Restricting Remote Access to the Device to Specific VLAN IDs

You can restrict management access to a RUCKUS device to ports within a specific port-based VLAN. VLAN-based access control applies to the following access methods:

  • Telnet access
  • SNMP access

By default, access is allowed for these methods on all ports. Once you configure security for a given access method based on VLAN ID, access to the device using that method is restricted to only the ports within the specified VLAN.

VLAN-based access control works in conjunction with other access control methods. For example, if you configure Telnet access only to specific client IP addresses, and you also configure VLAN-based access control for Telnet, the only Telnet clients that can access the device are clients that have IP addresses or MAC addresses permitted by the management access command and are connected to a port that is in a permitted VLAN. Clients that have a permitted IP address or MAC address but are connected to a port in a VLAN that is not permitted still cannot access the device through Telnet.