Pronto Cloud Controller(and PIAP) supports firewall plus ACL. Access Control List functionality helps the administrator to define a group with set of rules using L3 and L4 parameters like source IP/network, destination IP/network, source port, destination port, L4 protocol etc. The list of rules are applied in the same order as defined. This feature also allows the administrator to define multiple groups. The ACL group/groups can be applied per AP, a set of AP’s using tags or across multiple networks.