GeorgeThalassinos  Freshman Member

NWA1123-AC2 and WiFi Client control Hi, my setup includes an older USG100 device and the 1123 which connects directly to one of the USG's ports. The USG acts as a DHCP server for the 1123's SSID clients. What I want to achieve is to protect my legit clients on my production SSID1 from communicating with any other client that might login on SSID1, whilst ALLOWING the legit clients to communicate with each other. Reading the description about L2 Isolation tables and Intra-BSS traffic blocking I expected to be able to allow interconnectivity between all my legit clients on my SSID1 by including them in an L2 Isolation list while any other client on SSID1, not being on the list, would not be allowed to communicate with the legit ones. At least until I put them on the list. But that is not how it works and correct me if I am wrong. The L2 Isolation list is a list of clients OUTSIDE SSID1 which are permitted to all SSID1 clients. Intra SSID1 communication is allowed depending on the Intra-BSS setting. The standard "Client AP Isolation" option on various APs. Am I right or not? Still, having the USG allows me to set up Firewall rules that have the same effect as L2 Isolation. So I don't really need L2 Isolation.  Therefore I would like your input as to whether there is a way, on the same SSID, to have some clients communicate freely with each other whilst being "hidden" from others. Perhaps some other model and not the 1123??

Activity

Avatar