Wireless Access

Reply
Frequent Contributor II
Posts: 479
Registered: ‎03-15-2014

Does Aruba Support Port Isolation and how to do it?

How can I achive Port Isolation to connect many users on the same SSID and each one on specific VLAN

Guru Elite
Posts: 8,637
Registered: ‎09-08-2010

Re: Does Aruba Support Port Isolation and how to do it?

You can’t assign individual VLANs to every user automatically, but you can enable “Deny inter-user bridging” which will stop wireless clients from being able to communicate with each other.

Sent from Surface Pro

Tim Cappalli | Aruba Security TME
@timcappalli | timcappalli.me | ACMX #367 / ACCX #480
MVP
Posts: 288
Registered: ‎08-27-2012

Re: Does Aruba Support Port Isolation and how to do it?

Couldn't you do it with derivation?
ACDX #419 | ACMP |
MVP
Posts: 1,111
Registered: ‎10-11-2011

Re: Does Aruba Support Port Isolation and how to do it?

I'm sure there's some way you could rig it up with your RADIUS server, but it'd be a hassle.  The trick would be getting the RADIUS server to respond with a unique VLAN for each user that connects.

 

The controller performs stateful firewall inspection and it can deny inter-user traffic as Tim pointed out.  Using roles and firewall policies, there shouldn't be any need to use VLANs for separation, unless PCI compliance is necessary.

=======================================
If a reply adequately addresses your issue, please click on the "Accept as Solution" and "Give Kudos" button so this information can benefit other users.
Guru Elite
Posts: 8,637
Registered: ‎09-08-2010

Re: Does Aruba Support Port Isolation and how to do it?

I guess the question should be: what is the use case? Are you trying to replicate cisco private VLAN?

Tim Cappalli | Aruba Security TME
@timcappalli | timcappalli.me | ACMX #367 / ACCX #480
Search Airheads
Showing results for 
Search instead for 
Did you mean: