Hi
There's a setting in "Wireless > Firewall & Traffic Shaping" called "Layer 2 LAN Isolation". Previously, our wifi has not had this setting enabled, but another administrator on the network recently enabled it, and explained to me that this significantly improves network security. I would like to keep it enabled, but at the same time, no one can use printers or chromecasts in the network any more. I'd like to keep the best of both worlds with both increased security, while also allowing people to actually use these things. Is there a way to allow specific devices through the isolation somehow?
I've been talking to the other administrator a lot and tried everything he suggested but so far nothing has worked.
- I've tried connecting both the chromecast and the printers via an ethernet cable, to the same VLAN, but that didn't work, even though the isolation is supposed to only affect wireless connections.
- I've also tried placing the printer on a separate network, but that didn't help either (maybe I didn't do it correctly).
- I've also tried changing the device policy to "whitelisted", didn't change anything.
- And a few other things which I may have forgotten.
If you try to ping the IP address of the printer, you get a response from the default gateway saying that you don't have access to it. So my computer can find it, it's just being blocked.
I haven't tried accessing printers or chromecasts from a computer which is also connected via an ethernet cable, but that's not a solution.
If we're unable to solve this issue, I will likely be forced to disable this feature even if it puts the network at a greater risk than having it on.
I am not as experienced in network administration as the other administrator, but he has much less time to work on this than I do, so it's up to me. Please help me by explaining what to do step by step.
Thanks.