Hello All.
I have done basic IT for several years but am trying now to implement a VLAN implementation for a friends brewpub.
Here is the equipment of relevance:
Engenius EAP-600 dual band wifi access point
Dlink DGS-1100-8 EasySmart switch
Netgear 16 port unmanaged switch
Pfsense firewall running V2.15 - Intel Atom based
AT&T U-verse modem
What I want to accomplish is to create a WiFi guest network that is Vlan'd separate from a wifi admin network. Pretty straight forward stuff, really.
I then want to send WiFi guest traffic to the Pfsense firewall on the optional interface for future Captive Portal use. That will be Step 2.
For Step 1, I just want to segregate the traffic for the guest network from the admin network.
So far, I have created Vlan's on the access point as follows:
SSID wifiguest2.4 is assigned to VID 3
SSID wifiguest5 is also assigned to VID 3
SSID wifiadmin2.4 is assigned to VID2
SSID wifiadmin5 is assigned also assigned to VID2
I stayed off the default VID 1 as the AP didn't seem to like messing with it.
The cable from the access point is then connected to port 1 on the Dlink switch
Port 2 on the switch is then connected to the Optional interface on the Pfsense router
Port 3 on the Dlink switch is then connected to the Netgear 16 port unmanaged switch which then has a cable connected to the LAN interface on the Pfsense router. The rest of the ports on this switch are typical printers, servers etc.
The WAN interface on the router then connects to the U-verse modem.
I would also like to provide for one or two more access points as the business grows, so perhaps two or three ports may need to be tagged for future expansion.
I think where I am getting lost is in the tagging and what relevance, if any, the "PVID" tagging becomes involved. What has resulted in my attempts so far is that both the admin AND the guest traffic is receiving the ip addresses from the optional interface on the router. So in other words, it seems that the traffic is not getting segregated properly in the Dlink switch.
Like most things, I think once I have the basics done it will all become more clear.
Thanks for all the help anyone can provide.
Dave
Image link:
http://www.gliffy.com/go/publish/7092323