Configure a Network which has only acces to the internet

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Configure a Network which has only acces to the internet

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Configure a Network which has only acces to the internet
Configure a Network which has only acces to the internet
2024-02-22 17:21:24 - last edited 2024-02-22 20:54:32
Model: OC200  
Hardware Version: V1
Firmware Version: 1.28.2 Build 20240110 Rel.78776

Hello!

 

I want to create a network in which clients cannot access other clients in the network but have access to the internet. So similar to a guest wifi but not in wifi but in wired form via a switch.

 

As an example:

Network1:
  Client1 > Client2 = Not Allowed
  Client1 > Internet = Allowed
  Client2 > Internet = Allowed

 

I hope you understand what I mean.

 

I have an SG3428XMP as the switch and an OC200 as the controller.

 

Regards
Colin

  0      
  0      
#1
Options
1 Accepted Solution
Re:Configure a Network which has only acces to the internet-Solution
2024-02-22 19:42:50 - last edited 2024-02-22 20:52:10

  @Colinu 

 

switch acl, just remember and allowed gateway ip before deny roule

 

Recommended Solution
  0  
  0  
#2
Options
10 Reply
Re:Configure a Network which has only acces to the internet-Solution
2024-02-22 19:42:50 - last edited 2024-02-22 20:52:10

  @Colinu 

 

switch acl, just remember and allowed gateway ip before deny roule

 

Recommended Solution
  0  
  0  
#2
Options
Re:Configure a Network which has only acces to the internet
2024-02-22 19:54:30

  @Colinu 

 

Policy Route is also a great option.  Just force the controlled subnet or IP range via the WAN interface.

<< Paying it forward, one juicy problem at a time... >>
  0  
  0  
#3
Options
Re:Configure a Network which has only acces to the internet
2024-02-22 20:07:40

  @MR.S 

 

So you mean like this?

  0  
  0  
#4
Options
Re:Configure a Network which has only acces to the internet
2024-02-22 20:11:50
I cant do that, because I dont have a gateway controlled by this controller.
  0  
  0  
#5
Options
Re:Configure a Network which has only acces to the internet
2024-02-22 20:37:27

  @Colinu 

 

Yes somthing like that and it doesn't matter which router you have, you enter the router's IP

 

  0  
  0  
#6
Options
Re:Configure a Network which has only acces to the internet
2024-02-22 20:41:27

  @Colinu 

 

and do alow roule bidirectional

 

  0  
  0  
#7
Options
Re:Configure a Network which has only acces to the internet
2024-02-22 20:42:25
Well it dosent work :.( My ACLs: Network "Guest" >> Permit >> IP Group "Guest GW" (10.10.50.1/32) Network "Guest" >> Deny >> Network "Guest", Network "LAN", Network "Intern" I cant ping all three gateways
  0  
  0  
#8
Options
Re:Configure a Network which has only acces to the internet
2024-02-22 20:44:00
Oh that indeed make sense
  0  
  0  
#9
Options
Re:Configure a Network which has only acces to the internet
2024-02-22 20:46:42

  @Colinu 

 

Switch ACL is not staefull so use ut with care, if you do somthing wrong you can lock out everything smiley include the switch access to controller.,

 

and use bidirectional to allow something.

 

  0  
  0  
#10
Options
Re:Configure a Network which has only acces to the internet
2024-02-22 20:51:51
Yeah you're right. I mean I tried the ACLs like you said before I made the post, but I forget to do it bi-directional so it didn't work so all request where going to the GW but were not coming back to me and thats why everything timed out... But anyways thank you for your help!!!!
  0  
  0  
#11
Options