Issues allowing clients back on network after selecting Forget Policy then adding with Normal policy

Solved
DarrenOC
Kind of a big deal
Kind of a big deal

Issues allowing clients back on network after selecting Forget Policy then adding with Normal policy

Hi All,

 

Can anyone please explain this anomaly:

 

 - client had previously Blacklisted  a range of clients following an incident

 - When trying to place the clients back on the network we set them to Forget then manually added them back in with the Normal policy applied

 - After this the clients were still unable to access the network

 - within the client list the client was still showing as Blocked despite them having the Normal policy applied,.

 

Further testing we simply set the clients from Blacklisted to Normal and they came straight on.  Whats different with the Forget policy?

 

Cheers

Darren OConnor | doconnor@resalire.co.uk
https://www.linkedin.com/in/darrenoconnor/

I'm not an employee of Cisco/Meraki. My posts are based on Meraki best practice and what has worked for me in the field.
1 Accepted Solution
cmr
Kind of a big deal
Kind of a big deal

The forget function is related to deleting customer data for GDPR (or similar) reasons.  By forgetting the client you don't actually remove the blacklisting, you simply remove them from view.

 

The best path to follow is to let the network find the client again (it won't gain access but will appear in the list) then by selecting it at the left hand side and clicking the edit button at the too, you can choose to whitelist it or set it to normal.

 

If you look carefully before doing this you will see an exclamation mark for the clients policy and if you hover over it you will see that the client is indeed blocked.

 

The client should regain access in 30 seconds or so, though you won't be able to see their access (other than MB passed) for at least several hours.

View solution in original post

2 Replies 2
cmr
Kind of a big deal
Kind of a big deal

The forget function is related to deleting customer data for GDPR (or similar) reasons.  By forgetting the client you don't actually remove the blacklisting, you simply remove them from view.

 

The best path to follow is to let the network find the client again (it won't gain access but will appear in the list) then by selecting it at the left hand side and clicking the edit button at the too, you can choose to whitelist it or set it to normal.

 

If you look carefully before doing this you will see an exclamation mark for the clients policy and if you hover over it you will see that the client is indeed blocked.

 

The client should regain access in 30 seconds or so, though you won't be able to see their access (other than MB passed) for at least several hours.

cmr
Kind of a big deal
Kind of a big deal

Lastly, if you add them manually by MAC you will have the new manual entry and the forgotten real entry that will not reappear as you have created a manual one.  As you found out, this leaves you in a bizarre locked out situation.

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.