This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
advanced-access [2022/02/10 23:16] – Added subheading "Lan Access Notes", clarity hogwild | advanced-access [2023/09/12 17:20] (current) – [LAN Access Notes] hogwild | ||
---|---|---|---|
Line 1: | Line 1: | ||
====== LAN Access ====== | ====== LAN Access ====== | ||
- | This page allows you to define LAN-to-LAN traffic where it otherwise would be blocked. For example, | + | This page allows you to define LAN-to-LAN traffic where it otherwise would be blocked. |
+ | |||
+ | \\ | ||
+ | |||
+ | For example, | ||
+ | |||
+ | If you want devices | ||
\\ | \\ | ||
Line 7: | Line 13: | ||
{{: | {{: | ||
- | **On**: Checking this enables the defined | + | **On:** Checking this enables the rule defined on this row of the table. |
- | **Src**: (Logical) Source LAN for the rule on that row of the table. | + | **Src:** This displays/ |
- | **Src Address**: This (optional) field narrows the rule to a specific IP address or set of addresses within the Src interface. | + | **Src Address:** This (optional) field narrows the rule to a specific IP address or set of addresses within the Src interface. |
- | **Dst**: Here, you specifies | + | **Dst:** Here, you specify |
- | **Dst Address**: (optional) narrows the rule to a specific IP address or set of addresses within the Dst interface. | + | **Dst Address: **(optional) narrows the rule to a specific IP address or set of addresses within the Dst interface. |
+ | |||
+ | **Description: | ||
+ | |||
+ | \\ | ||
+ | |||
+ | \\ | ||
- | **Description**: | ||
===== LAN Access Notes ===== | ===== LAN Access Notes ===== | ||
Regardless of LAN Access rules, by default a LANx device is able to reach (e.g. ping) all the router' | Regardless of LAN Access rules, by default a LANx device is able to reach (e.g. ping) all the router' | ||
+ | |||
+ | All entries in LAN Access are one-way only. \\ | ||
+ | For example, if you want hosts on LAN0 to be able to communicate with hosts on LAN1, | ||
+ | and hosts on LAN1 to be able to communicate with hosts on LAN0, you will need to have two entries in the table to achieve that. | ||
+ | |||
+ | LAN Access is an IP-level access control. \\ | ||
+ | This means that **all ports/ | ||
+ | |||
+ | \\ | ||
+ | |||
+ | \\ | ||