NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
jjmarcos
Dec 15, 2021Aspirant
Setting up IP ACLs
Hello Netgear community, It's my first post here, whoever is reading this post, thank you and it's nice to e-meet you! I need some help setting up IP ACLs in my switch, a XS716T running the offi...
jjmarcos
Dec 16, 2021Aspirant
The images/screenshots are now appearing.
Any insights about this will be greatly appreciated.
Thanks!
- jjmarcosDec 20, 2021Aspirant
It seems, I'm replying just to myself. But it is what it is :smileyindifferent:
Anyway, found this article:
https://howdoesinternetwork.com/2012/allow-vlan-access-but-no-back
My conclusion after doing some research is that my XS716T switch does not support what I intend to do. There is no way I can specify the type of the TCP flag. Hence, I cannot set that "established" one the article is mentioning.
The closest approach I've got is that I was able to block ping / ICMP traffic from the VLAN 50 to the VLAN 1 and not the other way around. But the actual application traffic still flows. So, I can still open an SSH session from a machine on VLAN 50 to another one on VLAN 1, which was one of the things I wanted to avoid.
Regards
Related Content
NETGEAR Academy
Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!