VLAN, ACL and crosswise communication

VLAN, ACL and crosswise communication

VLAN, ACL and crosswise communication
VLAN, ACL and crosswise communication
2 hours ago
Model: ER707-M2  
Hardware Version: V1
Firmware Version: 1.3.1

Hello,
I have a setup with a few VLANs with the following ACL rules applied:

 

For a device on the IOT vlan, I want to perform an OTA update from the Management vlan. When disabling the first Gateway ACL rule, the update works, otherwise not, with the error being that the device on the IOT vlan is not responding.

I've tried to create a switch ACL rule to allow for that communication:

 

This does not work either.

Am I missing something obvious? Have I hit a limit of what is possible to do with Omada? Is there a bug?

 

Cheers

  0      
  0      
#1
Options
1 Reply
Re:VLAN, ACL and crosswise communication
an hour ago - last edited an hour ago

  @doublemac 

 

For the switch ACLs to work properly, at a minimum you need to have a switch interface enabled on each VLAN, otherwise everything passes through the switch and on to the gateway for routing where the gateway ACL blocks everything.  I currently don't use switch ACLs but I believe that you also need to set up some static routes on the switch so routing between the VLANs will work properly.

 

1x ER7406 1x OC300 4x SG2008 1x EAP610 3x EAP650-Desktop
  0  
  0  
#2
Options