
cnPilot Enterprise AP
User Guide
CAMBIUM
NETWORKS
55
acl permit proto PRECEDENCE (tcp|udp|icmp|any) (SOURCE-IP{/{mask|prefix-length}}|any) (SOURCE-PORT|any)
(DESTINATION-IP{/{mask|prefix-length}}|any) (DESTINATION-PORT|any) (in|out|any) #Please ignore port for ie
Example: acl permit proto 30 tcp any any any 10000 out
Note
If ACL rules are configured and there is no matching rule exist then by default packets will be
dropped. So it is advised to add default rule with lower priority to allow or deny un-matched
traffic.
DNS ACL
DNS ACL gives URL filtering based on the domain name in DNS Requests. User can configure
allow or deny list based on the requirements. If a domain has been configured as allow then the
wireless clients can load that URL. If a domain has been kept as deny then those URLs will be
blocked by AP Wildcards as domain names are supported (Eg: *.google.com). You can configure
upto 256 entries per WLAN.
Configuring DNS ACL
You can configure DNS ACL using the UI or CLI:
In the UI
3.
Navigate to the Configure > WLAN > Access tab. The following fields are displayed:
a.
Select preference from the Preference drop-down list.
b.
Select type of action from Action drop-down list.
c.
Enter domain name in the Domain text box.
4.
Click Save.