Hello,
I have two networks at home which right now are all part of the same network with the exception of two physical wireless APs on separate SSIDs; one for work and one for home. I own a SRX240H2 Services Gateway and an ESX2200-C layer 3 switch. I would like to segregate all network traffic via VLAN and firewall rules and have a dedicated port for remote users to VPN in to on a separate VLAN as well (also firewalled off). Right now the configuration is "flat"; meaning all clients can commuicate with all clients.
I have comcast coming into my SRX on ge0/0/0 and have reserved ge0/1/0 through ge0/7/0 for my home network. I have reserved ge0/8/0 through ge0/14/0 for the work network. The VPN port would be on ge0/15/0, I would have to have the SRX give the VPN server I'm using a static address and allow the VPN Server to assign DHCP addresses in the subnet. The ESX is on port ge0/1/0. The ESX would be configured to have home network clients on odd numbered ports ge0/1/0 through ge0/5/0 and the work network clients on ge/0/0/0 through ge/0/6/0. The ESX is connected to the SRX on ge/0/7/0.
Can someone please help me. I have been struggling with this for a long time and have exhausted my Google capabilites. I don't know if providing configurations is going to help at all considering there is nothing to it at the moment and I fear that putting my mess of a configuration up would be a red herring.
Thank you