Can stateful ACLs be set on the ER8411 running firmware v1.1.0 when adopted?

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Can stateful ACLs be set on the ER8411 running firmware v1.1.0 when adopted?

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Can stateful ACLs be set on the ER8411 running firmware v1.1.0 when adopted?
Can stateful ACLs be set on the ER8411 running firmware v1.1.0 when adopted?
2023-10-03 03:02:40 - last edited 2023-10-03 03:09:13
Model: ER8411  
Hardware Version: V1
Firmware Version: 1.1.0

We upgraded our E8411 to 1.1.0 so we can set stateful ACLs ie vlan 1 can ping devices on vlan 2 but devices on 2 cannot ping devices on 1. Right now it's in standalone mode. But we have an omada controller and managed tp link switches and APs adopted and it would be nice if we could adopt the ER8411 and provision it from the controller rather than it's standalone web interface so everything can be in one place and managed through the omada cloud website remotely. I know about 2 years ago on a different model setting stateful ACLs could only be done in standalone mode but what about now? The release notes say "This firmware is fully adapted to Omada SDN Controller v5.8" but I know in the past stateful ACLs were a standalone feature.

  0      
  0      
#1
Options
1 Reply
Re:Can stateful ACLs be set on the ER8411 running firmware v1.1.0 when adopted?
2023-10-03 05:17:28 - last edited 2023-10-03 05:35:28

  @nwr 

 

Yes you can, BUT!!! you can not use IP port group or IP group on gateway ACL Between VLAN. for example, if you block LAN A to LAN B you cant open port9100 for print. 

At first I thought it was a bug, but it turned out not to be.

 

  0  
  0  
#2
Options