Confusion about blocking rules

Comments

4 comments

  • Avatar
    Firewalla

    The blocking Local Network only works if you are segmentation (either via physical ports on the Gold, or VLAN interfaces).

    So, if your device to be blocked are all on the same segment, firewalla, because it is a router, will not able to see or filter traffic from the same network.  This traffic flows inside the layer 2 LAN network, and never touches Firewalla (layer 3).

     

    0
    Comment actions Permalink
  • Avatar
    John A

    That makes perfect sense, and seems obvious in hindsight. Thanks for the explanation!

    0
    Comment actions Permalink
  • Avatar
    Miraculix

    How does this logic apply to user connected via VPN to the local network? Are they also concidered to be in the inside the local network, are are they technically outside since traffic flow goes through firewalla?

    0
    Comment actions Permalink
  • Avatar
    Firewalla

    The VPN side is also its own network. So you can apply rules to it "On Network"; you can also block Matching "Traffic from local network" to VPN network. ( etc ...)

    0
    Comment actions Permalink

Please sign in to leave a comment.