cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
342
Views
0
Helpful
3
Replies

ACL in Aireos and 9800 WLC

ahmad.syed
Level 1
Level 1

Hi Team,

We have ACL defined for Aireos controller in flexconnect and central switching . But as we know , in central switching AIREOS WLC we get an option to defined ACL in inbound and outbound direction which we have not in flexconnect .

How we can define outbound direction ACL in 9800 WLC for central switching ? 

Example of Aireos WLC ACL in central switching as below:

Out 0.0.0.0/0.0.0.0 0.0.0.0/0.0.0.0 Any 0-65535 0-65535 Any Permit

3 Replies 3

Arshad Safrulla
VIP Alumni
VIP Alumni

What is the purpose of this ACL? When you meant by central switching do you mean split tunneling in Flex connect? In that case you need an ACL which has

"deny ip any any"

Just create an ACL and dont add any rules, this should suffice. 

Hi @Arshad Safrulla ,

This ACL is defined for Local mode AP. When we use Aireos converter to convert ACL , its giving permit ip any any in last line as an output for line 

Out 0.0.0.0/0.0.0.0 0.0.0.0/0.0.0.0 Any 0-65535 0-65535 Any Permit

 

If you don't have any deny statements to be added to the same ACL. you are safe to ignore it.

Review Cisco Networking products for a $25 gift card