NULL
For example, if we allow MAC address x.x.x.x to WiFi SSID X, MAC address x.x.x.x is also allowed to access WiFi SSID Y that is also enabled the MAC authentication.
What we are looking for is, MAC address x.x.x.x should only access WiFi SSID X & cannot access other WiFi SSID that also has MAC authentication (client-security authentication-mode mac).
In the case of local forwarding, local mac authentication based on SSID cannot be implemented, and only centralized forwarding can implement this function.
#
local-user 48746e28396f
password cipher $c$3$8oC2hGF9B8qdDvgqKPvtIgGRx9JkSYpJoHgHHiEBaA==
authorization-attribute user-profile linc1
service-type lan-access
#
local-user c0f2fbd80ca6
password cipher $c$3$swFgTbm9dMIWwBeiELVPVeNqfqy4+u/iLmVOmkp3/Q==
authorization-attribute user-profile linc
service-type lan-access
#
user-profile linc
wlan permit-ssid linc
# user-profile linc1
wlan permit-ssid linc1