NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
easy plus and smart
40 Topics[MS108TUP] - Switching - VLAN and routing
Hello everyone, I've this network configuration: Firewall --> MS108TUP --> Access Point Wifi The firewall and the AP is not a Netgear product. I've a domotic house so I've decided to separate the smart devices from the Main network. So in this case I've created an dedicated AP SSID with VLAN ID 20 only for manage smart devices. My network is also managed by a dedicated firewall device that manage VLAN Interfaces, WAN Interfaces, LAN Interfaces etc etc. Throught this Firewall, manage all the L2/L3 levels, from DHCP (one for every interfaces) to Privacy control, from Captive Portal (for Guests account) to Policy Control rule, ACL, Static route, QoS etc etc. So, I've configured the MS108TUP with several VLAN created in Switching mode (Switching --> VLAN). This is my current VLAN configuration on MS108TUP: MG1 is the Firewall uplink port, instead MG2 is the AP Uplink port. And this is the configuration of the interfaces into my Firewall: In this way, the AP create a SSID with VLAN 20, MG2 take the VLAN 20 and route it on MG1 VLAN 20; the firewall (MG1) take the VLAN 20 on port P2 and create it's own network with it's own dedicated DHCP and Static IPs list. All works good but when, from the firewall, I try to block traffic from/to the same interface/zone, not working. For example, if I try to block the SSH port from the tablet to my Raspberry PI and the tablet and the RPI is in the same interface/zone, the traffic is not blocked (my rule is: from DomoDevicesVLAN to DomoDevicesLAN source "tablet" destination "RPI" any service --> deny ----> this rule must deny the traffic for any service from the tablet to the RPI "using" the same zone but not work). Seems because the packet traffic is directly managed by the MS108TUP. Seems as the request is not passing throught the firewall, but remains at the switch level. For example: 192.168.0.5 --> 192.168.0.6 directly In this way the traffic is bypassing the firewall, because remain into the "switch" level Instead, how I can route the traffic thought the firewall? 192.168.0.5 --> 192.168.0.254 (Firewall interface) --> 192.168.0.6 In this way the traffic must pass into the firewall, and in this way I can have full-control on the packets and I can apply a Policy Control rule. Thank you so much Best Regards, ValerioAccessing 3 switches - wrong subnet
Hi all, I'm sure this will have been answered before but my searches are throewing up a blank. I have 3 switches which I seem unable to access. 16 port (GS116Ev2), 5 port (GS305E), and another 5 port (GS105Ev2). I understand that they're on a different subnet (192.168.0.239 - all of them) and my subnet is different (192.1.168.100). However, I cannot temporarily switch to 192.168.0.xxx because my router (a 5G router / modem) will not alow me. I tried moving the whole router onto that subnet and it wouldn't allow it an then I tried moving just my pc onto that subnet and it wouldn't allow that too. My plan was to access these switches and put them into the home range (192.168.0.xxx) on DHCP or fixed IP but I'm not sure how I can do this now? Maybe take the switches to someone elses house who doesn't rely on a 5G modem router? Any advice would be appreciated. Thanks.Solvedgs108v2 gs308ep DoS
I have both of those switches... The port turns off and has to be enabled to back on. The gs108v2 is connected to the gs308ep (poe is turned of on port 1 which connects to the gs108v2 port 1). There is a cisco access point connected to the gs308ep. The gs 108v2 log show this: <11> Nov 27 15:21:43 192.168.2.*-1 DOS[2169089684]: broad_system.c(4623) 16066 %% Dos Attack:ICMP erroneous packet received on the interface 1 <11> Nov 27 15:21:45 192.168.2.*-1 DOS[2178647972]: dos_api.c(586) 16068 %% Interface 1 has been shut down by Dos attack notification What has to done to fix this? This seems to be triggered by an iphone or either the router which has a static address connected to the gs108v2 switch. I just can't see it being the router? Their seems to other post around about this but no real fixes? Both switches have current firmware updated. ThanksGS308E
Hallo Netgear Support, ich kann meinen neu gekauften GS308E nicht auf werkseinstellung zurück setzen. Ich habe 7 ports auf VLAN20 gesetzt und port 8 auf "alle". Discovery tool findet ihn nicht mehr. Auch habe ich versucht die IP von meinem pc auf 192.168.0.200 zu setzen um den switch unter 192.168.0.239 zu erreichen was aber fehl schlägt. Mehrfach default factory reset ohne erfolg. Wie mache ich nun den gs308E wieder für mich erreichbar?PR60X and FunBox 3.0 from Orange in Poland.
I'd like to ask and verify, If my idea will work. I have a internet in Poland from Orange. It is basen on optical fiber. So a connection is done via a modem called FunBox 3.0. If I make the connection from a modem using the Ethernet connection - would it work if I connect it to PR60X's WAN port and setup the firewall rules on this PR60X to secure the home network? The PR60X will than be connected to via LAN ports to GS724TPv3?97Views0likes1CommentGS728/752TP(P)v2 kein Plan für PoE mehr
Hallo, mir ist aufgefallen das bei allen oben genannten Switchen der geplante Neustart von PoE Geräten nicht mehr funktioniert. Firmware ist die Neueste mit der 6.0.10.26 Ich habe Pläne verändert, gelöscht und neu erstellt Nichts hilft, ich werde jetzt noch versuchen eine ältere Firmware zu aktivieren ob das dann eventuell den Bug in der Firmware beseitigt. Leider kann ich keinen Fall deswegen bei Netgear eröffnen. Deswegen dachte ich, ich frag bei euch mal nach ob es nicht eine Lösung gibt zu dem Problem.Only the GS308 series loses connection from the Wi-Fi router
When I connect a Sony Wi-Fi router(NSD-G1000T) to Port 1 of a GS308 series switch, it receives an IP address from the DHCP server and functions as a switch for the first 3-5 seconds. My PC connected to Port 2 of the switch can send/receive ping both the switch and the Wi-Fi router. However, after the first 3-5 seconds passed, the Wi-Fi router then disconnects from the switch. After the disconnection, my PC can ping only the switch. The Wi-Fi router is missing form PC side. [Connection Map: Not work] Sony Wi-Fi router with DHCP Server <-- Port 1--> GS308 Switch <-- Port 2 --> PC But if I replace the GS308 switch with GS108E, it works well. I have multiple GS308 and GS108E, I retry and test this by each device but the result was same. It is not individual device issue, it seems to have some compatibility issue. [Connection Map: Work] Sony Wi-Fi router with DHCP Server <-- Port 1--> GS108E Switch <-- Port 2 --> PC The GS308 seems to have some compatibility issues with Sony Wi-Fi routers. If I could solve the problem by turning off some function of the GS308, I would be grateful. I would appreciate some advice from anyone who has had a similar experience and has a solution.Solved248Views0likes10CommentsGS105ev2 firmware breaks prosafe plus
The 2 latest firmwares for this model removed the switch management mode options and the Prosafe Plus Utility can't find the switch. Tried both V1.6.0.15 and V1.6.0.21 and neither were discoverable by the utility. Rolled back to .10 and it works again. Is this intentional?Does the GS305EP provide DHCP addresses
I was pretty excited to get my new switch, and I immediately updated the firmware. I intend to create a small standalone offline network for events. With this switch and an AX1800. Nothing fancy or large. But, I would like it to offer DHCP. When I went to create the DHCP pool, I seem to start struggling. I do not see any setting for it. Maybe I missed something when I bought it. Does it even come with this option?Solved