We have a HP MSM 710 mobility controller with multiple AP's. The MSM is set up for both guest and internal access. Internal access works fine. Guest access does not. i can connect to the guest network, obtain an ip, and login through the html page, but cannot access the web. I will provide all settings below. We do not use VLan's. the internet port on the MSM is hooked directly to the dmz on my firewall. I can browse without issue if i plug a computer directly into the dmz and use a 192.168.200.* ip address and 192.168.200.2 as the gateway, so the msm is causing the issue. on the guest network, once connected, i can only ping the msm internet port(192.168.200.10) and gateway/dns addresses (192.168.201.25), not the dmz. Traceroutes stop at 192.168.201.25, no matter if tracing a domain name or IP. I have configured using the automated workflow as well as following examples from white papers, though all of those were based on vLan's.
set up as follows:
Firewall DMZ port address: 192.168.200.2 / 255.255.255.0
MSM internet port address: 192.168.200.10 / 255.255.255.0 -static
MSM acts as dhcp server for public:
Guest account that is logging in is associated with vsc.
interface- internet port G- 192.168.200.2 metric- 1
ACCESS-LIST public,deny,all,10.0.0.0.0/8,all (<<-----this is internal network)
any help would be appreciated!