You will want a managed switch for this. Assuming that the workstation
in question shares the medium with all others on the same switch, it
gets the MAC address (and thus access to) the rest of the workstations
via broadcast. The data packets don't hit your gateway (well actually
they do, but it's irrelevant) so firewall rules on it would not help.
If, however, you form a VLAN on a managed switch (to which this and
other workstations are connected, it would prevent traffic from that
workstation to reach others and viceversa. Now, the AP500 may allow you
to restrict traffic so as to block the workstation in question from
reaching the wireless clients, but it wouldn't do anything for the wired
workstations.
Good luck,
S00p
Tor Tveitane wrote:
> Hi,
>
> I have this AP connected to a switch to our LAN. This LAN's gateway is
> 192.168.34.1 and all the LAN workstations are 192.168.34 100-128.
>
> The AP's WAN workstations are 192.168.34.50-64.
>
> Every LAN and WAN workstation have acces to all network resources. So far
> so good.
>
> However I want ONE particular WAN workstation to *only* have access to the
> LAN's gateway (192.168.34.1). This workstation should *not* be able to
> 'see' any other workstation on the WAN nor on the LAN (but the gateway
> only).
>
> How can I configure the AP to achieve this?
>
> Thanks for any hint on this issue
>
> best regards
>
> Tor
|