We have IAP215's at most of our locations running the 8.6.0.8_79369 firmware. Configured with company and guest networks. We recently switched from Sonicwall firewalls to CATO and apparently they see the guest network differently.
We were behind the Sonicwalls when we setup the guest network. Set it as an employee type with passcode, virtual controller managed. Added a few rules to avoid our main network and it worked great, internet access only. After we switched to the CATO the guest network has been sketchy, especially for mobile devices.
After talking to a few CATO techs they recommended setting up a VLAN on the CATO firewall and forwarding everything on the guest network to it. DHCP, DNS, etc. Since setting up the guest network was super simple we were able to figure it out without a lot of Aruba specific knowledge. Now we are struggling. I'm assuming we can forward all guest traffic to the firewall, just not sure how to setup the AP's to do it. Any info would be appreciated.
------------------------------
Stephen Renner
------------------------------