vlan separation - one shared port to all - general idea

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

vlan separation - one shared port to all - general idea

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
vlan separation - one shared port to all - general idea
vlan separation - one shared port to all - general idea
2021-03-08 23:18:17 - last edited 2021-03-09 06:01:24
Model: TL-SG1016DE  
Hardware Version: V3
Firmware Version: 1.0.1 Build 20180629 Rel.58355

I want to separate the ports into different vlans.

 

My try is to use " 802.1Q VLAN Configuration".

 

port 8 has the internet.

 

vlan 2: port 1,2,3 and 8

vlan 3: port 4,5,6,7,9,10,11,12,13,14,15 and 8

vlan 4: port 16 and 8

(nothing tagged until now - it did not seem to have any effect)

 

it seems that all port communicate to each other through the default vlan 1. - or though the router on port 8 (a fritz.box).

 

I would expect that port 1 cannot communicate to port 15. but it always can. (pinging works). how can I configure 3 separate vlans and have them connect to the internet nonetheless?

 

Any help is appreciated.

  0      
  0      
#1
Options
1 Reply
Re:vlan separation - one shared port to all - general idea
2021-03-21 02:02:05

@schoenthomas 

 

Are the vlans on different subnets?  By default the vlans allow communication between vlans. Need to create switch acl rules to block vlans from communicating. To create the rules the vlans need to be on separate subnets.     Watch this: https://www.youtube.com/watch?v=7i17jvrIjD0

  0  
  0  
#2
Options