218CHAPTER 6: CONFIGURING WX SYSTEM PARAMETERS

Restricting Layer 3

To restrict Layer 3 traffic among clients in the same VLAN, use an ACL.

Traffic Among Clients

You can configure the ACL yourself or use the Restrict L3 Traffic option in

in a VLAN

3WXM.

1Access the VLAN table:

a Select the Configuration tool bar option.

b In the Organizer panel, click the plus sign next to the WX switch. c Click the plus sign next to System.

d Select VLANs.

2In the Content panel, select the VLAN.

3In the Task List panel, select Restrict L3 Traffic.

4Type the IP address of the VLAN’s gateway.

5Click Next.

The ACL 3WXM will configure to block the traffic is displayed.

6Read the information on the wizard page about the ACL. If you need to modify the ACL, see “Viewing and Configuring ACLs” on page 220.

7Click Finish.

Changing a VLAN’s WX switches configured to comprise a Mobility Domain allow users to Tunnel Affinity roam seamlessly across MAP access points and across WX switches.

Although a WX that is not a member of a user’s VLAN cannot directly forward traffic for the user, the WX can tunnel the traffic through another WX that is a member of the user’s VLAN.

If a WX that is not in the user’s VLAN has a choice of more than one other WX through which to tunnel the user’s traffic, the WX selects the path based on the tunnel affinity value. This is a numeric value that each WX within the Mobility Domain advertises for each of its local VLANs to all other WX switches in the Mobility Domain. The WX the user is roaming from selects the WX with the highest affinity value for the user’s VLAN as the path for the user’s data. If two or more WX switches have the same tunnel affinity value, the WX the user is roaming from randomly selects a WX.

1Access the VLAN table:

a Select the Configuration tool bar option.

b In the Organizer panel, click the plus sign next to the WX switch.

Page 218
Image 218
3Com WX4400 3CRWX440095A WX1200, 3CRWXR10095A, 3CRWX120695A WXR100 manual Restricting Layer, A Vlan