To do...
Clear client statistics.
Configuring WLAN client isolation
User isolation enables a fat AP to isolate Layer-2 packets (unicast/broadcast) exchanged between wireless
clients associated with it, disabling them from direct communication.
Figure 8 User isolation network diagram
Client4
Client3
As shown in
Figure
other directly, or learn one another's MAC and IP addresses.
Enabling WLAN client isolation
To enable WLAN client isolation:
To do...
1.
Enter system view.
2.
Enable WLAN client
isolation.
Configuring SSID-based access control
When a user wants to access a WLAN temporarily, the administrator can specify a permitted SSID in the
corresponding user profile so that the user can access the WLAN only through the SSID.
Specifying a permitted SSID in a user profile
After completing the configuration, the user profile needs to be enabled to take effect.
To specify a permitted SSID:
Use the command...
reset wlan statistics client { all |
mac-address mac-address }
Internet
Gateway
AP
Client 2
8, after the fat AP is enabled with user isolation, clients 1 through 4 cannot access each
Use the command...
system-view
wlan-client-isolation enable
Client 1
Remarks
—
Optional
Disabled by default
19
Remarks
Available in user view