NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
SchoolTST
May 17, 2017Aspirant
VLAN Configuration
[This is a generic query on the function VLANs on Netgear switches, no specific switch model as I have to work with nearly all variations. Firmware can be updated I have no problem doin that, in the ...
- Jun 13, 2017
I just want to follow-up on this. Let us know if you have further questions.
Otherwise, if ever your concern has been addressed / resolved, I encourage you to mark the appropriate reply as the “Accepted Solution” so others can be confident in benefiting from the solution. The NETGEAR Community looks forward to hearing from you and being a helpful resource in the future!
Regards,
DaneA
NETGEAR Community Team
DaneA
May 19, 2017NETGEAR Employee Retired
Hi SchoolTST,
Welcome to the community! :)
Question: If I create a Curriculum VLAN 500, assign it to the WAP as a Trunk port (T) and associate the Curriculum SSID to VLAN 500; will the connected Wi-Fi devices be able to communicate with the server when I make server port a VLAN 500 access port also (U)? The question simply comes up in my mind because the server port will now have two places to send traffic for the same curriculum network, VLAN 1 (the default) and VLAN 500 the Wi-Fi curriculum SSID, is it just a simple matter of the switch looking up where to send the traffic or because the server port is an access port for both VLANs with the traffic just get duplicated or sent to both VLAN 1 and 500 simultaneously. Or will this not work at all?
Answer: Yes, the connected WiFi devices will be able to communicate to the server since they are in the same VLAN 500. Since the server is a member of both VLAN 1 and VLAN 500, you may create access control lists where you can permit or deny an IP address or IP address range that gets to communicate to the server.
For more information about access control list, check the article below:
What are Access Control Lists (ACLs) and how do they work with my managed switch?
Regards,
DaneA
NETGEAR Community Team
SchoolTST
May 25, 2017Aspirant
DaneA,
Thanks for the welcome and the response, I have a question regarding these ACLs.
Do I have to set ACLs up or will this work without ACLs? Will all IP addresses on VLAN500 and VLAN1 be both permitted to the server (and vice Versa) if I don't make additional ACL configurations?
I am trying to avoid adding as much configuration as possible to the switches so that even people with a basic understanding of networking can get involved with this infrastructure (like me). VLANs have been used on our networks before but not always for the typical reasons like traffic segregation and security, ACLs would be something I have heard of and touched on only once in my time, certainly I would try to avoid using them if at all possible.
Regards
Chris
Schools TST
Related Content
NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!