<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Isolate two access controlled VSC on MSM Controller in M and MSM Series</title>
    <link>https://community.hpe.com/t5/m-and-msm-series/isolate-two-access-controlled-vsc-on-msm-controller/m-p/5320119#M2426</link>
    <description>&lt;P&gt;Hello. Since I have no answer on my previous post, I think I should reformulate my question :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Configuration :&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Controller MSM 760.&lt;/P&gt;
&lt;P&gt;2 access controlled VSC working fine (VSC A and VSC B)&lt;/P&gt;
&lt;P&gt;2 relay dhcp working fine&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The problem is that a host on the VSC A is able to ping the LAN interface of VSC B and inversly.&lt;/P&gt;
&lt;P&gt;For the moment, even host on VSC A can ping hosts on VSC B and inversly.&lt;/P&gt;
&lt;P&gt;I really like to make those two VSC perfectly isolated.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I tried many things :&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Use the firewall, but it only apply on internet port. The routing between the two networks is done on the LAN port&lt;/LI&gt;
&lt;LI&gt;Put everybody on the internet port instead of using the LAN port for AP. Same result.&lt;/LI&gt;
&lt;LI&gt;Use VLAN : even with VLANs, the access controll option force the traffic to pass thru the controller, which do the inter-vlan routing job.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;I'm sure you'll have the answer, so... thanks in advance.&lt;/P&gt;
&lt;P&gt;Poilou&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;P.S. This thread has been moved from Communications, Wireless (Legacy ITRC forum) to MSM Series. -HP Forum Moderator&lt;/P&gt;</description>
    <pubDate>Sun, 01 Dec 2013 14:12:23 GMT</pubDate>
    <dc:creator>Poilou</dc:creator>
    <dc:date>2013-12-01T14:12:23Z</dc:date>
    <item>
      <title>Isolate two access controlled VSC on MSM Controller</title>
      <link>https://community.hpe.com/t5/m-and-msm-series/isolate-two-access-controlled-vsc-on-msm-controller/m-p/5320119#M2426</link>
      <description>&lt;P&gt;Hello. Since I have no answer on my previous post, I think I should reformulate my question :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Configuration :&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Controller MSM 760.&lt;/P&gt;
&lt;P&gt;2 access controlled VSC working fine (VSC A and VSC B)&lt;/P&gt;
&lt;P&gt;2 relay dhcp working fine&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The problem is that a host on the VSC A is able to ping the LAN interface of VSC B and inversly.&lt;/P&gt;
&lt;P&gt;For the moment, even host on VSC A can ping hosts on VSC B and inversly.&lt;/P&gt;
&lt;P&gt;I really like to make those two VSC perfectly isolated.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I tried many things :&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Use the firewall, but it only apply on internet port. The routing between the two networks is done on the LAN port&lt;/LI&gt;
&lt;LI&gt;Put everybody on the internet port instead of using the LAN port for AP. Same result.&lt;/LI&gt;
&lt;LI&gt;Use VLAN : even with VLANs, the access controll option force the traffic to pass thru the controller, which do the inter-vlan routing job.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;I'm sure you'll have the answer, so... thanks in advance.&lt;/P&gt;
&lt;P&gt;Poilou&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;P.S. This thread has been moved from Communications, Wireless (Legacy ITRC forum) to MSM Series. -HP Forum Moderator&lt;/P&gt;</description>
      <pubDate>Sun, 01 Dec 2013 14:12:23 GMT</pubDate>
      <guid>https://community.hpe.com/t5/m-and-msm-series/isolate-two-access-controlled-vsc-on-msm-controller/m-p/5320119#M2426</guid>
      <dc:creator>Poilou</dc:creator>
      <dc:date>2013-12-01T14:12:23Z</dc:date>
    </item>
    <item>
      <title>Re: Isolate two access controlled VSC on MSM Controller</title>
      <link>https://community.hpe.com/t5/m-and-msm-series/isolate-two-access-controlled-vsc-on-msm-controller/m-p/5366237#M2427</link>
      <description>&lt;P&gt;I'm sorry to UP this topic. We have for the moment no answer and no idea.&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;</description>
      <pubDate>Wed, 19 Oct 2011 09:18:21 GMT</pubDate>
      <guid>https://community.hpe.com/t5/m-and-msm-series/isolate-two-access-controlled-vsc-on-msm-controller/m-p/5366237#M2427</guid>
      <dc:creator>Poilou</dc:creator>
      <dc:date>2011-10-19T09:18:21Z</dc:date>
    </item>
    <item>
      <title>Re: Isolate two access controlled VSC on MSM Controller</title>
      <link>https://community.hpe.com/t5/m-and-msm-series/isolate-two-access-controlled-vsc-on-msm-controller/m-p/5424649#M2428</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; Open the VSC A and go to Wireless clients &amp;gt; Allow traffic between : (Choose no)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; then Save&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; Open the VSC&amp;nbsp;B and go to Wireless clients &amp;gt; Allow traffic between : (Choose all)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (it's by default all)&amp;nbsp;&amp;nbsp; then Save&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now the wireless clients from the two VSCs should be isolated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Whish it helps.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Adil&lt;/P&gt;</description>
      <pubDate>Wed, 21 Dec 2011 13:48:05 GMT</pubDate>
      <guid>https://community.hpe.com/t5/m-and-msm-series/isolate-two-access-controlled-vsc-on-msm-controller/m-p/5424649#M2428</guid>
      <dc:creator>adil</dc:creator>
      <dc:date>2011-12-21T13:48:05Z</dc:date>
    </item>
    <item>
      <title>Re: Isolate two access controlled VSC on MSM Controller</title>
      <link>https://community.hpe.com/t5/m-and-msm-series/isolate-two-access-controlled-vsc-on-msm-controller/m-p/5482243#M2429</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Allow me to extend as I have the exact same issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Except that I am trying to restrict communication between users of one VSC to EQUIPMENT - not users - of the other VSC.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In essence, have have all the management interfaces of the network equipment in one VSC, my gust connect through another one, and at this moment they can connect to the equipment web GUI (switches/AP) from their guest VSC. routed by the MSM.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Not very secure. Can I restrict that and stop intervlan routing on the MSM?&lt;/P&gt;</description>
      <pubDate>Thu, 12 Jan 2012 14:14:22 GMT</pubDate>
      <guid>https://community.hpe.com/t5/m-and-msm-series/isolate-two-access-controlled-vsc-on-msm-controller/m-p/5482243#M2429</guid>
      <dc:creator>BenBen486</dc:creator>
      <dc:date>2012-01-12T14:14:22Z</dc:date>
    </item>
  </channel>
</rss>

