6
Votes

Gateway ACL, LAN->LAN, IP-Port Needed.

 
6
Votes

Gateway ACL, LAN->LAN, IP-Port Needed.

11 Reply
Re:Gateway ACL, LAN->LAN, IP-Port Needed.
Yesterday

  @Blgc 

 

Did you finally solve the issue with the DNS server?  I just tested something that might be a solution for some users.  A local DNS server has been set up on a Synology NAS.  The NAS has two LAN ports and the second port was configured on a /30 network.  Being a /30 network, there are only two usable IP addresses, one for the gateway (192.168.x.1) and one for the NAS (192.168.x.2).  By default, the Omada gateways allow inter-VLAN access so any device on any VLAN can reach the DNS server via its IP address.

 

The NAS has its own firewall rules so a firewall rule was created to allow incoming traffic on port 53 and denying everything else.  No additional ACL rules in the Omada devices are needed.

     

1x ER706W 1x OC300 4x SG2008 1x EAP610 2x EAP650
#12
Options