06-07-2022 02:58 AM
Hi,
I'm looking to configure rules on an FTD firewall to allow CAPWAP wireless traffic between Wireless Access Points and Wireless Access Controllers. CAPWAP uses UDP ports 5246 & 5247 to encapsulate the wireless data. I believe CAPWAP works in a similar way to GRE in that it encapsulates an inner packet with the main packet.
I know when configuring GRE rules (we use GRE for Aruba Wireless comms) through FTD, the rules need to be configured in the prefilter policy and action set to fastpath.
My question is - can CAPWAP rules be simply added as standard ACP rules or do these need to be configured as prefilter policy rules?
Thanks
Solved! Go to Solution.
06-07-2022 03:13 AM
06-07-2022 03:13 AM
06-07-2022 03:32 AM
perfect answer
06-07-2022 03:53 AM
Can you advise on what the rules would need to look like to add to prefilter policy? Is it just UDP 5246 & 5247 initiated from Wireless APs to Wireless Controller or does it need to be in both directions? Or more than just this?
I see this old article:-
Many Thanks in advance.
06-07-2022 08:40 AM
Many thanks Mohammed
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide