Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Block clients on same VLAN from seeing eachother?

    Scheduled Pinned Locked Moved L2/Switching/VLANs
    7 Posts 3 Posters 1.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • CreationGuyC
      CreationGuy
      last edited by

      With a Layer 2 Switch and a Netgate appliance with VLANs set up, is it possible on the SAME VLAN to configure it so that devices on that VLAN cannot see eachother on the same VLAN? These clients would be on the same Layer 2 switch.

      johnpozJ NogBadTheBadN 2 Replies Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator @CreationGuy
        last edited by

        @prtonguy77 this has nothing to do with pfsense. But depending on the features of your switch then sure you could setup say private vlan.

        https://en.wikipedia.org/wiki/Private_VLAN

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.8, 24.11

        1 Reply Last reply Reply Quote 0
        • NogBadTheBadN
          NogBadTheBad @CreationGuy
          last edited by

          @prtonguy77 Its a function of the switch or access-point not the router.

          On my Linksys switch you can set up a LAN port as a Protected Port and it can only connect via the default gateway.

          Andy

          1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

          johnpozJ 1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator @NogBadTheBad
            last edited by johnpoz

            As @NogBadTheBad mentions - different switches might have different ways of setting it up.. Or they may not support it at all? What specific switch do you have?

            My cisco sg300 for example

            private.jpg

            The way to skin this specific cat if you will if your switch does not support such a feature would/could be to just setup multiple vlans and put the devices you don't want talking to each other in different vlans..

            If you only have a hand full of devices this is manageable, now if you have 100s - then its a bit more difficult, and prob be easier to just get a switch that supports the feature.

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            CreationGuyC 1 Reply Last reply Reply Quote 0
            • CreationGuyC
              CreationGuy @johnpoz
              last edited by

              Hi everyone, thank you for the replies. It's a EnGenius EWS7928P, I looked and it does have port isolation which is good to know... thank you.

              CreationGuyC 1 Reply Last reply Reply Quote 0
              • CreationGuyC
                CreationGuy @CreationGuy
                last edited by

                @prtonguy77 I have the Netgear GS324TP, it doesn't appear to have Port isolation unless it is called something else here. Any ideas?

                johnpozJ 1 Reply Last reply Reply Quote 0
                • johnpozJ
                  johnpoz LAYER 8 Global Moderator @CreationGuy
                  last edited by

                  @prtonguy77 said in Block clients on same VLAN from seeing eachother?:

                  Any ideas?

                  get a switch that does, or create vlans to isolate the devices you don't want talking to each other.

                  An intelligent man is sometimes forced to be drunk to spend time with his fools
                  If you get confused: Listen to the Music Play
                  Please don't Chat/PM me for help, unless mod related
                  SG-4860 24.11 | Lab VMs 2.8, 24.11

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.