I have been browsing internet and this forum for at least a week now but havent been able to find out and solve my issue.
I am using an RB2011UAS-2HnD and two times mAP lite.
i configured:
DHCP client on Ethernet1 (named as WAN)
Bridge “main”
IP adresses 10.10.10.0/24
DHCP pool0 for 10.10.10.2 - 10.10.10.254
Gateway 10.10.10.1
all Lan ports mapped to Main
NAT srcnet masquerade rule created
Bridge “guest”
IP adresses 10.10.20.0/24
DHCP pool1 for 10.10.20.2 - 10.10.20.254
gateway 10.10.20.1
out interface “WAN”
NAT srcnet masquerade rule created
CAPsMan configuration1 mapped to datapath1 which is mapped to Main bridge with ssid “wifi”
CAPsman configuration2 mapped to datapath2 which is mapped to Guest bridge with ssid “wifiguests”
What is working correct:
Internet connectivity over LAN
Internet connectivity over WLAN “wifi”
connect to WLAN “wifiguests” & get IP adress
What is not working:
Connect to internet from “wifiguests”
Hi, i took an export of complete firewall settings.
Evreything on IP address range 10.10.10.0/24 is working fine. 10.10.20.0/24 does not have internet access
I changed this rule but unfortunately no effect.
Still no internet on guest wifi.
I can see traffic on the bridge but its not connecting to internet at all.
about the rules in fw, if i clean the address list, my main pc is not able to send email anymore. then i will see dropped packets.
Reason i put the rule in, is that i was blocked by my internet provider because of bulk email being send from my IP adres.
thanks for the suggestions to test.
Ping 8.8.8.8 is working fine
Ping WAN (public) IP address is working fine
also i tried to ping some other IP adresses (of commonly used websites) this is working fine as well
As soon as i try to ping a url, i recieve an error.
“temporary failure in name resolution”
Do i need to define a dns for my guest network?
Where do i need to do this?
This is not the issue, DNS is picked up correctly.
The 10.10.10.0/24 network is working fine.
The issue is related ONLY to the 10.10.20.0/24 network which i want to use for guests wifi access limited to internet only.