I'm doing configuring lab my switch cisco sg300.
I set multiple vlans, and I want to permit one specific vlan to only go on internet.
I want this vlan can't contact other vlans and viceversa.
Vlan 1 - 172.16.1.0/30 is for transit
Vlan 50 - 192.168.100.0/24 is the vlan i want to isolate
Vlan 1 interface 172.16.1.2/30
Vlan 50 inteterface 192.168.100.254
I configure DHCP on cisco switch
I have DNS on pfsense firewall
I set this ACL in this way
With this config DHCP doesn't work
I can't ping interface of the same subnet (192.168.100.254)
I can ping my firewall (172.16.1.1) but i can't go to internet