AP isolation
"Manjunath" <[email protected]> Tue, 20 Dec 2016 12:01:14 +0530
| Newsgroups | gmane.linux.network.bridge.ebtables.user |
|---|---|
| Message-ID | <[email protected]> |
This is a multipart message in MIME format.
--===============6839712976026100766==
Content-Type: multipart/alternative;
boundary="----=_NextPart_000_000F_01D25AB8.C7C22F00"
Content-Language: en-us
This is a multipart message in MIME format.
------=_NextPart_000_000F_01D25AB8.C7C22F00
Content-Type: text/plain;
charset="us-ascii"
Content-Transfer-Encoding: 7bit
Hi All,
Iam using ebtables ( ebtables v2.0.8-2 (May 2007) ) in my wifi
router. My wifi router is equipped with 2 radio ( 5 & 2.4 GHz ). Both radios
have multiple SSID's enabled. I would like to isolate the virtual AP's, that
is client connected to one SSID should not be able to see clients on another
SSID. With the current ebtables clients on one SSID can ping other clients
but not clients on same SSID.
Scenario as below:
1) WLAN0 - 5GHz
2) WLAN1 - 2.4GHz
Enabled 4 virtual AP's under WLAN1, so their interfaces
are
Wlan1-vap0 - SSID1
Wlan1-vap1 - SSID2
Wlan1-vap2 - SSID3
Wlan1-vap3 - SSID4
Now with current ebtables clients connected to same SSID cannot ping each
other, but clients connected to different SSID can ping. ( Client isolation
)
I would like to have a setting where clients connected to same SSID should
ping, but clients connected to different SSID should not ping (AP isolation
)
How to achieve AP isolation rather than client isolation.
Thanks & Best Regards,
Manjunath M N
------=_NextPart_000_000F_01D25AB8.C7C22F00
Content-Type: text/html;
charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
<html xmlns:v=3D"urn:schemas-microsoft-com:vml" =
xmlns:o=3D"urn:schemas-microsoft-com:office:office" =
xmlns:w=3D"urn:schemas-microsoft-com:office:word" =
xmlns:m=3D"http://schemas.microsoft.com/office/2004/12/omml" =
xmlns=3D"http://www.w3.org/TR/REC-html40"><head><meta =
http-equiv=3DContent-Type content=3D"text/html; =
charset=3Dus-ascii"><meta name=3DGenerator content=3D"Microsoft Word 15 =
(filtered medium)"><style><!--
/* Font Definitions */
@font-face
{font-family:"Cambria Math";
panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
{font-family:Calibri;
panose-1:2 15 5 2 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0in;
margin-bottom:.0001pt;
font-size:11.0pt;
font-family:"Calibri",sans-serif;}
a:link, span.MsoHyperlink
{mso-style-priority:99;
color:#0563C1;
text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
{mso-style-priority:99;
color:#954F72;
text-decoration:underline;}
p.MsoListParagraph, li.MsoListParagraph, div.MsoListParagraph
{mso-style-priority:34;
margin-top:0in;
margin-right:0in;
margin-bottom:0in;
margin-left:.5in;
margin-bottom:.0001pt;
font-size:11.0pt;
font-family:"Calibri",sans-serif;}
span.EmailStyle17
{mso-style-type:personal-compose;
font-family:"Calibri",sans-serif;
color:windowtext;}
.MsoChpDefault
{mso-style-type:export-only;
font-family:"Calibri",sans-serif;}
@page WordSection1
{size:8.5in 11.0in;
margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
{page:WordSection1;}
/* List Definitions */
@list l0
{mso-list-id:1464150632;
mso-list-type:hybrid;
mso-list-template-ids:-1376457950 67698705 67698713 67698715 67698703 =
67698713 67698715 67698703 67698713 67698715;}
@list l0:level1
{mso-level-text:"%1\)";
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-.25in;}
@list l0:level2
{mso-level-number-format:alpha-lower;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-.25in;}
@list l0:level3
{mso-level-number-format:roman-lower;
mso-level-tab-stop:none;
mso-level-number-position:right;
text-indent:-9.0pt;}
@list l0:level4
{mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-.25in;}
@list l0:level5
{mso-level-number-format:alpha-lower;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-.25in;}
@list l0:level6
{mso-level-number-format:roman-lower;
mso-level-tab-stop:none;
mso-level-number-position:right;
text-indent:-9.0pt;}
@list l0:level7
{mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-.25in;}
@list l0:level8
{mso-level-number-format:alpha-lower;
mso-level-tab-stop:none;
mso-level-number-position:left;
text-indent:-.25in;}
@list l0:level9
{mso-level-number-format:roman-lower;
mso-level-tab-stop:none;
mso-level-number-position:right;
text-indent:-9.0pt;}
ol
{margin-bottom:0in;}
ul
{margin-bottom:0in;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext=3D"edit" spidmax=3D"1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext=3D"edit">
<o:idmap v:ext=3D"edit" data=3D"1" />
</o:shapelayout></xml><![endif]--></head><body lang=3DEN-US =
link=3D"#0563C1" vlink=3D"#954F72"><div class=3DWordSection1><p =
class=3DMsoNormal>Hi All,<o:p></o:p></p><p =
class=3DMsoNormal> Iam using =
ebtables ( ebtables v2.0.8-2 (May 2007) ) in my wifi router. My wifi =
router is equipped with 2 radio ( 5 & 2.4 GHz ). Both radios have =
multiple SSID’s enabled. I would like to isolate the virtual =
AP’s, that is client connected to one SSID should not be able to =
see clients on another SSID. With the current ebtables clients on one =
SSID can ping other clients but not clients on same =
SSID.<o:p></o:p></p><p class=3DMsoNormal> =
<o:p></o:p></p><p class=3DMsoNormal>Scenario as below: <o:p></o:p></p><p =
class=3DMsoListParagraph style=3D'text-indent:-.25in;mso-list:l0 level1 =
lfo1'><![if !supportLists]><span style=3D'mso-list:Ignore'>1)<span =
style=3D'font:7.0pt "Times New Roman"'> =
</span></span><![endif]>WLAN0 – 5GHz<o:p></o:p></p><p =
class=3DMsoListParagraph style=3D'text-indent:-.25in;mso-list:l0 level1 =
lfo1'><![if !supportLists]><span style=3D'mso-list:Ignore'>2)<span =
style=3D'font:7.0pt "Times New Roman"'> =
</span></span><![endif]>WLAN1 – 2.4GHz <o:p></o:p></p><p =
class=3DMsoListParagraph> =
E=
nabled 4 virtual AP’s under WLAN1, so their interfaces =
are<o:p></o:p></p><p =
class=3DMsoListParagraph> =
=
Wlan1-vap0 - SSID1<o:p></o:p></p><p =
class=3DMsoListParagraph> =
=
Wlan1-vap1 - SSID2<o:p></o:p></p><p =
class=3DMsoListParagraph> =
Wlan1-vap2 =
- SSID3<o:p></o:p></p><p =
class=3DMsoListParagraph> =
=
Wlan1-vap3 - SSID4<o:p></o:p></p><p =
class=3DMsoListParagraph> Now with current ebtables clients =
connected to same SSID cannot ping each other, but clients connected to =
different SSID can ping. ( Client isolation )<o:p></o:p></p><p =
class=3DMsoListParagraph>I would like to have a setting where clients =
connected to same SSID should ping, but clients connected to different =
SSID should not ping (AP isolation )<o:p></o:p></p><p =
class=3DMsoNormal> <o:p></o:p></p><p =
class=3DMsoNormal> How to achieve AP isolation rather than =
client isolation.<o:p></o:p></p><p =
class=3DMsoNormal><o:p> </o:p></p><p =
class=3DMsoNormal><o:p> </o:p></p><p class=3DMsoNormal>Thanks & =
Best Regards,<o:p></o:p></p><p class=3DMsoNormal>Manjunath M =
N<o:p></o:p></p></div></body></html>
------=_NextPart_000_000F_01D25AB8.C7C22F00--
--===============6839712976026100766==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline
------------------------------------------------------------------------------
Developer Access Program for Intel Xeon Phi Processors
Access to Intel Xeon Phi processor-based developer platforms.
With one year of Intel Parallel Studio XE.
Training and support from Colfax.
Order your platform today.http://sdm.link/intel
--===============6839712976026100766==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline
_______________________________________________
Ebtables-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/ebtables-user
--===============6839712976026100766==--