Cisco Wireless :: WLC 4402 - Deny Network Access To Smartphones
Jun 29, 2011I would like to know if exists some configuration using a WLC 4402 that deny network acces to smartphones but not to netbooks and laptops.
View 1 RepliesI would like to know if exists some configuration using a WLC 4402 that deny network acces to smartphones but not to netbooks and laptops.
View 1 RepliesWe have two WLC 4402 WLC in active-active mode in our setup. The issue we see is that a user/laptop gets connected and gets the ip address but there will be no network access. We see a yellow exclamation sign at this time in network icon in tray and we can not ping gateway at this point. We have run debugs at this time for the machine and we could see that was in "RUN" state its only that the machine can not access network.
View 11 Replies View RelatedMy network topology consists of 3 directly connected routers where the central router contains sensitive data and i need to block traffic from ENTERING the LAN adjoined to that router. My issue is creating an access list to DENY traffic from entering the network connected to Fa0/1 but ALLOW traffic to exit from that network. I am using one class C network which is subnetted 7 times to provide me with the required LAN's.
View 2 Replies View RelatedI need developing a acl that can block a computer on the LAN from accessing the internet from midnight to 7am everyday. The router is a 857W, the computer is 192.168.2.33 the internal gw 192.168.2.254 (dialer 1 is 1.2.3.4).acl 101 deny tcp host 192.168.2.33 eq wwwwhat I need to figure out is how to add a time based acl to just this computer.
View 2 Replies View RelatedWe have a 4402 wlc setup for guest network access. We are using the local net users to provide access to our guests. We have an issue where if a user signs in through the web, sometimes but not always, they are then forced to keep signing back in almost every 30-60 seconds.
View 8 Replies View RelatedRegion : UnitedKingdom
Model : TL-WDR4300
Hardware Version : V1
Firmware Version : 3.13.31 Build 130319 Rel.57876n
ISP : BT Infinity
I have 11 wireless devices connected to WDR4300. These are PCs, phones, tablets, PS3 etc. All devices have assigned DHCP addresses.I have read lots of faqs and searched the web, but still can not figure out a simple way to achieve the following:
I would like some of my devices have NO access to the Internet from 2200 to 0600.
i have Cisco L3 switch configured with diff vlan and assign diff subnet for all vlan . if i connect pc to vlan 2 i am able to ping host related to other vlan
View 5 Replies View RelatedI have ACS 5.1.I have created the Identity Group 'Admin' and added 2 users in that, say User1 and User2.How do I permit only User1 to get authenticated when he logins in to the device?There is option to select 'UserName' while creating Service Access Policy , but I have observed that though I have mentioned only User1 in the rule, User2 is also getting permitted
View 1 Replies View RelatedWe have a 3750 which has a few vlans configured. One Vlan is for public access wifi and another for our security system (door access, cameras, etc.). I don't want the public wifi vlan to access the security system vlan. How can I accomplish this in the 3750?
View 4 Replies View RelatedI have a 2801 router. Is there another way to deny access to a specify web site ( like youtube, facebook .. etc ) without create acl's with specifed ip's ? The router doesen't support url filtering. I thought to do something like redirect traffic to another site : for example if one client want to access url.. that the browser will open url...
View 4 Replies View RelatedWe are about to purchase an ASA 5510 Base K9 where I will have around 50 Remote Access IPSec Users connected . This will work fine however we have couple of non-PC devices which are IPAD OS 4 , BlackBerry Bold/Curv , HTC Android mobiles . I want to know if we can install Cisco Easy VPN Client on these devices
View 5 Replies View RelatedRecently a router crashed and some suspicious about the client arised. The point is that now the order is to deny all kind of router admin access for the client. I was thinking, is this a good idea or will be better to give him limited access to the router, to avoid the client to try to access the router at all cost? Something like to stop the motivation to crack the router password.
View 7 Replies View RelatedI have 5 VLANs, I assign VLANs to its ports and make them all Untagged.I created ACLs and a ACE rules for each ACL, and then assigned to the ports.So what i am trying to do is to deny access to from one port to other 4 ports and granted access to any other ports. But it is not working, without last rule "allow any any" it has no access to any ports, with the last rule it grants access to every port even to those I denied.Router in Layer 3 mode, all VLANs have their IP's.
At some moment I was able to work it properly but without using any rules, I just tagged my untagged VLANs to those ports which I wanna get access to. As you can see I want allow ports GE1 - GE4 communicate with 1 to 24 ports but not to each other.
Is it possible to deny all access except specific IP's to a service on a Dlink DIR-655 ?Say a web server on port 1234.The allowed IP's are not in a range.
View 1 Replies View RelatedI set-up my law firm network with a server 2008 database. Now I am renting out one of my offices to a separate lawyer and I want him to be able to use my network to access the internet, but not my server 2008. Is that possible or is it already secure being I haven't installed any of my software on his computer?
View 2 Replies View RelatedHow to protect shared folders to denie access from server???i am really in need of a software where i can share files on network but i don't want the system administrator to access those files.
View 1 Replies View RelatedI have block some website in URL Blocking.But they can access the website which i have blocked through proxy server? Can i deny user access proxy server? It has many proxy server,i can not block the proxy server one by one.
View 1 Replies View Relatedi have got the below long on the acs 5.2,one the vpn client user connect to asa 5510
Description
Selected Shell Profile is DenyAccess
Resolution Steps
Check whether the Device Administration Authorization Policy rules are correct
We have a WLC 4402, with interface Management, AP-Manager, and only the ap-manager interface is enabled for dynamic AP Management, how can i enable the dynamic AP Management for management interface also. Because i couldn't access WLC from via wireless, only able to access it via wired.
View 15 Replies View RelatedI have three eigrp configured routers A, B , C in a single broad cast LAN.I want to deny router A eigrp peering with router B, need to retain A peering with C. A router:no neighbor <B router lan ip> under router eigrp will work ?or how can i deny using the multicase ip address 224.0.0.10 usinng access lis an din which direction i need to apply.
View 4 Replies View RelatedI have a SG300 Switche working in layer 3 mode.I configured 3 VLANs on the switch, assigned all ports, given IP addresses to VLANs interfaces, etc.Now I want to implement ACL to permit or deny access between vlans and hosts.Can I apply an ACL to a whole VLAN (in or out) like Catalyst models?I mean apply the ACL to the entire vlan or the only way in this model is to implement that ACL port by port?Every time I have a new port configure to work in a Vlan I have to implement the ACL?
View 4 Replies View RelatedMy home network is all Windows 7 computers (4 total), and are Ultimates except for my laptop, which is Home Pro. So that's 3 computers with Ultimate and 1 with home pro. I have one computer (also Win 7 Ult.) that's my primary computer, the other 2 computers are mostly HTPC computers that I have set up to stream from my main computer.I do know how to set up Home groups for sharing files, but I could only set it up that there would be full access to the shares or no access at all. [For simplicity: My primary computer will be PC-1, the 2 HTPC's will be PC-2 and PC-3, and my laptop PC-4.]PC-1 will host all the files I want access to. PC-2 and PC-3 will access my music and videos folders for streaming. PC-4 which is my own personal laptop will have full access to shared folders that I DO NOT want being able to be accessed on PC-2 and PC-3.I have tried many and various types of ways to deny access from PC-2 and PC-3, where PC-4 would be allowed access to on my PC-1, but every time it's either all PC's get access or NO access to the shared folders. I also want to keep all my user accounts as admins.
View 2 Replies View RelatedI've got a Belkin F5D8236-4 wireless router. I've had no trouble connecting three laptops to it, but I've completely failed with my HTC smartphone and a friend has failed with a iPhone, I've also failed with an iPod. I've just got a Nexus 7, for my birthday, and that won't connect either! All devices find the network, they just don't connect!
View 6 Replies View RelatedI used the ASA 5510 and in these days, facing the problem is internet is very slow. When i check in real-time log viewer debugging, i found the following logs 6|Jun 29 2011|15:47:53|106015|123.123.123.123|416|111.222.111.222|80|Deny TCP (no connection) from 123.123.123.123/416 to 111.222.111.222/80 flags ACK on interface Inside 4|Jun 29 2011|15:47:53|106023|123.123.123.123|852|111.222.111.222|80|Deny tcp src Inside:123.123.123.123/852 dst Outside: 111.222.111.222/80 by access-group "Internal_access_in" [0x0, 0x0] a lot of log message are come out and I notice that 111.222.111.222 ip is try to attack my network. In that moment, my network is very slow and nearly to be down. When I block with that ip by access list, network is up again. But after a few moment, attack from other ip, it's so terrible and so tired to block a lot of ip by acl.
View 6 Replies View RelatedThere is one guest interface, one guest WLAN. The WLAN is set with a DHCP override address of the guest interface. But it no longer allows this as I found out. Anyway, I can get the client to now receive an address from the internal pool on the WLC, but it will not route to the authentication page. I noticed that the WLC excludes the clients attempting to connect on the guest WLAN due to failed 802.1x authentication! the WLC never even gave me the chance to authenticate using an account created either through the lobby ambassador or creating one directly on the controller.
View 3 Replies View RelatedI have a WLC of 4402 and AP's of AIR-LAP1142N-E-K9 . Where am getting problem of that users are complaining that they cannot connect it some times and they used to get disconnected in between.
View 1 Replies View Relatedwe have a two port 4402 WLC here with only one port currently in use. The topology is bacically the used port uplinks to a dmz switch. Our Intranet and the Internet are accessed via an ASA from the WLC. The WLC also sits in the DMZ. This WLC is only used for guest wireless access. The AP information and traffic is exchagned from a primary WLC on our Intranet and authentication is done via RADIUS. Internet access is handled through the ASA as well on the DMZ. We have a completely independent ISP broadband connection here that was put in long before I was ever here and is used for guest wired web access. All ports are clearly labelled and have bright pink patch cords. What I would like to do is have our wireless guests be on that network rather than our dmz for their web access. I have pulled an ethernet cable from the switch that connects to that broadband connection to the cabinet with the 4402. So the physical is fine right now. I'm not all that familiar with the WLC's, so I'm not sure if everything else can remain the same as it is right now, but just connect the second port to the broadband connection and route guest Internet traffic through there rather than the DMZ.
View 1 Replies View RelatedI have been trying to create a Guest WLan on my 4402 WLC system and have found several confilcting documents explaining the procedure. During this process I have notices that although the current corp wireless works, there was never a virtual interface created for it. Instead it uses the same Wlan/Vlan as the ap manager and managemnt interfaces. Could this by why I cant seem to get the Guest access working? or is this not a problem after all since the wireless does work.
View 1 Replies View RelatedDoes the Cisco 1262N Lightweight Access Point (AP) work's with Wireless LAN Controller 4402?
View 1 Replies View RelatedI have this guest wlan working with web authentication, as you may know in order to get authenticated you must have an IP address first then have a valid username and password. The problem is that if you don't have valid credentials you keep the IP address anyways.I'd like to know if there is a way to release the IPs that are not being used? The WLC is the DHCP server for this network.
-WLC4402
-6.0.202.0
I have cisco 4402 Wireless LAN Controller with Cisco Access Point (AIR-LAP1252G-E-K9), everything is running smoothly.How come i use my Access Points without Wireless LAN Controller, is there any possibility then which AP model would be suitable?
View 2 Replies View RelatedOur head office has two 4402 wireless controllers 16 AIR-LAP 1142 access points in the office. we've just bought an AP541 for one of the regional offices. What I want to know is can I 8inergrate the AP541 into the wireless network with the 4402 so I can administer from a central site and so the wireless users will be active at the regional site connected to the WAN.
View 1 Replies View RelatedI've got 3 WLC 4402 controllers and the wireless is working perfectly except for 1 issue. We are trying to connect an apple tv, so we can stream picture, videos etc from ipads and Macbooks to a large display for media teaching.The setup works at home, but not at work.The apple TV is on the same network as the wireless apple devices, (we use a 10.6.4.x-10.6.5.254 range), both are dhcping the addresses (have tried fixing but that made no difference). I've enabled multicasting and igmp snooping and set the multicast address as 239.0.0.0 and it still doesn't work.
View 11 Replies View Related