I am just configuring some access points, with 2 SSIDs that have to break out to different VLANs on ether1.
I found multiple possibilities and hope, you can help me to use the "easiest" one fot the futur:
Background:
SSID1 to vlan 10
SSID2 to vlan 20
Management on default VLAN 1 (untagged)
Multiple bridges:
Code: Select all
/interface bridge
add fast-forward=no name=Bridge_vlan10
add fast-forward=no name=Bridge_vlan20
/interface vlan
add interface=ether1 name=vlan10 vlan-id=10
add interface=ether1 name=vlan20 vlan-id=20
/interface bridge port
add bridge=Bridge_vlan10 interface=wlan1-ssid1
add bridge=Bridge_vlan10 interface=wlan2-ssid1
add bridge=Bridge_vlan10 interface=vlan10
add bridge=Bridge_vlan20 interface=wlan1-ssid2
add bridge=Bridge_vlan20 interface=wlan2-ssid2
add bridge=Bridge_vlan20 interface=vlan20
Only one bridge:
Code: Select all
/interface bridge
add name=bridge1
/interface bridge port
add bridge=bridge1 interface=ether1
add bridge=bridge1 frame-types=admit-only-vlan-tagged ingress-filtering=yes interface=wlan1-ssid1 pvid=10
add bridge=bridge1 frame-types=admit-only-vlan-tagged ingress-filtering=yes interface=wlan2-ssid1 pvid=10
add bridge=bridge1 frame-types=admit-only-vlan-tagged ingress-filtering=yes interface=wlan1-ssid2 pvid=20
add bridge=bridge1 frame-types=admit-only-vlan-tagged ingress-filtering=yes interface=wlan2-ssid2 pvid=20
/interface bridge vlan
add bridge=bridge1 tagged=ether1 vlan-ids=10
add bridge=bridge1 tagged=ether1 vlan-ids=20
#and for wireless interfaces:
vlan-id=10 vlan-mode=use-tag
vlan-id=20 vlan-mode=use-tag
I am not sure, if I do some configuration "redundant". Can you give me a hint on how to solve this according to the "best practice"?
Thank you and best wishes
Stril