<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How reject Android/iOS devices in ExtremeWireless (WiNG)</title>
    <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89992#M8491</link>
    <description>&lt;P&gt;First of all, thanks everybody for your help.&lt;/P&gt; &lt;P&gt;With some bash scripts and a lot of patience I start to develop my own “blacklist” (and, thanks to you all, it works!).&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Last question: if I have a specific MAC address to allow, it should be inserted on the top or in the bottom of the list (before the allow all)?&lt;/P&gt;</description>
    <pubDate>Wed, 22 Apr 2020 14:10:47 GMT</pubDate>
    <dc:creator>Mauro_M_</dc:creator>
    <dc:date>2020-04-22T14:10:47Z</dc:date>
    <item>
      <title>How reject Android/iOS devices</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89984#M8483</link>
      <description>&lt;P&gt;Hi all.&lt;BR /&gt; I would like to submit a question, my access points are configured with two radio networks: one corporate and one dedicated to mobile devices.&lt;BR /&gt; These two radio networks are on different vlan.&lt;BR /&gt; Many users uses the corporate network for their own mobiles, so my question is: is it possible to create a rule how reject all Android/iOS devices (by MAC OUI/other) if a device tries to connect to that network?&amp;nbsp;&lt;BR /&gt; If yes, how can I do?&lt;/P&gt; &lt;P&gt;I hope I was clear, if not, don't hesitate to ask.&lt;/P&gt; &lt;P&gt;Thanks for your time&lt;BR /&gt; Mauro&lt;/P&gt; &lt;P&gt;&lt;BR /&gt; My setup is:&lt;BR /&gt; - VX9000 controller version 5.9.1.3-007R&lt;BR /&gt; - Access points: AP-8432, AP-7632, AP-7522&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2020 18:01:26 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89984#M8483</guid>
      <dc:creator>Mauro_M_</dc:creator>
      <dc:date>2020-04-21T18:01:26Z</dc:date>
    </item>
    <item>
      <title>Re: How reject Android/iOS devices</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89985#M8484</link>
      <description>&lt;P&gt;Hello!&lt;BR /&gt; &amp;nbsp;&lt;/P&gt; &lt;P&gt;You can use device fingerprinting.&lt;/P&gt; &lt;P&gt;&lt;A href="https://documentation.extremenetworks.com/WiNG/5.9.7/WCSRG/downloads/WiNG_5.9.7_Controller_System_Reference_Guide.pdf" target="_blank" rel="nofollow noreferrer noopener"&gt;https://documentation.extremenetworks.com/WiNG/5.9.7/WCSRG/downloads/WiNG_5.9.7_Controller_System_Reference_Guide.pdf&lt;/A&gt;&lt;/P&gt; &lt;P&gt;From page 864&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Thank you!&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2020 18:26:30 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89985#M8484</guid>
      <dc:creator>Alexandr_P</dc:creator>
      <dc:date>2020-04-21T18:26:30Z</dc:date>
    </item>
    <item>
      <title>Re: How reject Android/iOS devices</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89986#M8485</link>
      <description>&lt;P&gt;Thanks for your reply.&lt;/P&gt; &lt;P&gt;Now I configured my device fringer print group, how can I apply this group to a policy who deny these “fingerprint” to connect to a specifc SSID?&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Thanks again&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2020 19:38:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89986#M8485</guid>
      <dc:creator>Mauro_M_</dc:creator>
      <dc:date>2020-04-21T19:38:00Z</dc:date>
    </item>
    <item>
      <title>Re: How reject Android/iOS devices</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89987#M8486</link>
      <description>&lt;P&gt;Hello Mauro,&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Check step 2 of this article for instructions on mapping the ACL to the WLAN:&lt;/P&gt; &lt;P&gt;&lt;A href="https://gtacknowledge.extremenetworks.com/articles/How_To/How-to-create-an-Association-ACL-using-CLI" target="_blank" rel="nofollow noreferrer noopener"&gt;https://gtacknowledge.extremenetworks.com/articles/How_To/How-to-create-an-Association-ACL-using-CLI&lt;/A&gt;&lt;/P&gt; &lt;P&gt;From GUI:&lt;/P&gt; &lt;P&gt;Configuration »&amp;nbsp;Wireless »&amp;nbsp;Select the WLAN you want to apply this to »&amp;nbsp;Edit »&amp;nbsp;Firewall »&amp;nbsp;Association ACL »&amp;nbsp;Select the ACL you created from the drop down menu »&amp;nbsp;OK »&amp;nbsp;Commit and Save&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Thank you,&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Chris&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2020 19:54:06 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89987#M8486</guid>
      <dc:creator>Christoph_S</dc:creator>
      <dc:date>2020-04-21T19:54:06Z</dc:date>
    </item>
    <item>
      <title>Re: How reject Android/iOS devices</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89988#M8487</link>
      <description>&lt;P&gt;&lt;SPAN style="background-color:#ffff00;"&gt;VERY IMPORTANT:&lt;/SPAN&gt;&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;If you created an association ACL, there is an explicit Deny All rule at the end of the ACL (you can’t see it but it’s there) so it is imperative that you add an allow all rule in your ACL or else all traffic will be denied.&amp;nbsp;&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Add this line at end of your ACL after you’ve entered all the deny rules:&lt;/P&gt; &lt;FIGURE&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="7311bf0b71694c5d9327678363bc8968_e526bb45-412c-4dbb-b58d-ce4b0a8815c0.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/620i7E0B2FDD4A0D451B/image-size/large?v=v2&amp;amp;px=999" role="button" title="7311bf0b71694c5d9327678363bc8968_e526bb45-412c-4dbb-b58d-ce4b0a8815c0.png" alt="7311bf0b71694c5d9327678363bc8968_e526bb45-412c-4dbb-b58d-ce4b0a8815c0.png" /&gt;&lt;/span&gt;&lt;/FIGURE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Chris&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2020 20:03:25 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89988#M8487</guid>
      <dc:creator>Christoph_S</dc:creator>
      <dc:date>2020-04-21T20:03:25Z</dc:date>
    </item>
    <item>
      <title>Re: How reject Android/iOS devices</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89989#M8488</link>
      <description>&lt;P&gt;Thanks Chris for your support, it’s very usefull in order to block/allow specific MAC.&lt;/P&gt; &lt;P&gt;Do you know if there’s a better way to block/allow an entire brand (all iphones/ipad) without write by hand every single mac oui?&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2020 20:35:08 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89989#M8488</guid>
      <dc:creator>Mauro_M_</dc:creator>
      <dc:date>2020-04-21T20:35:08Z</dc:date>
    </item>
    <item>
      <title>Re: How reject Android/iOS devices</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89990#M8489</link>
      <description>&lt;P&gt;The only way I see is to block the whole OUI range but I believe that these manufacturers have many OUIs in there repertoire.&amp;nbsp;&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;To block whole OUI range you can use the following rule in GUI:&lt;/P&gt; &lt;P&gt;Example of&amp;nbsp;00-10-FA Apple&amp;nbsp;OUI:&lt;/P&gt; &lt;FIGURE&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="64a3815494b04939a489d0d44fcaab87_5653ec5e-6844-424a-85d0-60f937997554.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/2292iF2FD4A67054B42A7/image-size/large?v=v2&amp;amp;px=999" role="button" title="64a3815494b04939a489d0d44fcaab87_5653ec5e-6844-424a-85d0-60f937997554.png" alt="64a3815494b04939a489d0d44fcaab87_5653ec5e-6844-424a-85d0-60f937997554.png" /&gt;&lt;/span&gt;&lt;/FIGURE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;There is no option to create a MAC ACL by manufacturers brand name.&amp;nbsp;&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Chris&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2020 20:54:23 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89990#M8489</guid>
      <dc:creator>Christoph_S</dc:creator>
      <dc:date>2020-04-21T20:54:23Z</dc:date>
    </item>
    <item>
      <title>Re: How reject Android/iOS devices</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89991#M8490</link>
      <description>&lt;P&gt;HI Mauro,&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;In addition to what Alexandr suggested in regards to DHCP finger printing.&lt;BR /&gt; You need to use roles this should also be in the system ref guide.&lt;BR /&gt; This will allow better containment than a association ACL based soley on Mac address.&lt;BR /&gt;&lt;BR /&gt; Please see link to find document regard role based firewall.&lt;BR /&gt;&lt;A href="https://gtacknowledge.extremenetworks.com/articles/Q_A/Where-can-I-find-documentation-for-WiNG-Role-Based-Firewall" target="_blank" rel="nofollow noreferrer noopener"&gt;https://gtacknowledge.extremenetworks.com/articles/Q_A/Where-can-I-find-documentation-for-WiNG-Role-Based-Firewall&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Apr 2020 20:55:17 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89991#M8490</guid>
      <dc:creator>Daren_E</dc:creator>
      <dc:date>2020-04-21T20:55:17Z</dc:date>
    </item>
    <item>
      <title>Re: How reject Android/iOS devices</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89992#M8491</link>
      <description>&lt;P&gt;First of all, thanks everybody for your help.&lt;/P&gt; &lt;P&gt;With some bash scripts and a lot of patience I start to develop my own “blacklist” (and, thanks to you all, it works!).&lt;/P&gt; &lt;P&gt;&amp;nbsp;&lt;/P&gt; &lt;P&gt;Last question: if I have a specific MAC address to allow, it should be inserted on the top or in the bottom of the list (before the allow all)?&lt;/P&gt;</description>
      <pubDate>Wed, 22 Apr 2020 14:10:47 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89992#M8491</guid>
      <dc:creator>Mauro_M_</dc:creator>
      <dc:date>2020-04-22T14:10:47Z</dc:date>
    </item>
    <item>
      <title>Re: How reject Android/iOS devices</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89993#M8492</link>
      <description>&lt;P&gt;Sorry, I told it was the last question but I’ve another one.&lt;/P&gt; &lt;P&gt;Due to the large amount of MAC OUI to deny (every ACL max limit is 1000 elements), is it possible to create a group of ACL in order to associate more lists to a single group? GUI doesn’t premit to add more than one ACL but I’ve more than 2000 MAC.&lt;/P&gt;</description>
      <pubDate>Thu, 23 Apr 2020 22:06:53 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/89993#M8492</guid>
      <dc:creator>Mauro_M_</dc:creator>
      <dc:date>2020-04-23T22:06:53Z</dc:date>
    </item>
    <item>
      <title>Re: How reject Android/iOS devices</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/120561#M9936</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hi everyone,&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Lately, while testing mobile gaming traffic behavior, I noticed that some Android and iOS devices randomly get rejected from the Wi-Fi network — even though authentication looks fine and DHCP gives valid IPs.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;It happened most often when running &lt;A href="https://www.nullsbrawl-apk-indir.com.tr/" target="_self"&gt;Null’s Brawl APK&lt;/A&gt; for connection stability tests. The device briefly disconnects, then reconnects with a delay of 5–10 seconds.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Could this rejection be linked to roaming settings or AP session timeout? Has anyone optimized Extreme APs to handle quick reconnects from mobile games without triggering a block?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Appreciate any insights from those who’ve tested gaming apps in managed Wi-Fi environments.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 24 Oct 2025 00:10:06 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/how-reject-android-ios-devices/m-p/120561#M9936</guid>
      <dc:creator>Lunaovia01055</dc:creator>
      <dc:date>2025-10-24T00:10:06Z</dc:date>
    </item>
  </channel>
</rss>

