- CheckMates
- :
- Products
- :
- Quantum
- :
- SMB Gateways (Spark)
- :
- Re: Access Policy local subnets
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Access Policy local subnets
Hi
Need clarification please
I have the following local network LAN ports configured on a SMB 1530 and managed via smart 1 Cloud
- no vlan - no bridge , running as separate networks
port 2 - 192.168.8.254 /24
port 3 - 172.16.1.254 /24
port 4 172.16.2.254 /24
For these LAN subnets to communicate with each other:
1. Do I need to create an allow Access control rules between the subnets
2. Since I am doing HIDE NAT on the those subnets do I then need to add a manual NAT keeping the original source IP address ?
I did some initial tests and seems I can route between those subnets without the above in place
Just need to know what is best practice
Thank you
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Depends on this setting:
If you have it set to standard, it operates as it's working for you now.
If you have it set to strict, then you need to configure specific rules (both for access and NAT).
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi PhoneBoy
I am managing the 1530 R80.20 from Smart-1 Cloud so using the Access Policy from there
would the same still apply?
thank you
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Is a similar screen accessible from the local appliance in that case?
I don’t have a centrally managed SMB appliance handy to check.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
No - you will only see the tabs:
- Home
- Device
- Users & Objects
- Logs & Monitoring
So all other configuration is managed from Cloud Dashboard.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Set up brand new 1530 for customer recently, what phoneboy said is exactly right!
