I recently got into Ubiquiti, and am trying to limit intra-vlan communications.

I have a Proxmox server hosting a couple VMs that are on the same VLAN (192.168.8.0/24).

These two devices can ping each other, even after I follow the guide here. I’ve tried just adding that VLAN to the Device Isolation (ACL) section in Settings > Network as I believe this should just block everything within that VLAN, as well as trying to add explicit rules in the ACL to block client A -> B and B -> A with no luck.

I feel like I must be missing something simple. Has anyone done this successfully?

  • doodledup@lemmy.world
    link
    fedilink
    English
    arrow-up
    1
    ·
    2 days ago

    I’m not running Proxmos but I have the same issue. I have two different physical devices in the same VLAN with Device Isolation activated. They can still ping each other.

    Have you been able to figure this out?

    My hardware: UDM-Pro & USW-Pro

    • root@lemmy.worldOP
      link
      fedilink
      English
      arrow-up
      1
      ·
      2 days ago

      Unfortunately not. My understanding is that things on the same host will not hit the firewall before hitting each other. In my case there is a firewall built into Proxmox which can solve this.