I need help from the most experienced.
I have the following vlans configured on my core switch:
1 - Default - 192.168.1.2/24
2 - IT - 172.17.41.1/24
3 - Fin - 172.17.36.1/24
4 - My Default gateway is 192.168.1.1 (My Firewall).
I don't want communication between vlans, but I need them to be able to go out to the internet, going through the firewall.
I have tried to configure static route, enable ipforwarding, ACL denying traffic between vlans when ipforwarding is enabled, but still without success.
Can someone please help me?
Sorry for the mistakes I use google translate.
Best answer by Miguel-Angel RODRIGUEZ-GARCIA
First shot is to remove the ipaddress from the vlans and put them on the vlan interface of the firewall.
If you want more specific answers you’ll have to share a topology design.