;permit udp 10.10.1.0/24 host 8.8.8.8 eq dns rule-precedence 2 &lt;/STRONG&gt;&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;If that works for you, replicate it for the other DNS server addresses and the precedence values.&lt;/P&gt;</description>
      <pubDate>Fri, 07 Feb 2020 04:56:22 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-enable-dns-traffic-in-my-ip-acl-for-my-wlan/m-p/79685#M7349</guid>
      <dc:creator>ckelly</dc:creator>
      <dc:date>2020-02-07T04:56:22Z</dc:date>
    </item>
  </channel>
</rss>

