New User - FWP network setup/segmentation

Comments

1 comment

  • Avatar
    Michael Bierman

    The port from Firewalla to the switch will be a trunk port. That means Firewalla and the switch will include all the VLANs and LANs. You may use the ALL setting in this scenario. Traffic to the APs will be trucked as well, but need only include the VLANs for the Wi-Fi networks. This might be “all” but that depends on your set up.

    As for rules, you need to figure out which VLANS deed access to what.
    Does the network need any LAN access? Only internet? Does it need access to VLAN A but nothing else? Is access one way or bidirectional? This will depend on what’s on each network. Rule of thumb is in general, assume devices AP on the same network can see each other. Traffic between networks you can control.

    https://help.firewalla.com/hc/en-us/articles/4408644783123-Network-Segmentation

    0
    Comment actions Permalink

Please sign in to leave a comment.