0
Votes

Omada SDN - Port Isolation

 
0
Votes

Omada SDN - Port Isolation

Omada SDN - Port Isolation
Omada SDN - Port Isolation
Sunday - last edited Yesterday

Hello,

I have a vulnerable device on my network that I'd like to isolate from the rest of my home network. The goal is to configure the switch port it's connected to so that it can only communicate with the gateway (router), and not with any other devices or ports on the switch.

I've attempted to do this using VLANs, but unfortunately, the device in question needs to connect to a VPN, and the connection becomes unstable unless it's on the default (untagged) network. I've spent a lot of time trying to get it working over a separate VLAN, but it just doesn't play nice.  Too many dropouts and instability.

In the SDN interface, I see an option for Port Isolation, but I can't find a way to configure it in detail. From what I understand, Port Isolation simply blocks isolated ports from talking to each other, while still allowing them to talk to non-isolated ports. That’s very rigid and doesn’t offer the level of control I need.

What I’m really looking for is a way to configure one specific port so it can only communicate with the gateway (or upstream), while allowing the rest of the ports on the switch to continue communicating with each other normally.

Is there a workaround or feature I’m missing that would let me achieve this?

Thanks in advance!

#1
Options
1 Reply
Re:Omada SDN - Port Isolation
Yesterday - last edited Yesterday

  @n4n0_76 

Thank you for your post.To meet your requirement, you can configure Port Isolation so that the device can communicate only with the specific uplink device you define.Please refer to the configuration guide below.

How to configure Port Isolation on Smart and L2 Managed Switches using the new GUI

Based on the current definition of port isolation on the Omada Controller:
“An isolated port cannot communicate directly with any other isolated ports, while the isolated port can send and receive traffic to non-isolated ports.”Therefore, this feature may not fully meet your requirements.However, I will forward the issue you raised for further feedback.

#2
Options