Controller Security
Summit WM3000 Series Controller System Reference Guide342
network. Enter a new Index to define a new MAC Address range and allow/deny ACL Index
designation.
6 Enter the a hex value for the Starting MAC address.
This is the beginning MAC address either allowed or denied access to the controller managed
network.
7 Enter the a hex value for the Ending MAC address. Enter the same Starting MAC address within the
Ending MAC field to use only the Starting MAC address as either allowed or denied access to the
controller managed network.
8 To modify the zone associated with the ACL select a Zone ID from the drop-down menu. Zone
numbers range from 1 to 48. Creating zones allows you to associate firewall policies to each zone.
All members of the same zone will have the same firewall policies applied to them.
9 Use the drop-down menu to select Allow or Deny.
This rule applies to MUs within the specified Starting and Ending MAC Address range. For
example, if the adoption rule is to Allow, access is granted for all MUs within the specified range.
10 Refer to the Status field for the current state of the requests made from applet. This field displays
error messages if something goes wrong in the transaction between the applet and the controller.
11 Click OK to use the changes to the running configuration and close the dialog.
12 Click Cancel to close the dialog without committing updates to the running configuration.
Associating an ACL with a WLAN
Use the Membership screen to define a name for the ACL index and map the index to WLANs (1-32)
requiring membership permission restrictions.
To associate a filter ACL index with a WLAN:
1 Select Security > Wireless Firewall from the main menu tree.
2 Click the Security Policy tab.
3 Click the Wireless Filters tab.
4 Select one or more of the existing ACLs from the filters list.
5 Click the Memberships button.