<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic RE: Block MU to MU traffic AP filter rule in Network Architecture &amp; Design</title>
    <link>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13386#M790</link>
    <description>Hartmut Sachse, can you send me yours users guide?</description>
    <pubDate>Fri, 20 Jun 2014 14:27:00 GMT</pubDate>
    <dc:creator>Renato_Lopes</dc:creator>
    <dc:date>2014-06-20T14:27:00Z</dc:date>
    <item>
      <title>Block MU to MU traffic AP filter rule</title>
      <link>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13382#M786</link>
      <description>I know you can   Block MU to MU traffic if you route wireless traffic through the controller.&lt;BR /&gt;
&lt;BR /&gt;
If you use the "Bridge @ AP" topology can you   Block MU to MU traffic via Access Point filter rules?&lt;BR /&gt;</description>
      <pubDate>Fri, 20 Jun 2014 05:17:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13382#M786</guid>
      <dc:creator>Frank11</dc:creator>
      <dc:date>2014-06-20T05:17:00Z</dc:date>
    </item>
    <item>
      <title>RE: Block MU to MU traffic AP filter rule</title>
      <link>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13383#M787</link>
      <description>Even if you are doing B@HWC you can only block mu to mu traffic for end systems on the same controller. We have multiple controllers and end systems can talk to other end systems on the other controller if block mu to mu is on.  To accomplish what you are trying to do you can create a rule that denys traffic to the subnet the end systems are on.  This will work, I've tried it.  They wont be able to ping their gateway but they will be able to traverse the gateway because the gateway is never the destination.  These days end systems dont really have to talk to each other directly.  If that is true for your network you'll be fine.  If not you can make exceptions.</description>
      <pubDate>Fri, 20 Jun 2014 06:58:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13383#M787</guid>
      <dc:creator>John_Kaftan</dc:creator>
      <dc:date>2014-06-20T06:58:00Z</dc:date>
    </item>
    <item>
      <title>RE: Block MU to MU traffic AP filter rule</title>
      <link>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13384#M788</link>
      <description>We only have one controller (C4110). Currently we do have a student vlan which is B@HWC and the option "Block MU to MU traffic" ticked, but would like to have it set at B@AP and use AP filtering rules to achieve the same effect if that is possible.</description>
      <pubDate>Fri, 20 Jun 2014 07:47:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13384#M788</guid>
      <dc:creator>Frank11</dc:creator>
      <dc:date>2014-06-20T07:47:00Z</dc:date>
    </item>
    <item>
      <title>RE: Block MU to MU traffic AP filter rule</title>
      <link>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13385#M789</link>
      <description>Hello Frank,&lt;BR /&gt;
&lt;I&gt;&lt;BR /&gt;
&lt;/I&gt;refering to the 8.32.x/9.x user guide for my understanding the "Block MU to MU traffic" applied in the advanced configuration option of the wlan service&lt;I&gt; &lt;/I&gt;is useable for both B@HWC and B@AP.  The blocking mechanismen based on a layer 2 (mac address table of wireless client successfully authenticated on the same SSID, client traffic between clients on the same SSID is blocked). &lt;BR /&gt;
&lt;BR /&gt;
Policies typically applied at layer 3 level (controller support l2, too).&lt;I&gt;  &lt;/I&gt; "User Guide, V9.01" page 5-7&lt;I&gt; &lt;/I&gt;include a example for l3 policies/rules to limit client communication applied at B@HWC level. I think its still possible to apply the same rule at ap level.  In the user guide on page 5-9 you can explanation of "AP rules/AP filtering" and its limitations.&lt;BR /&gt;
&lt;BR /&gt;
I agree with John, there a limitations if in multiple controller setups, but this seems not relevant to your user case.&lt;BR /&gt;
&lt;BR /&gt;
 Best regards&lt;BR /&gt;
Hartmut&lt;BR /&gt;
&lt;BR /&gt;</description>
      <pubDate>Fri, 20 Jun 2014 14:27:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13385#M789</guid>
      <dc:creator>hsachse</dc:creator>
      <dc:date>2014-06-20T14:27:00Z</dc:date>
    </item>
    <item>
      <title>RE: Block MU to MU traffic AP filter rule</title>
      <link>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13386#M790</link>
      <description>Hartmut Sachse, can you send me yours users guide?</description>
      <pubDate>Fri, 20 Jun 2014 14:27:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13386#M790</guid>
      <dc:creator>Renato_Lopes</dc:creator>
      <dc:date>2014-06-20T14:27:00Z</dc:date>
    </item>
    <item>
      <title>RE: Block MU to MU traffic AP filter rule</title>
      <link>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13387#M791</link>
      <description>Hi Renato&lt;BR /&gt;
&lt;BR /&gt;
Product documentation is available for download here &lt;A href="http://www.extremenetworks.com/support/documentation" target="_blank" rel="nofollow noreferrer noopener"&gt;http://www.extremenetworks.com/support/documentation&lt;/A&gt;&lt;BR /&gt;
&lt;BR /&gt;
You will need an extranet account to download the documentation.&lt;BR /&gt;
&lt;BR /&gt;
Regards&lt;BR /&gt;
&lt;BR /&gt;
-Gareth</description>
      <pubDate>Fri, 20 Jun 2014 14:27:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13387#M791</guid>
      <dc:creator>Gareth_Mitchell</dc:creator>
      <dc:date>2014-06-20T14:27:00Z</dc:date>
    </item>
    <item>
      <title>RE: Block MU to MU traffic AP filter rule</title>
      <link>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13388#M792</link>
      <description>I managed to apply rules for traffic entering the network (in the AP through the wifi), based on the destination MAC. However could not apply the rules for traffic leaving the AP, analyzing source MAC. It can apply rules in the AP based on mac source for the traffic coming out of AP?  Thank you for attention renato lopes</description>
      <pubDate>Fri, 20 Jun 2014 14:27:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13388#M792</guid>
      <dc:creator>Renato_Lopes</dc:creator>
      <dc:date>2014-06-20T14:27:00Z</dc:date>
    </item>
    <item>
      <title>RE: Block MU to MU traffic AP filter rule</title>
      <link>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13389#M793</link>
      <description>Hi Renato&lt;BR /&gt;
&lt;BR /&gt;
Regarding the direction option in the rule; "in" refers to traffic from a wireless client to the AP, "out" refers to traffic destined to the wireless client from the AP.&lt;BR /&gt;
&lt;BR /&gt;
You can set the mac address as a source or destination according to your requirements within the direction pull-down.&lt;BR /&gt;
&lt;BR /&gt;
-Gareth</description>
      <pubDate>Fri, 20 Jun 2014 14:27:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/network-architecture-design/block-mu-to-mu-traffic-ap-filter-rule/m-p/13389#M793</guid>
      <dc:creator>Gareth_Mitchell</dc:creator>
      <dc:date>2014-06-20T14:27:00Z</dc:date>
    </item>
  </channel>
</rss>

