08-19-2015 09:30 AM - edited 08-19-2015 09:30 AM
In the controller "logon-control" user role I understand the reasoning for all the firewall rules listed below except the one circled in red. Why is this natt allowed anywhere by default? I'm just curious. I would think this might allow someone to get/go places they should not prior to going through the captive portal...hope that makes sense, thanks.
Solved! Go to Solution.
08-19-2015 09:38 AM
08-19-2015 10:51 AM
Thank you. Yeah I'll remove it but I was just curious why it came from the factory that way...I didn't know if there was some necessary reason to leave it that I didn't know about, thanks.
08-19-2015 01:46 PM
When in doubt, check the user guide for default configurations and their purposes:
For the logon-control policy, it actually mentions removing svc-natt if not needed.
Systems Engineer, Northeast USA
ACCX | ACDX | ACMX