Quantcast
Channel: MikroTik
Viewing all articles
Browse latest Browse all 15133

General • Re: VLAN struggles (continued)

$
0
0
The first thing you should do is write clear requirements and not try to compress requirements into one line.
Secondly communicate is horrible term. In networking its better to talk about, originating traffic to.............
Replies are permitted in firewall rules, and its all about who is allowed to send/originate traffic. Communicate has different connotations one being two way traffic.

For example
1) Workstations on ports 20 and 21 can communicate only with the Internet (port 1 on the RB5009 and with workstation on port 3 of the RB5009
2) Workstation on port 3 can communicate with every other device including devices on ports 20 and 21 (and vice-versa)
3) Every other workstation can communicate with every other device (except ports 20 and 21) including the Internet\

I have no clue what you really mean in para 2 or 3.
Separate out the requirements, so there is no confusion.

Finally, dont predispose the solution, maybe it takes 5 vlans....
State the requirements, the solution will fall out gracefully.

+++++++++++++++++++++++++++++++

Overall this is a case of handling two things properly
Vlan filtering
firewall rules.
The diagram is very good and helpful
THe requirements need work.

Statistics: Posted by Mesquite — Fri Mar 01, 2024 1:56 pm



Viewing all articles
Browse latest Browse all 15133

Trending Articles