Hello everyone,
i'm trying to test adaptive policy and i'm wondering why its not working.
So here my current setup:
- MX68 with Advanced Security License
- 2 VLans: A 192.168.0.0/24 (MX IP: 92.168.0.1) and B 192.168.1.0/24 (MX IP: 92.168.1.1)
- Port 3 Access, VLan A
- Port 4 Access, Vlan B
- 2 Adaptive Policy Objects, matching the VLans
- 2 Adaptive Policy Groups containing one of the policy Objects (Policy Object Binding)
- An adaptive Policy to deny any traffic between those two groups
- Enabled adaptive Policy for the network
Still a client connected to Port 4 (VLAN B) is able to ping the MX IP in VLan A.
A packet capture on the MX, LAN side does not show any tagging.
What did i miss?
Is the MX capable of tagging the packets? Policy Object Binding sounds so.
Greetings