Page 1 of 1

OV2500 Quarantine List

Posted: 14 Jun 2022 05:17
by sp-abel
Hi All,
Greeting! I would like to seek your advise why the client was placed into banned in QUARANTINE MANAGER still able to access the network?

Regards,
Abel

Re: OV2500 Quarantine List

Posted: 16 Jun 2022 04:32
by silvio
You need to configure something at the switches - depending from the switch type.
R6-Switches need a special vlan group with correct name.
The feature at R8 switches is only supported at 6860 and 6860E - with a special mac-group.
For all other switches you can use the QM feature only with port down where the client is connected.
But all of them you need to configure - is written in the help.
BR Silvio

Re: OV2500 Quarantine List

Posted: 16 Jun 2022 23:13
by sp-abel
Hi Silvio,

Thanks you for your comment.
1. Could you provide bit more details for the configuration in 6860E switch?
I am using 6900-x20 as core switch and 6860E is edge switches. Possible to configure this in the edge switch?

2. For all other switches you can use the QM feature only with port down where the client is connected - This you mean that the port where client connected will automatically shutdown when received the attack?

Best Regards,
Abel

Re: OV2500 Quarantine List

Posted: 18 Jun 2022 14:08
by silvio
1. via OV - QM - Config "apply to device" - choose the switch. Than the group will be created there (show quarantine mac group, show policy mac group).
2. OV - managed devices - choose the switch - edit - Advanced Settings - "allow port disabling"

Re: OV2500 Quarantine List

Posted: 27 Jun 2022 22:36
by sp-abel
Hi Silvio,

Thanks you very much for your advise.
May i know what is the port disabling work?

Regards,
Abel

Re: OV2500 Quarantine List

Posted: 29 Jun 2022 04:09
by silvio
in managede devices - advanced settings of your switches
You need to "Allow Port Disabling". Not recommended at the core :-)
BR Silvio