Blacklisting Clients Dynamically
The clients can be blacklisted dynamically when they exceed the authentication failure threshold or when a blacklisting rule is triggered as part of the authentication process. Users can be blacklisted by the following methods:
- When a client takes time to authenticate and exceeds the configured failure threshold, it is automatically blacklisted by a
- In session firewall-based blacklisting, an ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. rule is used to enable the option for dynamic blacklisting. When the ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. rule is triggered, it sends out blacklist information and the client is blacklisted.
Configuring Blacklist Duration
The following procedure describes how to set the blacklist duration using the WebUI.
|
New WebUI |
Old WebUI |
|---|---|
|
1. Navigate to the > Security page. 2. Expand Blacklisting. 3. Expand 4. In the Auth failure blacklist time field enter the duration after which the clients must be blacklisted. 5. In the PEF rule blacklisted time field enter the duration after which the clients can be blacklisted due to an ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. rule trigger. 6. Click . To enable session-firewall-based blacklisting, click + in the > tab, navigate to the Basic > VLAN Virtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN. > Security > Access window, click under and click the Blacklist check box in the window. |
1. Click the Security link located directly above the Search bar in the Instant main window. 2. Click the Blacklisting tab. 3. Under : 4. For Auth failure blacklist time, the duration in seconds after which the clients that exceed the authentication failure threshold must be blacklisted. 5. For PEF rule blacklisted time, enter the duration in seconds after which the clients can be blacklisted due to an ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. rule trigger. 6. Click . To enable session-firewall-based blacklisting, click New in the tab and navigate to WLAN Wireless Local Area Network. WLAN is a 802.11 standards-based LAN that the users access through a wireless connection. Settings > VLAN Virtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN. > Security > Access window, and click the Blacklist check box of the corresponding ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. rule. |
|
You can configure a maximum number of authentication failures by the clients, after which a client must be blacklisted. For more information on configuring maximum authentication failure attempts, see Configuring Multiple PSK For WLAN SSID Profiles. |
|
The following CLI Command-Line Interface. A console interface with a command line shell that allows users to execute text input as commands and convert these commands to appropriate functions. commands dynamically blacklists clients:
(Instant AP)(config)# auth-failure-blacklist-time <seconds>
(Instant AP)(config)# blacklist-time <seconds>
The following CLI Command-Line Interface. A console interface with a command line shell that allows users to execute text input as commands and convert these commands to appropriate functions. commands enable blacklisting in the SSID Service Set Identifier. SSID is a name given to a WLAN and is used by the client to access a WLAN network. profile:
(Instant AP)(config)# wlan ssid-profile <name>
(Instant AP)(SSID Profile <name>)# blacklisting
The following CLI Command-Line Interface. A console interface with a command line shell that allows users to execute text input as commands and convert these commands to appropriate functions. commands show the blacklisted clients:
(Instant AP)# show blacklist-client config
Blacklist Time :60
Auth Failure Blacklist Time :60
Manually Blacklisted Clients
----------------------------
MAC Time
--- ----
Dynamically Blacklisted Clients
-------------------------------
MAC Reason Timestamp Remaining time(sec) AP IP
--- ------ --------- ------------------- -----
Dyn Blacklist Count :0