Trying to understand how to properly setup guest wireless netwok I found this docs, CAPsMAN - CAP VLAN configuration example section.
After reading docs, forums and some experiments, I have a few questions:
1. Do I understand correctly that to configure a guest wireless network using ROS 7.13+ with new CAPsMAN and WiFi menu, each AP must be manually configured IN ANY CASE with some bridge and VLAN settings (Section CAP using "wifi-qcom-ac" package)? For example, in the "old" CAPsMAN it was enough to switch the AP to CAPS mode one time, and then all settings of the AP was made only through the CAPSMAN controller, no any manual bridge or VLAN "hacks" is required, guest wireless network is simply configured just by creating new bridge, IP pool and custom datapath.
2. I have a few wAP ac AP's. Each one is on ROS7 7.14.2 "wifi-qcom-ac" driver, because of new features, better performance and new "WiFi" menu support, as docs says in Compatibility section. Old driver "wireless" is removed, and another one "wifi-qcom" is only for 802.11ax AP (not my case). So, I tried to setup VLAN using datapath with VLAN ID and in docs section Datapath properties I found notice "802.11ac chipsets do not support this type of VLAN tagging, but they can be configured as VLAN access ports in bridge settings". This again brings me to the fact that each of my AP's requires manual configuration AT LEAST to use a such basic things as VLAN, even if we are not touching the topic of setting up a guest wireless network using VLAN and other related stuff. Looks like this may be fixed in future, but еwo years have already passed since this topic created.
3. I came to the following conclusions: on ROS7 there is no method for setting up a guest wireless network using new CAPsMAN without additional manual configuration of each AP. Or you can try, but will be faced with "vlan-id configured but interface does not support assigning vlans" error. Why do we need a CAPsMAN if it doesn’t solve such basic problems of automating AP's setup? Why is so much manual work required? If you have to change something (VLAN ID?), you will again have to do it manually at each point.
There is one solution how to not configure AP's by hands - running both capsmans at the same time: new CAPsMAN for main network, old CAPsMAN for guest network, both without VLAN. But this solution looks extremely bad and cumbersome for such a simple task, doesn’t it?
As a result of all this research, I'm stuck: all of the methods mentioned above for creating a guest wireless network (manually configuring each AP, or using new and old CAPsMAN together and legacy drivers) are not adequate, from my point of view, at least, because of too many manual works and dumb configurations for each AP.
Please tell me, am I right, or am I wrong about something, and is it worth looking somewhere else?
Thank you.