Hi folks.
I'm would like to separate out my LAN into two separately-firewalled segments on a single subnet. I'm sure I read somewhere that after bridging the two LAN adapters together to create a single bridged network, I could still create firewall rules to control traffic between machines connected to those two adapters.
Effectively I want a DMZ on the same subnet as the rest of the LAN instead of in its own address space, but for the life of me I can't see how to do it - as soon as I bridge the two LAN adapters together to create br0, I lose the ability to specify the individual interfaces in Packet Filter rules.
I can't help thinking I must be missing something really simple; could someone point me in the right direction? This is ASGv7, btw.
Thanks,
Jon.
This thread was automatically locked due to age.