Configuring the In/Out Rules for WLAN Services Settings
To configure the Egress
Filtering Mode:
- From the top menu, click
VNS. The Virtual Network Configuration screen displays.
-
In the left pane, click
Global > Filtering Mode. The Egress Filtering Mode
Configuration screen displays.
-
Select an egress filtering
mode:
- All
WLAN Services enforce explicitly defined “Out” rules – All
WLAN (Wireless Local Area Network) services enforce outbound filters on egress
traffic exactly as they are defined in the role.
- All
WLAN Services apply “In” policy rules to “Out” direction traffic –
All WLAN services enforce that outbound policy rules that are explicitly defined
in the role are overridden by a set of rules created by copying each inbound role
rule and swapping the source and destination address roles in the rule.
- Use
WLAN Service setting – Each role‘s rules are interpreted in
accordance with the Egress Filtering
Mode setting of each WLAN Service on which the role is applied. In
this mode, it is possible that a role‘s rules can be interpreted in two different
ways at the same time, if it is used simultaneously on a WLAN service that has
Enforce explicitly defined “Out”
rules enabled and on a WLAN service that has Apply “In” rules to “Out” direction
traffic at the same time.
Note
The
Use
WLAN Service setting is recommended. If you are using Policy
Manager, configure each WLAN Service‘s Egress filtering option directly from
Policy Manager. Enabling Egress Filtering on a WLAN Service port in Policy
Manager is equivalent to setting
Apply “In” rules to “Out” direction traffic in the
WLAN Service‘s Advanced
dialog.
-
Select Rule-based Redirection to enable redirection based on configured
policy rules after a packet is denied. For more information, see Rule-Based Redirection.
Upgrade considerations for default Rule-based
Redirection setting:
- This setting is enabled for the following installation
scenarios:
- For new installations of ExtremeWireless v10.11 or
later
- When upgrading from ExtremeWireless v10.11 or
later
- For factory resets of ExtremeWireless v10.11 or
later
- When upgrading from a previous version of ExtremeWireless, this checkbox
is cleared, and Rule-based Redirection is disabled.