Issues with VLAN Isolation and ACL Rules Not Working in Omada Controller

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Issues with VLAN Isolation and ACL Rules Not Working in Omada Controller

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Issues with VLAN Isolation and ACL Rules Not Working in Omada Controller
Issues with VLAN Isolation and ACL Rules Not Working in Omada Controller
2025-04-21 20:48:05
Model: ER7206 (TL-ER7206)  
Hardware Version: V2
Firmware Version:

Hi,

I’ve configured multiple LANs with different VLANs using the Omada Controller. The VLANs are properly assigned to the corresponding switch ports, and each VLAN is in a separate IP range (e.g., 10.40.10.0/24, 10.40.11.0/24, etc.).

When I connect a PC to a port assigned to a specific VLAN, it receives the correct IP address and cannot reach other VLANs, which is expected since there are no inter-VLAN firewall rules yet.

However, I’m experiencing the following issues:

  1. There is no internet access from any of the VLANs despite correct gateway configuration and DHCP assignment.

  2. In the Omada Controller interface, I can ping all devices across different VLANs, even after creating Gateway ACL rules to block inter-VLAN communication. The firewall (ACL) rules don’t seem to apply or take effect as expected.

So in summary:

  • VLAN configuration and tagging seem correct;

  • Devices receive correct IP addresses from their assigned VLAN;

  • VLANs are isolated by subnet by default (working);

  • No internet access from VLANs (not working);

  • ACL rules do not block communication as configured (Omada Controller can still ping everything).

Any guidance or fix for the ACL behavior and internet access issue would be appreciated.

Thank you in advance.

  0      
  0      
#1
Options
1 Reply
Re:Issues with VLAN Isolation and ACL Rules Not Working in Omada Controller
2025-04-22 01:36:32

Hi @Afonso_24 

Thanks for posting in our business forum.

It would be more effective if you had posted the ACL rules you've set.

VLAN interface should get you Internet. It only seems to be a problem with your ACL incorrectly blocking the network access.

No reports for the last 6 months. Or anything similar to this. Assuming that you have misconfig.

  1  
  1  
#2
Options