Wireless Access

last person joined: 20 hours ago 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.
Expand all | Collapse all

session acls

This thread has been viewed 4 times
  • 1.  session acls

    Posted Mar 22, 2018 06:26 AM

    hello airheads,

    i am setting up a 650 controller (version 6.4.4.10) in my lab.

    I have set up port 1/0 as a trunk.

    i have applied a session acl to 2 vlan interface in the trunk.

    but the session acl doesn't appear to work any ideas?

    pete

    GE 1/0:

    Port-Vlan Session ACL
    ---------------------
    SessionACL            Vlan     Status
    ----------            ----     ------
    check-work            20       applied
    check-work            50       applied


    (REU-A21A-AMC01) #show ip access-list check-work

    ip access-list session check-work
    check-work
    ----------
    Priority  Source  Destination  Service   Application  Action  TimeRange  Log  Expired  Queue  TOS  8021P  Blacklist  Mirror  DisScan  ClassifyMedia  IPv4/6  Contract
    --------  ------  -----------  -------   -----------  ------  ---------  ---  -------  -----  ---  -----  ---------  ------  -------  -------------  ------  --------
    1         any     8.8.8.8      svc-icmp               deny                             Low                                                           4
    2         any     any          any                    permit                           Low                                                           4



  • 2.  RE: session acls

    EMPLOYEE
    Posted Mar 22, 2018 06:57 AM

    What are you trying to do?



  • 3.  RE: session acls

    Posted Mar 22, 2018 07:03 AM

    hello Colin,

    trying to set up the controller as a wired firewall as well as wireless.

    Basically the customer wants to use the controller as a layer 3 gateway and apply firewall rules to the vlans.

    The controller will act as a firewall for wired and wireless users.