Inter VLAN routing for 1 service

Hello, I am segmenting my network to separate my work computers from my home devices. I setup a VLAN to accomplish this however, I would like to keep 1 PC on my work device network. My media server lives on the home computer and Im looking for a way to let only traffic for that media server across the VLAN but nothing else. I have a peplink Surf SOHO router. Thanks for the help.

Dear jachin99

I do not know if you’ve managed to resolve your issue yet, but my recommendation will be to allow Inter-VLAN routing between the VLAN’s and then use the Internal Network Firewall rules to control the traffic.

Change the default Internal Network Firewall to Deny all traffic, this will be similar to not having Inter-VLAN routing enabled.
Then add new rules to allow traffic to/from your media server’s IP or MAC address. You can narrow this down to the specific ports and even devices on your work network if you want to.

Grouped networks might also come in handy (if it is available in the firmware of your Surf SOHO, I think the latest was 8.3.0). This will allow you to create a list of IP addresses of devices you want to allow through the firewall, and then add rules for this group. If you want to add more devices later you can easily add their IP addresses to the group.

1 Like