I created a SSID that uses IPSK without radius. I created 3 IPSK groups tied to 3 group policies. Each group assigns a different vlan. I want to ensure that a client cannot switch networks if they know the PSK of a different group. If I manually add clients to groups via the dashboard will they be able to hop to a different group simply by knowing the password of another group? During testing II manually added a client to Group A via the dashboard. I was still able to connect to the SSID if I use the password from group B, but the client IP stays on the network for Group A. If I hover over the clients under Network wide> Group Policies Group A says "set via dashboard, group B says "set via 802.1x. What's the behavior for this? Will clients manually set via the dashboard take precedence?
... View more