Firewall rules and AP Mode

west_support
New here

Firewall rules and AP Mode

Hi.

I am trying to confirm the implications of setting L3 firewall rules on individual SSIDs regarding the mode the AP is set in.

There seems to be conflicting information on the support website.  It implies that L3 rules will only take effect if the AP is in NAT mode.  However later it goes on to say that L£rules can be applied in bridging mode.  This does not sound correct to me as in bridging mode I am assuming the AP is just acting as a L2 bridge and will not be L3 aware?

Anyone had a similar issue?

We are using a mixture of MR53 and MR84.

many thanks

 

3 Replies 3
PhilipDAth
Kind of a big deal
Kind of a big deal

It is my understanding it works in both case.  Just in bridge mode it acts like a transparent firewall.

ww
Kind of a big deal
Kind of a big deal

can you post the url?

PhilipDAth
Kind of a big deal
Kind of a big deal

In fact the "deny local LAN acess" blocks access to all RFC1918 address space - so does exactly the same thing.  it also says "This feature can be used in both Bridge Mode and NAT Mode.".

 

https://documentation.meraki.com/MR/Firewall_and_Traffic_Shaping/'Deny_Local_LAN'_settings_in_Cisco_...

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels