Hi,
I need to rectify my answer. @AdamB is correct.
Network-wide->client will the display the policy as "Normal". (However I believe even if we apply a Group Policy manually that will overridden by VLAN based Group Policy)
I created a LAB to test the scenario.
The topology is ISP->MX64->Unmanaged Switch->POE Injector->MR18
On MX64 - Created a VLAN 100
Applied a Group Policy on VLAN 100
On MR - Created a SSID in Bridge Mode Tagging VLAN 100
Network-wide->Clients Displays my laptop in VLAN 100 but policy as "Normal"
IP Address is from the desired VLAN 100.
Test I
Modified the Group Policy on MX.
Added the Rule Deny "Social Web and Photo sharing"
Result Access to Facebook is Blocked
Test II
Modified the Group Policy.
Removed the Rule Deny "Social Web and Photo sharing"
Result Access to Facebook is Allowed
So the end result is In my LAB environment the Group Policy on VLAN Works.
Regards,
Ajit
AjitsNW@gmail.com
www.ajit.network