Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Firewall Issues Accessing Mac Mail Following VLAN Implementation

Hi all,

We've just migrated from an old flat network, to a VLAN'd one, containing a number of VLANs, using a layer 3 core switch as the router, which in turn has our UTM as it's default gateway.  Everything is working OK except for a laptop, that is on our new staff VLAN (192.168.90/0/24), which has a MAC address definition set and a rule in the firewall to allow it to access anything externally.  When on the old flat network, this was working fine.  However, now the rule doesn't seem to work.  I've setup a new network definition for the staff network and added that to the source on the rule, but it still won't work.  I've also added the staff network in the masquerading section too.

Does anyone have any ideas why it wouldn't work?

Thanks in advance.

MIchael



This thread was automatically locked due to age.
Parents
  • OK, after a bit of head scratching, I'm guessing this issue is caused by MAC address not traversing the networks, as it jumps subnets to get to the UTM.  The layer 3 routing will lose the MAC address in the packet, so I'm planning to reserve an IP address for the laptop and create a firewall rule using that instead, which will hopefully work.

Reply
  • OK, after a bit of head scratching, I'm guessing this issue is caused by MAC address not traversing the networks, as it jumps subnets to get to the UTM.  The layer 3 routing will lose the MAC address in the packet, so I'm planning to reserve an IP address for the laptop and create a firewall rule using that instead, which will hopefully work.

Children
No Data