Posted: Tue Aug 14, 2018 10:34 Post subject: VAP with 2 subnets, how to configure?
Hello, I'm getting there for some help because after several hours researching and testing stuff, I can't make my network work as I need to.
I attached a simple network diagram of what I need to achieve.
I have a Netgear WNR3500Lv2 router with DD-WRT v3.0-r27520M installed. No internet here, I'm making a local network.
I want to have my physical network and my wireless network working with 192.168.10.x adress range, and add a VAP with a DHCP giving adresses of 192.168.20.100 - 110 to "guests". These "guests" should have the ability to "talk" to the PC (192.168.10.30) but not to the rest of the .10.x network.
I managed to create my VAP, set 2 different SSIDs for wl0 and wl0.1, create passwords, create a br1 interface and a DHCP with .20.x range... but my subnets can't communicate. I managed to get the 192.168.10.30 computer ping the 192.168.20.1 bridge but not any client in the .20.1xx range...
If I can make this work, I also don't really know how to setup the firewall...
Joined: 18 Mar 2014 Posts: 12884 Location: Netherlands
Posted: Tue Aug 14, 2018 12:37 Post subject:
Without having seen your firewall rules and assuming you have Net isolation enabled on the bridge the following firewall rule can restore a path to your PC
In fact, it was my *dumb* windows which redirected my .20.x requests to another interface than the one I used to configure my router...
So now, with the firewall disabled, everyone can ping eachother, I've a DHCP only on my guest network, which is fine, but I must now setup my firewall.
For now, I've entered these rules (my .20.x network is on eth1) :