<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: LAN isolation in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/lan-isolation/m-p/5527935#M310927</link>
    <description>&lt;P&gt;NAT mode: Use Meraki DHCP&lt;/P&gt;&lt;DIV class="radio_option_explanation"&gt;&lt;SPAN&gt;Clients receive IP addresses in an isolated 10.0.0.0/8 network. Clients cannot communicate with each other, but they may communicate with devices on the wired LAN if the SSID firewall settings&lt;A href="https://n248.meraki.com/D_Halle_HQ/n/uELYFa5/manage/configure/traffic_shaping" target="_blank" rel="noopener nofollow noreferrer"&gt; &lt;/A&gt;permit.&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV class="radio_option_explanation"&gt; &lt;/DIV&gt;&lt;DIV class="radio_option_explanation"&gt; &lt;/DIV&gt;&lt;DIV class="radio_option_explanation"&gt;Choose the SSID in the Firewall settings and do the following:&lt;/DIV&gt;&lt;DIV class="radio_option_explanation"&gt;&lt;H2 id="toc-hId--1329383388"&gt;Block IPs and ports&lt;/H2&gt;&lt;DIV class="dimmer"&gt;&lt;TABLE&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;SPAN&gt;Layer 2 LAN isolation&lt;/SPAN&gt;&lt;/TD&gt;&lt;TD&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;Disabled&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;Enabled&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;(bridge mode only)&lt;DIV class="medspace firewall_rules"&gt; &lt;/DIV&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Layer 3 firewall rules&lt;SPAN&gt; &lt;/SPAN&gt;&lt;/TD&gt;&lt;TD&gt;&lt;DIV class="firewall_rules flex-editor"&gt;# Policy Protocol Destination Port Comment Actions &lt;TABLE&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt; &lt;/TD&gt;&lt;TD&gt;Deny&lt;/TD&gt;&lt;TD&gt;Any&lt;/TD&gt;&lt;TD&gt;Local LAN&lt;/TD&gt;&lt;TD&gt;Any&lt;/TD&gt;&lt;TD&gt;Wireless clients accessing LAN&lt;/TD&gt;&lt;TD&gt; &lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;Argh, Brecht was faster, haha&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
    <pubDate>Wed, 28 Aug 2019 13:22:59 GMT</pubDate>
    <dc:creator>MarcP829</dc:creator>
    <dc:date>2019-08-28T13:22:59Z</dc:date>
    <item>
      <title>LAN isolation</title>
      <link>https://community.cisco.com/t5/wireless/lan-isolation/m-p/5527933#M310925</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;I am new with Meraki and I have some doubts how to configure two SSIDs in the office. I have one SSID CORP in Bridge mode using DHCP server and I have Guest SSID in NAT mode. &lt;/P&gt;&lt;P&gt;I want Guest to not be able to reach Corp network but because NAT mode doesnt support VLAN tagging I am not sure how to do the isolation.&lt;/P&gt;&lt;P&gt;AP is trunked to the LAN switch.&lt;/P&gt;&lt;P&gt;Any suggestions are welcome? &lt;/P&gt;&lt;P&gt;BR&lt;BR /&gt;V&lt;/P&gt;</description>
      <pubDate>Wed, 28 Aug 2019 13:03:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/lan-isolation/m-p/5527933#M310925</guid>
      <dc:creator>Vl@d@Ni</dc:creator>
      <dc:date>2019-08-28T13:03:50Z</dc:date>
    </item>
    <item>
      <title>Re: LAN isolation</title>
      <link>https://community.cisco.com/t5/wireless/lan-isolation/m-p/5527934#M310926</link>
      <description>&lt;P&gt;You can block their access to the wired network via the &lt;STRONG&gt;Wireless&lt;/STRONG&gt; &amp;gt; &lt;STRONG&gt;Firewall &amp;amp; Traffic Shaping&lt;/STRONG&gt;:&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2019-08-28 15_18_08-Clipboard.png" style="width: 825px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/269084i1A82F7316564C7F0/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 28 Aug 2019 13:21:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/lan-isolation/m-p/5527934#M310926</guid>
      <dc:creator>BrechtSchamp</dc:creator>
      <dc:date>2019-08-28T13:21:15Z</dc:date>
    </item>
    <item>
      <title>Re: LAN isolation</title>
      <link>https://community.cisco.com/t5/wireless/lan-isolation/m-p/5527935#M310927</link>
      <description>&lt;P&gt;NAT mode: Use Meraki DHCP&lt;/P&gt;&lt;DIV class="radio_option_explanation"&gt;&lt;SPAN&gt;Clients receive IP addresses in an isolated 10.0.0.0/8 network. Clients cannot communicate with each other, but they may communicate with devices on the wired LAN if the SSID firewall settings&lt;A href="https://n248.meraki.com/D_Halle_HQ/n/uELYFa5/manage/configure/traffic_shaping" target="_blank" rel="noopener nofollow noreferrer"&gt; &lt;/A&gt;permit.&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV class="radio_option_explanation"&gt; &lt;/DIV&gt;&lt;DIV class="radio_option_explanation"&gt; &lt;/DIV&gt;&lt;DIV class="radio_option_explanation"&gt;Choose the SSID in the Firewall settings and do the following:&lt;/DIV&gt;&lt;DIV class="radio_option_explanation"&gt;&lt;H2 id="toc-hId--1329383388"&gt;Block IPs and ports&lt;/H2&gt;&lt;DIV class="dimmer"&gt;&lt;TABLE&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;&lt;SPAN&gt;Layer 2 LAN isolation&lt;/SPAN&gt;&lt;/TD&gt;&lt;TD&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;Disabled&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;Enabled&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;SPAN&gt; &lt;/SPAN&gt;(bridge mode only)&lt;DIV class="medspace firewall_rules"&gt; &lt;/DIV&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;Layer 3 firewall rules&lt;SPAN&gt; &lt;/SPAN&gt;&lt;/TD&gt;&lt;TD&gt;&lt;DIV class="firewall_rules flex-editor"&gt;# Policy Protocol Destination Port Comment Actions &lt;TABLE&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt; &lt;/TD&gt;&lt;TD&gt;Deny&lt;/TD&gt;&lt;TD&gt;Any&lt;/TD&gt;&lt;TD&gt;Local LAN&lt;/TD&gt;&lt;TD&gt;Any&lt;/TD&gt;&lt;TD&gt;Wireless clients accessing LAN&lt;/TD&gt;&lt;TD&gt; &lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;/DIV&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;Argh, Brecht was faster, haha&lt;/P&gt;&lt;/DIV&gt;&lt;/DIV&gt;</description>
      <pubDate>Wed, 28 Aug 2019 13:22:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/lan-isolation/m-p/5527935#M310927</guid>
      <dc:creator>MarcP829</dc:creator>
      <dc:date>2019-08-28T13:22:59Z</dc:date>
    </item>
  </channel>
</rss>

