Ubiquiti MAC ACLs not working
from root@lemmy.world to ubiquiti@lemmy.ml on 03 Jan 2025 23:35
https://lemmy.world/post/23858905

I recently got into Ubiquiti, and am trying to limit intra-vlan communications.

I have a Proxmox server hosting a couple VMs that are on the same VLAN (192.168.8.0/24).

These two devices can ping each other, even after I follow the guide here. I’ve tried just adding that VLAN to the Device Isolation (ACL) section in Settings > Network as I believe this should just block everything within that VLAN, as well as trying to add explicit rules in the ACL to block client A -> B and B -> A with no luck.

I feel like I must be missing something simple. Has anyone done this successfully?

#ubiquiti

threaded - newest

doodledup@lemmy.world on 31 Mar 2025 12:53 collapse

I’m not running Proxmos but I have the same issue. I have two different physical devices in the same VLAN with Device Isolation activated. They can still ping each other.

Have you been able to figure this out?

My hardware: UDM-Pro & USW-Pro

root@lemmy.world on 31 Mar 2025 16:32 collapse

Unfortunately not. My understanding is that things on the same host will not hit the firewall before hitting each other. In my case there is a firewall built into Proxmox which can solve this.