Gateway ACL IP-Port not working / feature request

Gateway ACL IP-Port not working / feature request

Gateway ACL IP-Port not working / feature request
Gateway ACL IP-Port not working / feature request
2024-10-16 21:32:10
Model: ER7212PC  
Hardware Version: V1
Firmware Version: 1.2.0 Build 20240716

Hello I have an ACL created on my gateway to limit my IoT network from my main network. I had to set it up on the gateway side as the ER7212 appears to not have a managed switch, even though it is advertised as having one... seriously? I have tried creating the ACL at the switch level, however it does not have any effect, my understanding is that this is cascaded down to other managed switches on the network.

 

I can isolate the networks via a gateway ACL however when I try to allow my plex server across I can not set an IP-Port group rule once I set the direction field to LAN->LAN

 

Please see this forum topic for a similar issue with a different model: https://community.tp-link.com/en/smart-home/forum/topic/651912

 

It should work like this:

 

However once I set the direction field it removes the ability to use an IP-Port Group:

 

My questions:

A) Is there a way to assign physical ports to the switch so they can be managed by Switch ACLs

B) Am I missing something obvious?

C) If there is no way currently to do this as I suspect. TP-Link, please add it to the next firmware update, this 3-in-1 model is advertised as having a managed switch, yet... I can't manage it. False advertising at best.

 

  0      
  0      
#1
Options
3 Reply
Re:Gateway ACL IP-Port not working / feature request
2024-10-17 01:30:48

Hi @mxguy31 

Thanks for posting in our business forum.

mxguy31 wrote

My questions:

A) Is there a way to assign physical ports to the switch so they can be managed by Switch ACLs

B) Am I missing something obvious?

C) If there is no way currently to do this as I suspect. TP-Link, please add it to the next firmware update, this 3-in-1 model is advertised as having a managed switch, yet... I can't manage it. False advertising at best.

 

The IP-Port Group between the LANs has been submitted to the dev for projecting and evaluation.

https://community.tp-link.com/en/business/forum/topic/606980

 

To answer the questions:

A) No.

B) No.

C) As you are accusing of the false advertisement:

1. Which page do you see is advertised as a managed switch? Or capable of managed switch abilities/features?

2. The subject is a router 3-in-1 router. Which we owned page advertises it as a managed switch as the subject?

3. Note that the managed switch is jargon that describes a certain type of switch. Switching-related terms can be used to describe things related to the switching. But the product essence remain the same.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  1  
  1  
#2
Options
Re:Gateway ACL IP-Port not working / feature request
2024-10-18 01:13:47

  @Clive_A Thank you for the assistance, it is refreshing to see a prompt response from a large company such as TP-Link.

 

In regards to the advertising as a managed switch. I apologize, you are correct, I could not find any information indicating the unit included a managed switch. I assume this misunderstanding is due to the time I spent reading and trying to figure out why I was unable to accomplish this task, I likely got mixed up at some point and came to an assumption that was not true.

 

I look forward to a future firmware update that includes this ACL functionality.

  0  
  0  
#3
Options
Re:Gateway ACL IP-Port not working / feature request
2024-10-18 01:18:10

Hi @mxguy31 

Thanks for posting in our business forum.

mxguy31 wrote

  @Clive_A Thank you for the assistance, it is refreshing to see a prompt response from a large company such as TP-Link.

 

In regards to the advertising as a managed switch. I apologize, you are correct, I could not find any information indicating the unit included a managed switch. I assume this misunderstanding is due to the time I spent reading and trying to figure out why I was unable to accomplish this task, I likely got mixed up at some point and came to an assumption that was not true.

 

I look forward to a future firmware update that includes this ACL functionality.

It's okay. Learn something every day.

So, this product is a router but just with more ports than other regular routers which will have 5 or 8. It contains a variety of ports like SFP and PoE. It somehow can be thought as a switch but in the end, in essence, it is still etched with the router system.

 

You might read some articles that explain it could replace or save the cost of a switch. Eventually, it does not play the switch's role if you are looking forward to switching features.

 

Will count your vote. No worries. I do hope the GW ACL could be better so it gives users more versatile setups.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  1  
  1  
#4
Options