Wireless/Redundant Edge Services xl Module Management and Configuration Guide WS.01.03 or greater

6-53
Wireless Network Management
MAC Authentication (Filters)
4. By default, the module allows all stations. Unless you explicitly deny a
station in an ACL, it can connect.
You will generally follow one of two strategies for MAC authentication:
1. Deny all stations except a select group of authorized stations.
In this case, you should create one or more allow ACLs that specify the
group of authorized stations. Then you should create a deny ACL that
specifies all stations (00-00-00-00-00-00 through FF-FF-FF-FF-FF-FF). The
index numbers for the allow ACLs must be lower than that for the deny
ACL.
2. Allow all stations except a select group of unauthorized stations.
In this case, you should create one or more deny ACLs that specify the
MAC addresses of unauthorized stations. You do not need to create an
allow ACL because allowing all stations is the modules default behavior.
You can, of course, also combine the strategies—for example, deny a station
with a range of allowed stations.
Follow these steps to configure an ACL:
1. Select Special Features > Filters.
2. Click Add.
Figure 6-35. Adding an ACL