[NEBULA] how can i deny access between client?

Carlos4311
Carlos4311 Posts: 11  Freshman Member
First Anniversary First Comment
edited April 2021 in Nebula
is there anyway to restrict clients to not able to see other people's device in the network?

Comments

  • Zyxel_Dean
    Zyxel_Dean Posts: 237  Zyxel Employee
    First Anniversary Friend Collector First Answer First Comment
    Hi Carlos4311,
    You can do so by enabling L2 isolation in the Authentication page, which you also need to input your gateway MAC for internet access, if you want to allow specific client to be seen in the network, just in put it's MAC in the list as well.
  • Carlos4311
    Carlos4311 Posts: 11  Freshman Member
    First Anniversary First Comment
    thank you , it can work!
  • solidsnake74
    solidsnake74 Posts: 4  Freshman Member
    First Comment
    I do it but it doesn't work....the client don't surf on internet
  • Zyxel_Dean
    Zyxel_Dean Posts: 237  Zyxel Employee
    First Anniversary Friend Collector First Answer First Comment
    Hello @solidsnake74

    I think you've saved the gateway's WAN interface MAC address if the outcome is no internet.
    Idealy you should input the MAC of the gateway port where the AP is connected to, that is where the internet traffic is going to/from.

    You can look it up under cmd "arp -a" to find the right gateway MAC on a windows client. 

    Here's a link of an FAQ on L2 isolation:
    https://businessforum.zyxel.com/discussion/830/how-to-block-traffic-between-guest-and-employ-ssid/p1?new=1

    -Dean

Nebula Tips & Tricks