Could someone check or advise if this is correct using a Netgear FSW7326P L2/L3 switch.
We need to give 3 Subnets Internet Access through a pre-configured Firewall Gateway but the 3 Subnets must NOT be able to share data between each other (unless enabled later)
Here are some basic network details:
-------------------------------------------
Firewall Green IP : 192.168.0.1 (Internet Gateway)
Netgear Layer2/3 Switch IP : 192.168.0.254
This deployment is not correct. You need to create all layer 3 vlans, filter traffic between the three vlans, and route all internet bound traffic through a point to point between the firewall and a layer three interface on the switch. You could also create three layer 2 vlans, doing router on a stick with the firewall, assuming the firewall understands vlan tagging or you need to put a router between the firewall and switch and do router on a stick. Either way you need to deny all traffic inter-vlan.
Could someone check or advise if this is correct using a Netgear FSW7326P L2/L3 switch.
We need to give 3 Subnets Internet Access through a pre-configured Firewall Gateway but the 3 Subnets must NOT be able to share data between each other (unless enabled later)
Here are some basic network details:
-------------------------------------------
Firewall Green IP : 192.168.0.1 (Internet Gateway)
Netgear Layer2/3 Switch IP : 192.168.0.254
I don't think Smoothwall can handle vlans so I'll need to make another plan or get another type of firewall. Can you suggest an open source firewall or other?
Anyway, I've now played with two setups, one as detailed by the thread from spiralclimbing and one where I setup the Netgear L3 to handle multiple vlans with inter-vlan routing.
The inter-vlan routing option is nice because it allows us to have various subnets but I'm not sure its the otion as the other subnets have access to all services on the main + internet subnet, I think due to the inter-vlan routing function.
The otion from spiralclimbing is more strict and keeps the vlans locked down due to no inter-vlan routing but all vlans are on the same subnet.
You are about to answer a thread that has been inactive for more than 6 months. If you still wish to proceed, please ensure that your posting is original and does not duplicate or overlap any prior responses to this thread.