This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Blocking access to LAN, from a specific MAC that's connected via WIFI (APX)

Hello everyone,

I have a Sophos XG firewall, and an APX320 access point.  The access point is in "Bridge AP to LAN" mode.

At the network level, Port 1 is the LAN (which goes to a switch), Port 2 is the WAN.

I am adding a computer to the network that will connect through this access point.  I was hopeful to allow it to access WAN, but completely isolate it from the LAN.

Unfortunately, any rules that I set to drop/reject traffic from this MAC address, for example:

Source: Any zone, "The MAC address"
Destination: Any zone, Any host
What: Any service

Do not successfully drop local packets.

How can this be achieved?

Thank you!



This thread was automatically locked due to age.