NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

Lippert's avatar
Lippert
Aspirant
Nov 08, 2018

One firewall creating multiple networks that can not see eachother

I would like to configure a network like this:

 

Using the SRX5308 firewall and a netgear switch with VLAN support. 

This should be simple, but i can not find any way in the manual of the SRX to configure so that each VLAN can reach the internet but none of the VLANS can see eachother. Additionally i can not determine if i can create firewall rules in the SRX that will be specific for one VLAN (say i wanted to open certain traffic to one VLAN and not to another.)

The reason for this setup is that i want to divide a network in a small company for security reasons, and i do not want to use multiple firewalls as that leaves me with double-nat problems later on. 

 

Thanks for any help in advance :-)

 

Best regards

Kristoffer

 

Can someone verify if this can be done

9 Replies

  • schumaku's avatar
    schumaku
    Guru - Experienced User

    Kristoffer,

     

    With all due respect - using a no longer supported device should deny the intended project.

     

    Regards,

    -Kurt

      • schumaku's avatar
        schumaku
        Guru - Experienced User

        https://www.netgear.com/support/product/SRX5308.aspx

         

        Attention:

        NETGEAR Inc. will terminate the ProSAFE VPN Firewalls on September 1, 2017. The last software update for these products was provided in April 2017. NETGEAR Inc. will continue to honor valid warranty claims for all ProSAFE VPN Firewall devices purchased from an authorized reseller. To complete the full exit from the product line, NETGEAR Inc. will no longer provide ProSAFE VPN Firewall software support or subscription updates for any ProSAFE VPN Firewall devices after September 1, 2017.

         

        Also on the page you referred:

         

         

         

        Netgear has recently launched the BR500 router ... what appears to be a small step into the right direction. Lack of personal experience with this device, I refuse to suggest getting one here. As of writing, it appears to be point solution for some K.I.S.S. VPN connection between different sites, plus some...

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More