ER605 Access Control not working

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

ER605 Access Control not working

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
ER605 Access Control not working
ER605 Access Control not working
2023-05-30 05:03:45 - last edited 2023-05-30 05:38:50
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version: 2.1.2

I can't seem to get access control to enforce any rules. I'm using the local management not Omada controller. Omada isn't really an option for me in this use case.

 

Under Preferences>IP group>IP address, I've a single IP as a range (x.x.x.5 - x.x.x.5).

Under Preferences>IP group>IP group tab, I've added that address to a group.

 

Under Firewall > Access Control, I've added block all

Service type all

Direction all

Source [I've tried the default groups and one I created with just the IP I'm testing from]

Destination my custom IP group

Time any

States all

 

Is there something I'm missing?

  0      
  0      
#1
Options
2 Reply
Re:ER605 Access Control not working
2023-05-31 01:51:32

  @mike0bit 

 

Hi, What specifically are you trying to achieve?

Do you mean you have set a LAN-LAN ACL but it doesn't work? How did you test that?

Have you tried setting Allow ACL rules and then setting the Block rules?

Just striving to develop myself while helping others.
  0  
  0  
#2
Options
Re:ER605 Access Control not working
2023-05-31 03:38:51

  @Virgo 

 

The original goal was to keep some IoT devices from reaching WAN, but since I haven't played with ACL on this router before I thought I'd just do a test with a local ip camera and laptop on LAN.

 

Do you mean you have set a LAN-LAN ACL but it doesn't work? How did you test that?

Have you tried setting Allow ACL rules and then setting the Block rules?

 

I set it to ALL (as a test)

I haven't seen anywhere that I can specifically allow or enable ACL rules other than simply adding the rule under Firewall>Access Control>Access Control List.

  0  
  0  
#3
Options