I've submitted an email ticket with this question to support, but thought I'd post it here also.
Is it possible to block an application, i.e. Facebook, when connected to specific AP's? We have a store that's on the same network as our office, and we want to block Facebook access for users who are connected to the stores two AP's while still allowing Facebook access on the two office AP's. Physically speaking, the office AP's and store AP's are not physically close enough to each other for there to be any overlapping coverage as they are in two separate buildings. I know you can easily create a layer 7 rule that'll block applications, but it blocks that application for the entire network.
We do have an SSID that employees can connect their cell phones to, it is WPA2 protected. We have considered creating another SSID that enforces the layer 7 rule blocking Facebook but did not want to have to go through the steps of creating it and then going to each cell phone and entering in the SSID password for the store users as we do not give it to anyone for security reasons. Any input or advice would be greatly appreciated!