<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SSID &amp; Access Lists in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/ssid-access-lists/m-p/1783568#M52780</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I would like to piggy back on Steves comment.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If it were me. I would put the ACL on the SVI interface of the wireless vlan. So traffic gets dropped right after the WLC. I'm not a fan of ACLs on the WLC. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So on your "Dr WLAN" you have a interface / (vlan 10 for example). On that SVI interface for VLAN 10 allow access to the servers and other items like DNS (as Steve pointed out). Then deny everything else. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Make sense?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 31 Aug 2011 15:41:51 GMT</pubDate>
    <dc:creator>George Stefanick</dc:creator>
    <dc:date>2011-08-31T15:41:51Z</dc:date>
    <item>
      <title>SSID &amp; Access Lists</title>
      <link>https://community.cisco.com/t5/wireless/ssid-access-lists/m-p/1783565#M52777</link>
      <description>&lt;P&gt;I have been asked to configure the following: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Create a specific SSID with 802.1x Authentication (Done)&lt;/P&gt;&lt;P&gt;2. Create access lists, to only allow users connected to that specific ssid access only to &lt;SPAN style="color: #333333; text-decoration: underline; "&gt;&lt;STRONG&gt;CITRX&lt;/STRONG&gt;&lt;/SPAN&gt;, is this possible?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are attempting to connect iPads to our wireless network, for Dr's to use as part of their day to day duties. &lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 03:38:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/ssid-access-lists/m-p/1783565#M52777</guid>
      <dc:creator>Neville Price</dc:creator>
      <dc:date>2021-07-04T03:38:55Z</dc:date>
    </item>
    <item>
      <title>Re: SSID &amp; Access Lists</title>
      <link>https://community.cisco.com/t5/wireless/ssid-access-lists/m-p/1783566#M52778</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes this is possible. When you create the ACL remember to set the out and in policy for the user VLAN and the citrix server farm, if you create the ACL on the WLC.  Also don't forget to allow dns access.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 31 Aug 2011 12:38:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/ssid-access-lists/m-p/1783566#M52778</guid>
      <dc:creator>Stephen Rodriguez</dc:creator>
      <dc:date>2011-08-31T12:38:39Z</dc:date>
    </item>
    <item>
      <title>Re: SSID &amp; Access Lists</title>
      <link>https://community.cisco.com/t5/wireless/ssid-access-lists/m-p/1783567#M52779</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Thanks for that, Is there a document that explains the procedure.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 31 Aug 2011 13:01:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/ssid-access-lists/m-p/1783567#M52779</guid>
      <dc:creator>Neville Price</dc:creator>
      <dc:date>2011-08-31T13:01:52Z</dc:date>
    </item>
    <item>
      <title>Re: SSID &amp; Access Lists</title>
      <link>https://community.cisco.com/t5/wireless/ssid-access-lists/m-p/1783568#M52780</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I would like to piggy back on Steves comment.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If it were me. I would put the ACL on the SVI interface of the wireless vlan. So traffic gets dropped right after the WLC. I'm not a fan of ACLs on the WLC. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So on your "Dr WLAN" you have a interface / (vlan 10 for example). On that SVI interface for VLAN 10 allow access to the servers and other items like DNS (as Steve pointed out). Then deny everything else. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Make sense?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 31 Aug 2011 15:41:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/ssid-access-lists/m-p/1783568#M52780</guid>
      <dc:creator>George Stefanick</dc:creator>
      <dc:date>2011-08-31T15:41:51Z</dc:date>
    </item>
  </channel>
</rss>

