NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

richlor63's avatar
richlor63
Follower
Jan 11, 2024
Status:
New Idea

Client Isolation on a Guest Network WAX220

The Guest Network and Client Isolation functionality should be updated with this product. When enabled, it blocks access to other clients on the same SSID; however, it does NOT fully block access to other SSIDs or the hardwired LAN. I opened Case 47927055 with Support, which explains the behavior I'm seeing. In short though, with client isolation enabled on my guest network, I CAN ping clients on the other SSIDs configured on this access point or to clients on my hardwired LAN. The Support Rep explained that the results I was getting were as designed. For reference, I am running what I believe is the latest firmware, Firmware Version V1.0.3.3 

 

To me, the access point is not secure. If I have an SSID designated as a Guest Network with Client Isolation enabled, I want to restrict access to clients on that SSID from interacting with anything on my network except the Internet. This is the whole point of having a guest network, to keep clients on the guest network from accessing anything on my LAN. If I can ping other clients on any portion of my LAN, this defeats the purpose of isolating the client and having a guest network.