Broken InterVlan ACLs
Broken InterVlan ACLs
After upgrade firmware from 1.1.1 to 1.2.0 couple of my ACL rules in firewall started to block more than they should.
I have VLANs for home devices (vlan 20), for smart devices (vlan 30) and for guests (vlan 40).
I'd like to isolate guests and smart devices from other networks and only allow them to access internet. To achive that I created two ACL rules:
1. Policy: Block. ServiceType: All. Direction: LAN->LAN. SourceNetwork: Guest. DestinationNetwork: !Guest. EffectiveTime: Any.
2. Policy: Block. ServiceType: All. Direction: LAN->LAN. SourceNetwork: Smart. DestinationNetwork: !Smart. EffectiveTime: Any.
It not only filters traffic between those nets, but also block DHCP server. Devices can't allocate dynamic IP on those networks anymore.
This was working totally fine on previous firmware version.
Does my setup looks correct?
Update. Just checked with firmware 1.1.1 - it works as expected.
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
@K_verb I have no idea. Waiting for the fix too.
- Copy Link
- Report Inappropriate Content
The latest update (v1.2.1) didn't fix this bug for me, unfortunately.
- Copy Link
- Report Inappropriate Content
@Arion Thanks for update. I'll wait next build then.
- Copy Link
- Report Inappropriate Content
- Copy Link
- Report Inappropriate Content
Information
Helpful: 1
Views: 2640
Replies: 14