I am trying to learn the correct config settings for setting up a new RB5009 to replace a hAP router in our small network, segmented with vlans.
I attached an image showing the VLAN/Trunks goal, with ether1 being the WAN port, and a mix of trunk and untagged ports.
I don’t have a config to share just yet as I am still in the learning phase, the settings seem quite different from the old router, so want to make sure I am following along accurately, after reading many posts here about VLAN’s on this model router.
I think - THINK I need the following for the bridge with vlan interfaces.
Does this look accurate for what I am trying to do? I read through the VLAN guide, and is how I setup the old router vlans, and everything works fine. This new router seems a bit different. On my first try I locked myself out after enabling vlan filtering, so I figured I need to learn the basics of what I am trying to do, then will tackle it again once I have a better understanding.
Yes, and a few guides over on network berg on youtube.
Here is how far I have gotten so far, thought I had enabled vlan filtering last night, and some other ip pools, but I see this morning it’s not enabled. So taking another stab at it, and see if I can get packets flowing the right way, then the firewall rules. ether8 is my management or BASE so I don’t lock myself out again.
That is not your complete config, no firewall rules and vlan filtering is not enabled ??
(1)
Dont think you are following the link I provided at all and worse a complete lack of understand of the vlan filtering method.
If you did read and profess to know …how do yo explain this setting…
Don’t know much, still trying to get my head around the concepts (if not obvious lol) - Must admit I was in winbox messing with the vlans in ‘safe mode’ and somehow lost a portion of the config settings somehow. Still working on the firewall rules. Thanks for the syntax tip.
@anav has a good Thread with many links to useful information here New User Pathway To Config Success. Section C has stuff you should review. Don’t overlook the links to the official documentation, it is worth reading, and has some examples, and the reason for @anav’s response in post #4. See this note in this section Trunk/Access port setup where it has this:
And note @anav’s avatar. He often uses hot language and is stubborn. In his own words, it’s his way or the highway if want help from him.
Thank you for the links Buckeye, I can use all the help I can get. Much appreciated, I don’t know how anav puts up with idiot newbies like me, but I am learning.