Multiple subnets (vlans) and Sonos, workable Clavister solution
I just wanted to share my findings in this, since I have installed a Sonos system at work where we have a segmented vlan-separated network here, which we have locked down pretty hard.
So this is what I have needed to do for opening up for Sonos, and the scenario is the following
4 vlans
vlan 3, 4, 5 consists of desktop computers and wireless clients.
vlan 6 is a guest network, fully open to internet, but has no regular access to anything else in the office (until now).
I put the Sonos players on vlan6, to give them full access to internet. It is behind NAT.
From computer/wireless (3-5) networks to vlan6:
TCP port 1400 (Sonos control)
From vlan 6 TO vlan3-5:
TCP port 3400, 3500 (upnp events)
UDP port 1900-1905 (upnp discovery returns)
Now, the final piece of the puzzle was the multicast used for finding the players. We use a Clavister firewall, which support