cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
5422
Views
5
Helpful
4
Replies

Private VLAN in Wireless

recep.sefer
Level 1
Level 1

I want no two wireless client on the same access-point can acces

s each other.

Is it possible for standalone AP? or Controller Based?

THANKS

4 Replies 4

Leo Laohoo
Hall of Fame
Hall of Fame

interface dot11radio0
  bridge-group port-protected
!
interface dot11radio1
  bridge-group port-protected

Thank you very much,

If it is in controller-based AP? How?

Under WLAN | SSID | Advanced tab, check the P2P Blocking Action and that should do it for you.

-Scott
*** Please rate helpful posts ***

Thank You Scott this was a great helpful feature to have in our Guest Network to void each host communicating to each other.

P2P Blocking Action

Peer-to-peer blocking settings that you can choose.

Disabled—(Default) Disables peer-to-peer blocking and bridges traffic locally within the Cisco WLC whenever possible.

Note Traffic is never bridged across VLANs in the Cisco WLC.

Drop—Causes the Cisco WLC to discard the packets.

Forward-UpStream—Causes the packets to be forwarded on the upstream VLAN. The device above the Cisco WLC decides what action to take regarding the packets.

 

For FlexConnect local switching WLANs, the settings are as follows:

 • Disabled—(Default) Disables peer-to-peer blocking and bridges traffic locally within the AP whenever possible.

 • Drop—Causes the AP to discard the packets.

 • Forward-UpStream—Causes the AP to discard the packets.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card