NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

mhubel's avatar
mhubel
Tutor
Apr 12, 2024

VLAN cross access

We would like to set up a work station which can be accessed from the internet but will not be able to access any other system on the network. The plan is to use a VLAN to do this. The network uses a PFsense router and a GS308E switch. The question is there a clean way to allow the other systems on this network to access this system while it can not access them?

2 Replies

  • schumaku's avatar
    schumaku
    Guru - Experienced User

    This is more a question on how to create another network (VLAN, IP subnet) for the isolated system in question on your security appliance, with port forwarding to make the ports required for the unknown service to become available just on that PC and dedicated IP subnet; then configure a trunk port to connect the main VLAN (untagged) and the additional VLAN (tagged), plus an access port only for the additional network (and nothing else). Assuming there is no dedicated port available on the security appliance where only that network and VLAN can be configured on it's own. 

     

    No rocket science, basic networking and PFsense knowhow required. Once you figured out on how you implement this additional network on your PFsense security appliance, we're happy to help with the GS308E for e.g. a trunk config carrying the main untagged plus the additional VLAN (tagged), plus an pure access for just for the additional VLAN. Keep in mind we're Netgear community here, and most don't know much (or anything) related to PFsense.

    • ErwinL's avatar
      ErwinL
      NETGEAR Moderator

      Hello mhubel

       

      You were not able to get back to us on this thread. Was your question answered? In this case could you give us feedback on the situation and accept the posts here as a solution to make it more visible to other users?

       

      Thanks in advance!

       

      Have lovely day,
      Erwin
      Netgear Team

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More