Authentication and User Management
14.12 Blacklisting Clients
SCALANCE W1750D UI
236 Configuration Manual, 02/2018, C79000-G8976-C451-02
To view the blacklisted clients:
(scalance)# show blacklist-client Blacklisted Clients
-------------------
Blacklisting Users Dynamically
The clients can be blacklisted dynamically when they exceed the authentication failure
threshold or when a blacklisting rule is triggered as part of the authentication process.
Authentication Failure Blacklisting
When a client takes time to authenticate and exceeds the configured failure threshold, it is
automatically blacklisted by an AP.
Session Firewall-Based Blacklisting
In session firewall-based blacklisting, an ACL rule is used to enable the option for dynamic
blacklisting. When the ACL rule is triggered, it sends out blacklist information and the client is
blacklisted.
Configuring Blacklist Duration
You can set the blacklist duration using the SCALANCE W UI or the CLI.
To set a blacklist duration:
1. Click the
link located directly above the Search bar in the SCALANCE W main
window.
2. Click the
tab.
3. Under
:
4. For
Auth failure blacklist time
, the duration in seconds after which the clients that exceed
the authentication failure threshold must be blacklisted
5. You can configure a maximum number of authentication failures by the clients, after
which a client must be blacklisted. For more information on configuring maximum
authentication failure attempts, see Configuring
Security Settings for a WLAN SSID Profile
Note
You can configure a maximum number of authentication failures by the clients, after which a
client must be blacklisted. For more information on configuring maximum authentication
failure attempts, see
Configuring Security Settings for a WLAN SSID Profile (Page 120).