NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
namajim
Apr 10, 2018Aspirant
ACl Not Blocking VLAN Access
Hi I was wondering if somebody could help me with an ACL configuration issue. We have recently implemented a separate VLAN (VLAN30) for our guest Wi-Fi. The wireless access point is connecte...
- Apr 11, 2018
Welcome to the community!
According to your description, suggest you try to binding following ACL configuration to GS728TPP port22.
1.Deny:source x.x.30.0 (0.0.0.255) and des x.x.0.0(0.0.0.255)
2.Permit all
If have any other questions,please let us know.
Thanks.
Dan_Z
Apr 11, 2018NETGEAR Expert
Welcome to the community!
According to your description, suggest you try to binding following ACL configuration to GS728TPP port22.
1.Deny:source x.x.30.0 (0.0.0.255) and des x.x.0.0(0.0.0.255)
2.Permit all
If have any other questions,please let us know.
Thanks.
- namajimApr 11, 2018Aspirant
Hi Dan_Z
Thank you for the response. Have I not already got both of those rules in there already unnder 2 and 3?
Cheers
Jim
- Dan_ZApr 11, 2018NETGEAR Expert
Hi Jim,
The ACL rule match according to the sequence (Rule ID),so suggest add deny policy firstly.
If the traffic matched the first rule,the following rules will not take effect.Thanks.
- namajimApr 11, 2018Aspirant
Hi Dan_Z
The issue was caused by the first rule by the looks of it. I was under the impression that if it we were blocking all traffic to x.x.0.0, but the gateway was x.x.0.6, this would mean that traffic would not make it to the gateway because it would be automatically blocked by that rule. It appears that as the permit all rule allows access to the 0.0.0.0 default route, then rule 1 doesn't need to be there. I'm assuming that all traffic was matching rule 1 as it was trying to get to x.x.0.6.
Thanks for your help on this as I've been tearing my hair out for the last 2 days.
All the best.
Jim
Related Content
NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!