07-10-2025 07:05 AM
Hi, we have vSZ.
vlan 100 - vSZ, DHCP, DNS, DC
vlan 200 - Windows domain devices
vlan 50 - Guest WiFi (internet only vlan)
We have ACL on core switch to restrict ports/traffic between vlans.
If I permit ip traffic from vlan 50 devices to vSZ then it gets an IP.
permit ip 0.0.0.0 255.255.255.255 10.1.10.60 0.0.0.0
I would like to only allow required ports for the wireless devices to connect to the WiFi and get IP address.
Which TCP/UDP ports do I need to permit?
Any help would be much appreciated, thank you.
Core switch has ACL to allow DNS traffic from vlan 50 to vlan 100.
What ports do I need to allow for the wireless devices on vlan 50 to contact vSZ?
07-11-2025 01:45 AM
Dear bicky_budha,
Please allow dhcp service udp port 67 and 68 and test, I could only see only 1 port not sure if that would fit your case.
Please refer below link.
HTH!
Regards,
Abilash
