Users Guide

Figure 202 - Manual Blacklisting
4. Click Ok.
The Blacklisted Since tab displays the time at which the current blacklisting started for the
client.
5. To delete a client from the manual blacklist, select the MAC Address of the client under the
Manual Blacklisting window and then click Delete.
Dynamic Blacklisting
The clients can be blacklisted dynamically when they exceed the authentication failure threshold
or a blacklisting rule was triggered as part of the authentication process.
Authentication Failure Blacklisting
When the time taken by a client fails to authenticate exceeds the configured threshold, the client
is automatically blacklisted by aW-IAP.
Session Firewall Based Blacklisting
In session firewall based blacklisting, an ACL rule is used to enable the option for automation
blacklisting. when the ACL rule is hit, it would send out blacklist information and the client
would be blacklisted.
To set the blacklist duration:
1. Select the PEF link and then select Blacklisting tab.
l Auth failure blacklist time— Enter the duration since the blacklisting has been triggered
when the authentication failure threshold is exceeded.
l PEF rule blacklisted time— Enter the duration since the blacklisting has been triggered
when a blacklisting rule has been triggered.
NOTE: In the Networks tab, click the New link and navigate to New WLAN > VLAN >
Security page to enable Blacklisting. Set a value between 1 to 10 in the max authentication
failures field for the selected SSID. To enable session firewall based blacklisting, click New
and navigate to WLAN Settings > VLAN > Security > Access window and enable the
Blacklist option of the corresponding ACL rule.
Dell PowerConnect W-Series Instant Access Point 6.2.0.0-3.2.0.0 | User Guide 257 | Policy Enforcement Firewall