Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    how to set a second LAN the same wan for surveillance devices?

    Scheduled Pinned Locked Moved Off-Topic & Non-Support Discussion
    5 Posts 2 Posters 523 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      caigeliu
      last edited by

      We have Negate XG-7100. We set it as port 1 for Wan, Port 2-8 for LAN.

      How can I change it as port 1 still for wan, port 2-7 for LAN1, and Port 8 for LAN2 being used by a surveillance device. (LAN 1 and Lan 2 are seperate LAN). So that users in internet can access LAN 2 by using like WAN-IP:8800 (special port number).
      Can anyone give me suggestions or links on how to make this setup ? Thanks very much.

      Thanks.

      GertjanG 1 Reply Last reply Reply Quote 0
      • GertjanG
        Gertjan @caigeliu
        last edited by

        @caigeliu
        Hi,

        That would need a NAT rule.

        No "help me" PM's please. Use the forum, the community will thank you.
        Edit : and where are the logs ??

        1 Reply Last reply Reply Quote 0
        • C
          caigeliu
          last edited by

          Thank Gertjan, Is there any instruction that I can follow? e.g. create a vlan, assign a interface, create firewall/nat rules, etc, a complete procedure.

          1 Reply Last reply Reply Quote 0
          • GertjanG
            Gertjan
            last edited by Gertjan

            Just a NAT rule.

            The instruction are in the manual, but it's pretty straight forward.

            What you want is that 'everybody' or 'anybody' on the Internet can visit a server that you have on LAN2, using port '8080', TCP - right ?

            Let say that LAN2 has network 192.168.2.0/24 and your server has IP 192.168.2.10.
            The rule will be :

            9c9cb44e-778f-4842-8836-ee11c2a7f1fc-image.png

            From now on, incoming connections on your WAN interface, using TCP, on port 8080 will be redirected to LAN2 : IP 192.168.2.10 : port 8080.

            No "help me" PM's please. Use the forum, the community will thank you.
            Edit : and where are the logs ??

            1 Reply Last reply Reply Quote 0
            • C
              caigeliu
              last edited by

              Thank Gertjan again.

              1. vlans:
                Remove member 8 from vlan 4091.
                create a vlan 10 and assign members 8,9t,10t.

              2. Ports:
                change port 8's Port VID as 10.

              3. Interface
                Assign vlan 10 on lagg0.
                assign interface OPT1 as VLAN 10 on logg0.

              4. firewall
                Create a NAT outbound rule for WAN.
                Create a NAT port forward rule for OPT1
                Rule in WAN is automatically created.

              Done.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.