This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Port forwarding for one VLAN to get response from another VLAN

Greetings,

Trust you are doing well,

I have a scenario here which is tricky somehow. I am running an iVMS Server (CCTV System) on one VLAN while the NVRs and the cameras are located on another VLAN.

I sat a rule which will forward the traffic to iVMS, so I am able to login. But, I am not able to stream as the cameras are located on different VLAN.

What is the best practice solution in this case? 



This thread was automatically locked due to age.
Parents Reply Children
  • So the issue is an internal one only?

    What are your real VLANs because VLAN1 to VLAN2 will not work, you need some other than VLAN1.

    Also what does the log viewer show when you try to stream?

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • Greetings,

    The point is, my iVMS server is located in one VLAN but the cameras are located in another VLAN. The port forwarding will only send request to iVMS, but the streaming should come from the camera itself. When I am assigning List Of IP Addresses instead of Single IP Address, I am not ale to communicate with the iVMS.

  • The solution is very simple then as you said, you need a rule to allow the traffic from the camera to the server.

    What do the logs show as the error?

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • Greetings,

    The traffic is allowed from the cameras to the server. So, I can use the server application and view the cameras from my local network. But, I not from the internet.

    Using the diagnostic tool (packet capture) from Sophos, it is showing that the request unreplied.

     

    Regards,

  • Hi,

    you will need a business rule to allow the internet users to request a feed from your camera. 

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  •  

    I am having the rule mentioned above. Which is forwarding the requests from the WAN to iVMS server. Even if I change the the dedicated server from iVMS from a single IP to list of IP addresses, I am not able to stream.

  • You will need some sort of nat rule to get the packets through eg 1244 1:65535 or the other way round 1:65535 12345

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • Can you please provide me with more details?!

     

    Regards,

  • I am still very confused with what you are trying to achieve?

    Are you trying to start a streaming session from outside of your network eg from a mobile phone?

    If this is your aim you will need a business rule and some way of pointing at your XG.

    A business rule will allow you to setup sessions to the camera which will have an (single) external IP address on the outside of the XG.The same rule will allow you to pass traffic to initiate the streaming session so you will need a port that the camera uses fro that you will need to create service probably UDP 2100 1:65535.

    I do not have any business rule for incoming traffic at this stage to copy and post.

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.