Station Quarantine
A wireless station perceived to be a security threat can quarantine to a restricted VLAN as a security measure. The connected quarantined wireless station is de-authenticated. FortiWLC receives information to quarantine a station from FortiGate when it detects a security event or a station MAC address can be manually configured to be quarantined.
This feature allows a global quarantine VLAN or per ESS/Port profile.
Navigate to Configuration > Wireless Intrusion > WIPS > Station Quarantine.
Navigate to Configuration > Wireless > ESS.
.Navigate to Configuration > Wired > Port.