How do I configure VLANs to isolate traffic but also connect to the internet?

cwilkinson
Posts: 1
Good Afternoon,
I'm trying to set up VLANs on a Zyxel 24 port switch to all connect through the same outbound port to the internet (via a router).
The purpose of the VLANs are to isolate the device traffic from everything else on the local network so devices in one VLAN can never experience traffic from another VLAN or the regular router LAN.
All devices within each VLAN have unique IP addresses and expect to use the same gateway (ex: the devices on VLAN2 are looking for gateway 192.168.11.1 and the devices on VLAN3 are looking for gateway 192.168.11.1).
I'm trying to set up VLANs on a Zyxel 24 port switch to all connect through the same outbound port to the internet (via a router).
The purpose of the VLANs are to isolate the device traffic from everything else on the local network so devices in one VLAN can never experience traffic from another VLAN or the regular router LAN.
All devices within each VLAN have unique IP addresses and expect to use the same gateway (ex: the devices on VLAN2 are looking for gateway 192.168.11.1 and the devices on VLAN3 are looking for gateway 192.168.11.1).
Additionally, the devices within the VLANs can only accept untagged frames.
Can anyone help me successfully configure the switch (and, if necessary, a router) to do this? Or am I taking an incorrect approach?
Can anyone help me successfully configure the switch (and, if necessary, a router) to do this? Or am I taking an incorrect approach?
0
Comments
-
Hi @cwilkinson
Welcome to the Zyxel Community!
Based on your description, we have an idea using port isolation feature to fulfill the demand.
Let me explain with a simple topology which only contains router, switch, and two clients in same VLAN.
Configuration steps:
1. Port 1,2, and 8 all fixed in VLAN 1
2. Port 1 & 2 should be untagged, and port 8 is tagged.
3. In VLAN Port Setting, set isolation for port 1 & 2.
This makes port 1 and 2 not communicate with each other, but can still reach the gateway.
Hope this helps.
Zyxel_Lucious0
Categories
- All Categories
- 187 Beta Program
- 1.7K Nebula
- 90 Nebula Ideas
- 63 Nebula Status and Incidents
- 4.7K Security
- 236 Security Ideas
- 1.1K Switch
- 51 Switch Ideas
- 917 WirelessLAN
- 27 WLAN Ideas
- 5.4K Consumer Product
- 173 Service & License
- 296 News and Release
- 65 Security Advisories
- 14 Education Center
- 1K FAQ
- 450 Nebula FAQ
- 256 Security FAQ
- 100 Switch FAQ
- 115 WirelessLAN FAQ
- 22 Consumer Product FAQ
- 67 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 68 About Community
- 52 Security Highlight