Guests in a Dual Network
To ensure fast and direct communication that does not cross network segments, VIA functions
are capable of communicating directly to multiple networks. However, to ensure separation of
the user segments, guests communicating over the secondary LAN/WLAN of a VIA gateway
are subject to the following limitations and parameters:
• No direct communication to the authentication server used by the default adapter is
provided.
• Communication to port 5224 is forwarded by a “Bridge APP” to port 5222 of the
default adapter.
• Port 5222 is used by the default adapter.
• Port 5224 is used by the secondary adapter.
• There is no route provided from the second LAN to first LAN. The secondary adapter
cannot communicate with the gateway, DNS or any other component of the default
adapter if the “Enable Internet” feature is not activated (refer to VIA IT Deployment Guide
section 2.9 for a list of ports that support this feature).
• Chrome on the second LAN/WLAN goes first to VIA, then it is redirected to the default
gateway on the first LAN, and, finally, it reaches cb.wowvision.com.
• Communication possibilities between the second LAN and first LAN are limited to specific,
documented ports.
• Port 22/TCP is only open if activated.
• If the VIA installation site has its own secondary network, it can be used instead of the VIA
second LAN/WIFI. In that case, VIA’s second LAN/WIFI acts as a client or access point.
(For more information see Available Connection Types by Device on page 6.)
The following are things to consider when using a dual network:
• By default, direct communication between the networks connected to VIA is not possible.
• Opening the SSH port reveals it to all networks.
• Communication for Chrome support is forwarded through VIA to the default gateway. If
you do not want to allow Chrome users on a secondary adapter, please block the
responsible traffic on the first possible node of your default adapter’s network.
• VIA does not provide antivirus, IPS, IDS, web control, or similar technology.