Okay, simple home setup and here's what I have and what I want to do...
I have a simple home network but I want to split one section to a different IP range and only allow access to it from one IP address in another range. So two networks with one router for internet that both need to access. Initially I used a basic managed to switch and created 2 vlans; great but they needed to be on the same IP range to access the internet.
I had an old asus router so I used that to go inbetween the BT home hub and switch. That worked but I was able to access both ranges from each other, I'm guessing because the asus is forwarding on any dns requests it can't do itself to the home hub and that's replying because it knows where everything else is.
Now I also have a Draytek 2830n router.....I used this instead of the asus and this works perfect. My 10.0.0.0/24 (LAN1) range and 192.168.1.0/24 (LAN2) from the draytek both access the internet fine through the home hub (192.168.3.100) but can't interact with each other. My issue is, I want one address, 192.168.3.50 to be able to access 10.0.0.0/24. 192.168.3.0/24 is the main home subnet run off the BT home hub.
I assumed it was just a firewall rule allowing said address from the WAN port to anything on the LAN but anything I try I hit a brick wall with.
I have a simple home network but I want to split one section to a different IP range and only allow access to it from one IP address in another range. So two networks with one router for internet that both need to access. Initially I used a basic managed to switch and created 2 vlans; great but they needed to be on the same IP range to access the internet.
I had an old asus router so I used that to go inbetween the BT home hub and switch. That worked but I was able to access both ranges from each other, I'm guessing because the asus is forwarding on any dns requests it can't do itself to the home hub and that's replying because it knows where everything else is.
Now I also have a Draytek 2830n router.....I used this instead of the asus and this works perfect. My 10.0.0.0/24 (LAN1) range and 192.168.1.0/24 (LAN2) from the draytek both access the internet fine through the home hub (192.168.3.100) but can't interact with each other. My issue is, I want one address, 192.168.3.50 to be able to access 10.0.0.0/24. 192.168.3.0/24 is the main home subnet run off the BT home hub.
I assumed it was just a firewall rule allowing said address from the WAN port to anything on the LAN but anything I try I hit a brick wall with.