11-13-2018 05:10 PM - edited 07-05-2021 09:26 AM
Hello,
I have a wireless controller in HQ to which an AP connects in the branch. On the branch router I want to match traffic in the ACL that is sourced from AP and destined to controller which I am able to do using IP address of AP as source and controller as destination. However, I can't match traffic on the HQ router by an ACL specifying controller as source and AP as destination. Can anyone please help me to know how can I match traffic from controller to AP? All I know is that a CAPWAP tunnel is formed between AP and controller.
Thanks,
Qamber
11-13-2018 05:57 PM
Is there a way to match traffic based on UDP 5246 & 5247? That should be the CAPWAP traffic & you should be able to see your WLC & AP IP as src/dst on those packets.
HTH
Rasika
*** Pls rate all useful responses ***
11-15-2018 07:42 AM
Thanks Rasika. I tried that but it matches only from AP to controller and not other way around.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide