I was under the impression that under normal circumstances, two subnets cannot see each other. However, I have an unusual scenario where I want to be sure that my subnets are truly invisible...
Shared architecture: Cable Modem-->firewall/router-->switch-->to subnets
Subnet 1: 192.168.0.x/24, an Active Directory domain supporting my home business, 100% wired ethernet to the switch. DNS server on the ADDC. Assigned IPs; no DHCP server.
Subnet 2: 192.168.1.x/24, all other household users connecting through a WAP, which is wired to the same switch as above. OpenDNS. Assigned IPs, no DHCP server.
Here's the rub: I have been approached by a market research company to plug in a physical device that collects data on internet usage. The financial compensation is quite high--enough for me to actually consider it, and that's saying a lot. This company is reputable, but this device is very new-to-market, so there is nothing to Google about it. Regardless of what assurances they give me, I want to be sure that I can make my domain (Subnet 1) completely invisible to this device (on Subnet 2)*. That includes any traffic passing through the switch or router.
Since the inner workings of this device are a secret, I want to be sure that it cannot even detect my other subnet, sniff packets, etc. Any advice?
*There is a good chance this thing won't work anyway, as it probably expects to find a DHCP server and for a wide range of firewall ports to be open, neither of which I have.
Shared architecture: Cable Modem-->firewall/router-->switch-->to subnets
Subnet 1: 192.168.0.x/24, an Active Directory domain supporting my home business, 100% wired ethernet to the switch. DNS server on the ADDC. Assigned IPs; no DHCP server.
Subnet 2: 192.168.1.x/24, all other household users connecting through a WAP, which is wired to the same switch as above. OpenDNS. Assigned IPs, no DHCP server.
Here's the rub: I have been approached by a market research company to plug in a physical device that collects data on internet usage. The financial compensation is quite high--enough for me to actually consider it, and that's saying a lot. This company is reputable, but this device is very new-to-market, so there is nothing to Google about it. Regardless of what assurances they give me, I want to be sure that I can make my domain (Subnet 1) completely invisible to this device (on Subnet 2)*. That includes any traffic passing through the switch or router.
Since the inner workings of this device are a secret, I want to be sure that it cannot even detect my other subnet, sniff packets, etc. Any advice?
*There is a good chance this thing won't work anyway, as it probably expects to find a DHCP server and for a wide range of firewall ports to be open, neither of which I have.