DrayTek UK Users' Community Forum

Help, Advice and Solutions from DrayTek Users

2955 firewall rules between VLANS

  • sgictdt
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
27 Jan 2013 07:26 #74963 by sgictdt
2955 firewall rules between VLANS was created by sgictdt
Hi,

I've got a Vigor 2955 appliance and want two VLANs but restrict what ports are open between the VLANs, they'll be set as

VLAN1 (P0) - Internal PCs and Servers
VLAN2 (P1) - Public facing servers

I can see how you allow the VLANs to talk to one another but its completely open. Looking into the firewall and modifying the call filter doesn't look right as you can only state "WAN -> LAN" or "LAN -> WAN" not "LAN -> LAN"

Any thoughts or suggestions would be great.

Please Log in or Create an account to join the conversation.

More
29 Jan 2013 15:18 #74991 by sicon
Replied by sicon on topic Re: 2955 firewall rules between VLANS
Would you not create an explicit rule are the top of the firewall to block all traffic from LAN to LAN then underneath put in the exceptions you want?

Please Log in or Create an account to join the conversation.

More
29 Jan 2013 15:20 #74992 by sicon
Replied by sicon on topic Re: 2955 firewall rules between VLANS
sorry Ive not read that right you don't have the LAN to LAN option.

Are you on the latest firmware and most say LAN to LAN or LAN/RT/VPN to LAN/RT/VPN

Please Log in or Create an account to join the conversation.

  • sgictdt
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
29 Jan 2013 16:01 #74995 by sgictdt
Replied by sgictdt on topic Re: 2955 firewall rules between VLANS
Hi, the unit is on 3.3.0 firmware, I see that's 0.0.1 behind.

Ill schedule an upgrade and see if that makes a difference

Please Log in or Create an account to join the conversation.

  • sgictdt
  • Topic Author
  • Offline
  • Junior Member
  • Junior Member
More
29 Jan 2013 16:03 #74996 by sgictdt
Replied by sgictdt on topic Re: 2955 firewall rules between VLANS
oops - my bad, its not behind on the firmware, just checked it.

I don't have LAN -> LAN in the firewall rules

Please Log in or Create an account to join the conversation.

More
29 Jan 2013 16:55 #74998 by sicon
Replied by sicon on topic Re: 2955 firewall rules between VLANS
is the 2955 managing the VLAN to are you doing it from a switch?

Please Log in or Create an account to join the conversation.

Moderators: Sami