User's Manual
Table Of Contents
- _
- Chapter 6. Procedures
- Chapter 7. Troubleshooting
- _
- Appendix A. Country Codes/Channels
- Appendix B. Technical Specifications
- _
- Appendix C. Lightning Protection
- Technical Support
- Statement of Warranty
Tsunami MP.11 2454-R, 5054-R, and 5054-R-LR Installation and Management
Chapter 5. Using the Web Interface 85
9) Configure Intra-Cell Blocking (Base Station only)
The Intra-Cell Blocking feature lets traffic be blocked between two SUs registered to the same Base Station.
There are two potential reasons to isolate traffic among wireless subscribers:
• To provide better security to the subscribers by isolating the traffic from one subscriber to another in a public
space.
• To block unwanted traffic between subscribers to prevent this traffic from using bandwidth.
You can form groups of SUs at the Base Station, which define the filtering criteria. All data to or from SUs
belonging to the same group are bridged. All other data from SUs that do not belong to a particular group are
automatically forwarded through the Ethernet interface of the Base Station. If an SU does not belong to any
group, the Base Station discards the data.
You can also configure a Security Gateway to block traffic between SUs connected to different BSUs. All packets
destined for SUs not connected to the same Base Station are forwarded to the Security Gateway MAC address
(configured in the Security Gateway tab).
When you change the device from Bridge to Routing mode, Intra-Cell Blocking stops working with or without a
reboot. When you change the device from Routing to Bridge mode, Intra-Cell Blocking starts working with or
without a reboot.
Enable Intra-Cell Blocking
The Group Table tab lets you enable the Intra-Cell Blocking feature and to configure Intra-Cell Blocking Groups.
Field Descriptions
Intra-Cell Blocking Status
Enables or disables the Intra-Cell Blocking feature.
Group Table
Entries in this table show the Intra-Cell Blocking filter groups that have been configured. When Intra-Cell
Blocking is enabled, the Base Station Unit discards all packets coming from one SU to another SU, if both
SUs do not belong to the same filter group.