DrayTek UK Users' Community Forum
Help, Advice and Solutions from DrayTek Users
2955 firewall rules between VLANS
- sgictdt
- Topic Author
- Offline
- Junior Member
Less
More
- Posts: 13
- Thank you received: 0
27 Jan 2013 07:26 #74963
by sgictdt
2955 firewall rules between VLANS was created by sgictdt
Hi,
I've got a Vigor 2955 appliance and want two VLANs but restrict what ports are open between the VLANs, they'll be set as
VLAN1 (P0) - Internal PCs and Servers
VLAN2 (P1) - Public facing servers
I can see how you allow the VLANs to talk to one another but its completely open. Looking into the firewall and modifying the call filter doesn't look right as you can only state "WAN -> LAN" or "LAN -> WAN" not "LAN -> LAN"
Any thoughts or suggestions would be great.
I've got a Vigor 2955 appliance and want two VLANs but restrict what ports are open between the VLANs, they'll be set as
VLAN1 (P0) - Internal PCs and Servers
VLAN2 (P1) - Public facing servers
I can see how you allow the VLANs to talk to one another but its completely open. Looking into the firewall and modifying the call filter doesn't look right as you can only state "WAN -> LAN" or "LAN -> WAN" not "LAN -> LAN"
Any thoughts or suggestions would be great.
Please Log in or Create an account to join the conversation.
- sicon
- Offline
- Contributor
Less
More
- Posts: 642
- Thank you received: 0
29 Jan 2013 15:18 #74991
by sicon
Replied by sicon on topic Re: 2955 firewall rules between VLANS
Would you not create an explicit rule are the top of the firewall to block all traffic from LAN to LAN then underneath put in the exceptions you want?
Please Log in or Create an account to join the conversation.
- sicon
- Offline
- Contributor
Less
More
- Posts: 642
- Thank you received: 0
29 Jan 2013 15:20 #74992
by sicon
Replied by sicon on topic Re: 2955 firewall rules between VLANS
sorry Ive not read that right you don't have the LAN to LAN option.
Are you on the latest firmware and most say LAN to LAN or LAN/RT/VPN to LAN/RT/VPN
Are you on the latest firmware and most say LAN to LAN or LAN/RT/VPN to LAN/RT/VPN
Please Log in or Create an account to join the conversation.
- sgictdt
- Topic Author
- Offline
- Junior Member
Less
More
- Posts: 13
- Thank you received: 0
29 Jan 2013 16:01 #74995
by sgictdt
Replied by sgictdt on topic Re: 2955 firewall rules between VLANS
Hi, the unit is on 3.3.0 firmware, I see that's 0.0.1 behind.
Ill schedule an upgrade and see if that makes a difference
Ill schedule an upgrade and see if that makes a difference
Please Log in or Create an account to join the conversation.
- sgictdt
- Topic Author
- Offline
- Junior Member
Less
More
- Posts: 13
- Thank you received: 0
29 Jan 2013 16:03 #74996
by sgictdt
Replied by sgictdt on topic Re: 2955 firewall rules between VLANS
oops - my bad, its not behind on the firmware, just checked it.
I don't have LAN -> LAN in the firewall rules
I don't have LAN -> LAN in the firewall rules
Please Log in or Create an account to join the conversation.
- sicon
- Offline
- Contributor
Less
More
- Posts: 642
- Thank you received: 0
29 Jan 2013 16:55 #74998
by sicon
Replied by sicon on topic Re: 2955 firewall rules between VLANS
is the 2955 managing the VLAN to are you doing it from a switch?
Please Log in or Create an account to join the conversation.
Moderators: Chris, Sami
Copyright © 2024 DrayTek