@mjob81 wrote:
that may work with a controller, but i'm running Instant
no option for Deny Any User User
i only have {Allow:Deny} | {Service} | {to All:to a server:except a server:to a network: except a network}
I dont want to list out each possible guest IP as a server, it would work but a lot of enteries
mjob81,
One way of achieving this is as follows:
Create Network based access rules for the guest network
Example:
Guest network - 192.168.1.0/24
Gateway: 192.168.1.1
RULES:
1. allow any on server 192.168.1.1
2. allow any on server <to any other server you want users to be able to access>
3. deny any to network 192.168.1.0/24
4. allow any to all destination
This would prevent inter-user traffic on the guest network.
NOTE: the above rules will not allow external sources to initiate session with the guest network clients.
Hope it helps !