VLAN setup between GS1920 Switch and Zywall USG20
I have a GS1920 switch I am trying to segregate into 4 seperate vlans and a DMZ. The vlans have been created on a USG20 Router using seperate subnets with their own DHCP servers. I wish to connect the router to the switch along a single LAN2 interface and have the switch separate out the traffic into port groups. At the moment, I cannot get the switch vlan to accept traffic form the router if it is not on the basic LAN2 port.
Thanks,![Image: https://us.v-cdn.net/6029482/uploads/editor/05/io2gzhnwqt3t.png](https://us.v-cdn.net/6029482/uploads/editor/05/io2gzhnwqt3t.png)
Cags
Thanks,
![Image: https://us.v-cdn.net/6029482/uploads/editor/05/io2gzhnwqt3t.png](https://us.v-cdn.net/6029482/uploads/editor/05/io2gzhnwqt3t.png)
Cags
0
Comments
-
Hello @Cags
I think it should be fine to accomplish your requirement.
I would like to confirm with you if DMZ on switch is vlan 1 and the other vlan are vlan 2,3,4,5, respectively?
If my understanding is correct, I draw a picture below to make it more easier to understand.
(I assume the devices connected with GS1920 are all end-devices)
vlan 1:
fixed 1, 6
port 1: pvid 1, untagged out
port 6, pvid 1, untagged out
vlan 2:
fixed 2, 7
port 2: pvid 2, untagged out
port 7, tagged out
vlan 3, 4, 5:
Same concept as vlan 2
Finally, remember to set port 2-5 and port 7 as normal ports in vlan1 to separate traffic because all ports are members of vlan 1 in default setting.
Ryan0 -
Thanks Ryan - that worked perfectly.1
-
One more question. Can I set up the vlans so they cannot see each other, but set one of them - say vlan2 to be able to see them all.1
-
Do you mean that vlan 3, 4, 5, 6 are isolated, but only vlan 2 can communicate with them?
If yes, there is a similar discussion.
You can refer to: https://businessforum.zyxel.com/discussion/1086/2-xgs2210-52-and-usg-310/p1
And you can also refer to Zyxel Handbook including some basic settings of ACL as attachment (Topic: 5.10 How to configure ACL to block unwanted traffic). It might be easier for you to pick it up.
If your application is not what I assume, can you describe it in more detail?
Ryan0
Categories
- All Categories
- 415 Beta Program
- 2.5K Nebula
- 152 Nebula Ideas
- 101 Nebula Status and Incidents
- 5.8K Security
- 296 USG FLEX H Series
- 281 Security Ideas
- 1.5K Switch
- 77 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.5K Consumer Product
- 254 Service & License
- 396 News and Release
- 85 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 87 About Community
- 76 Security Highlight