Wireless Access

last person joined: yesterday 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.
Expand all | Collapse all

Policy not allowing new devices to communicate

This thread has been viewed 2 times
  • 1.  Policy not allowing new devices to communicate

    Posted Feb 19, 2020 09:21 AM

    I've got a working policy that allows a mix of wired/wireless clients to talk to a specific wireless device. The wireless clients are all part of the same subnet and have the same role.
     
    I added a new IP to the policy and it does not work. I've double checked that have a rule defining communication both ways. 

    Any idea what to look for?



  • 2.  RE: Policy not allowing new devices to communicate

    EMPLOYEE
    Posted Feb 19, 2020 11:24 AM

    Where you have added IP in Clearpass service rule or Controller rules?

    Provide more details for better understanding.



  • 3.  RE: Policy not allowing new devices to communicate

    Posted Feb 19, 2020 11:48 AM

    I do not have ClearPass. If I understand correctly this would be a controller rule.



  • 4.  RE: Policy not allowing new devices to communicate

    EMPLOYEE
    Posted Feb 19, 2020 12:03 PM

    Open TAC ticket to troubleshoot this issue.



  • 5.  RE: Policy not allowing new devices to communicate

    EMPLOYEE
    Posted Feb 19, 2020 02:12 PM

    Hello Rinnej,

     

    If you do not have a clearpass, you posted your question in the wrong forum "Security", you should be posting this question in "Wireless Access", I would recommend either posting the question again, in the correct forum or you could open a AOS TAC case as mentioned in the other comment., if you have access, hope this helps..

     

     

    --

     



  • 6.  RE: Policy not allowing new devices to communicate

    EMPLOYEE
    Posted Feb 20, 2020 05:07 AM

    Message moved to the Wireless Access category.

     

    Could it be that you have enabled the 'Deny inter user traffic' on the SSID? If that is enabled, no traffic is allowed between clients regardless what the roles allow.