ClearFoundation Tracker - ClearOS
View Issue Details
0000007ClearOSapp-firewall - Firewallpublic2010-01-18 16:232018-01-15 16:41
Vejlefjordskolen 
user2 
normalminoralways
closedwon't fix 
5.1 
 
0000007: Port/IP blocking does not affect virtual LAN's
When blocking a port or an IP the iptables rule added matches the internal subnets instead of the interfaces they are connected to. The for-loop you use in the /etc/rc.d/firewall.lua script does not account for virtual interfaces, so it does produce block rules on the virtual LAN subnets.
No tags attached.
Issue History
2010-01-18 16:23VejlefjordskolenNew Issue
2010-01-19 08:31user2Note Added: 0000003
2010-01-19 08:31user2Statusnew => resolved
2010-01-19 08:31user2Resolutionopen => won't fix
2010-01-19 08:31user2Assigned To => user2
2010-02-22 19:55user2Statusresolved => closed
2018-01-15 16:41user2Categoryapp-gateway - Gateway Firewall => app-firewall - Firewall

Notes
(0000003)
user2   
2010-01-19 08:31   
Using a virtual IP as a gateway is not supported in ClearOS... sorry! This is documented in the User Guide:

http://www.clearfoundation.com/docs/user_guide/clearos_enterprise_5.1/ip_settings [^]

We always recommend using a managed switch when trying to segment a network.