Vlan can access the browser management page despite ACL rules should block it

Vlan can access the browser management page despite ACL rules should block it

Vlan can access the browser management page despite ACL rules should block it
Vlan can access the browser management page despite ACL rules should block it
2024-08-27 21:01:06 - last edited 2024-08-28 02:29:47
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version:

I've a problem with my ER650.

I created 2 vlans:

And I have created an ACL rule that deny communication between vlan2 and vlan1.

In fact, my pc on vlan2 can't ping my pc in vlan1.

But the problem is that for some reason my pc on vlan2 can still access the browser management page on 192.168.0.1 which is a vlan1 ip.

How can I block the access from vlan2 devices to the management page? Thanks

  0      
  0      
#1
Options
1 Accepted Solution
Re:Vlan can access the browser management page despite ACL rules should block it-Solution
2024-08-28 02:29:40 - last edited 2024-08-28 02:30:23

Hi @halpac 

Thanks for posting in our business forum.

If you are in standalone mode, use the ACL, and the service of HTTP and HTTPS should be blocked between the two VLANs. DST should be your gateway IP in both VLANs.

If you are in controller mode, use the preset Gateway Management Page and pick protocols of TCP. That should block the access.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
Recommended Solution
  1  
  1  
#2
Options
1 Reply
Re:Vlan can access the browser management page despite ACL rules should block it-Solution
2024-08-28 02:29:40 - last edited 2024-08-28 02:30:23

Hi @halpac 

Thanks for posting in our business forum.

If you are in standalone mode, use the ACL, and the service of HTTP and HTTPS should be blocked between the two VLANs. DST should be your gateway IP in both VLANs.

If you are in controller mode, use the preset Gateway Management Page and pick protocols of TCP. That should block the access.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
Recommended Solution
  1  
  1  
#2
Options