<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Can I prevent wireless users from logging into the Web inter in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649406#M86977</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you can limit access to AP with access-list&lt;/P&gt;&lt;P&gt;Let we say only user with IP 192.168.10.10 can access AP&lt;/P&gt;&lt;P&gt;1.create standard ACL&lt;/P&gt;&lt;P&gt;AP(config)# access-list 10 permit host 192.168.10.10&lt;/P&gt;&lt;P&gt;Because the is an implicit deny on end of ACL only host 192.168.10.10 is valid host&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. Apply ACL to http access&lt;/P&gt;&lt;P&gt;AP(config)# ip http access-class 10&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3. Access ACL to VTY (for telnet access)&lt;/P&gt;&lt;P&gt;AP(config)# line vty 0 4 &lt;/P&gt;&lt;P&gt;AP(config-line)#access-class 10 in&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;M.&lt;/P&gt;&lt;P&gt;Hope that helps rate if it does&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 27 Dec 2006 11:54:57 GMT</pubDate>
    <dc:creator>m.sir</dc:creator>
    <dc:date>2006-12-27T11:54:57Z</dc:date>
    <item>
      <title>Can I prevent wireless users from logging into the Web interface</title>
      <link>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649405#M86976</link>
      <description>&lt;P&gt;With the Cisco 1100 AP's is there any way to prevent Wireless users from accessing the Telnet or HTTP administrations site.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We'd like this access available only to LAN client or even specific IP addresses.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 03 Jul 2021 20:25:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649405#M86976</guid>
      <dc:creator>smsialane</dc:creator>
      <dc:date>2021-07-03T20:25:26Z</dc:date>
    </item>
    <item>
      <title>Re: Can I prevent wireless users from logging into the Web inter</title>
      <link>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649406#M86977</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you can limit access to AP with access-list&lt;/P&gt;&lt;P&gt;Let we say only user with IP 192.168.10.10 can access AP&lt;/P&gt;&lt;P&gt;1.create standard ACL&lt;/P&gt;&lt;P&gt;AP(config)# access-list 10 permit host 192.168.10.10&lt;/P&gt;&lt;P&gt;Because the is an implicit deny on end of ACL only host 192.168.10.10 is valid host&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. Apply ACL to http access&lt;/P&gt;&lt;P&gt;AP(config)# ip http access-class 10&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3. Access ACL to VTY (for telnet access)&lt;/P&gt;&lt;P&gt;AP(config)# line vty 0 4 &lt;/P&gt;&lt;P&gt;AP(config-line)#access-class 10 in&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;M.&lt;/P&gt;&lt;P&gt;Hope that helps rate if it does&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Dec 2006 11:54:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649406#M86977</guid>
      <dc:creator>m.sir</dc:creator>
      <dc:date>2006-12-27T11:54:57Z</dc:date>
    </item>
    <item>
      <title>Re: Can I prevent wireless users from logging into the Web inter</title>
      <link>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649407#M86978</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If it's a thin AP, there is a check-button you can push that prevents any wireless user from being able to administer the WLC.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;RA&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Jan 2007 13:18:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649407#M86978</guid>
      <dc:creator>Richard Atkin</dc:creator>
      <dc:date>2007-01-20T13:18:06Z</dc:date>
    </item>
    <item>
      <title>Re: Can I prevent wireless users from logging into the Web inter</title>
      <link>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649408#M86979</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It is a 1120 with 802.11g modules.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Where in the web interface is this check box?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Jan 2007 19:07:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649408#M86979</guid>
      <dc:creator>smsialane</dc:creator>
      <dc:date>2007-01-20T19:07:10Z</dc:date>
    </item>
    <item>
      <title>Re: Can I prevent wireless users from logging into the Web inter</title>
      <link>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649409#M86980</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Select the 'Security' tab at the top of the WLC GUI, then 'Mgmt via Wireless' on the left.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Don't forget to hit apply ;o)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 21 Jan 2007 10:01:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649409#M86980</guid>
      <dc:creator>Richard Atkin</dc:creator>
      <dc:date>2007-01-21T10:01:52Z</dc:date>
    </item>
    <item>
      <title>Re: Can I prevent wireless users from logging into the Web inter</title>
      <link>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649410#M86981</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry to re-ignite this issue, but I'm also interested in disabling mgmt over the wireless medium.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let's say I have a Cisco AP1240G and no Wireless LAN Controllers, can I achieve the same result if I created an ACL that blocks all telnet/ssh traffic, and apply that ACL to all inbound traffic on the wireless interface? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;E.G.&lt;/P&gt;&lt;P&gt;AP(config)# access-list 101 deny tcp any any eq 22&lt;/P&gt;&lt;P&gt;AP(config)# access-list 101 deny tcp any any eq 23&lt;/P&gt;&lt;P&gt;AP(config)# access-list 101 permit ip any any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;AP(config)# interface dot11radio&lt;/P&gt;&lt;P&gt;AP(config)# ip access-group 101 in&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2007 08:35:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/can-i-prevent-wireless-users-from-logging-into-the-web-interface/m-p/649410#M86981</guid>
      <dc:creator>joch2joch</dc:creator>
      <dc:date>2007-08-31T08:35:47Z</dc:date>
    </item>
  </channel>
</rss>

