It's not exactly that. It's a project I'm working on right now, so some things can be changed. Let's say I connected the WAN 1 output of my MX as well as port 3 of my switch to a kind of black box. This black box (I don't have access to the configuration) contains a router, a switch and equipment accessible through the LAN. If I plug my PC directly on the switch of this black box, I can access the internet, I receive an IP via DHCP and I can access the local equipment. Here is the information of this network : Network address: 10.193.222.128 Mask: /28 Gateway: 10.193.222.129 My project is to use an MX67 to do SD-WAN between my 4G and this black box. So I created 3 VLANs on my MX - 1: Management - 709: LAN-4G - 708: LAN-partner My MX does DHCP for these 3 VLANs with the following IPs : - 1 : 192.168.127.0/24 - 709 : 192.168.13.0/24 - 708 : 192.168.12.0/24 I wish that : - users on LAN-4G have access to internet by WAN2 : OK by SD-WAN - users on the LAN-4G have access to the local equipment of my black box through port 3 of my switch: NOK - users on the LAN-partner have access to the internet by the black box by WAN1: OK by SD-WAN - users on the LAN-partner have access to the local equipment of my black box through port 3 of my switch: NOK The goal is that users following their VLANs go out either through the 4G or through the black box, but that in any case all users have access to the local equipment of the black box, i.e. : - 10.193.222.150 - 10.192.1.3 I hope to be clear, it's true that it's probably a gas plant for not much. 😖
... View more