Hello,
Obviously, I have a misunderstanding how to create a guest network and connect the Wireless Interface configuration to it.
LAN works
I have a running LAN network. The network is defined by an interface (Network-->interfaces-->Lan).
I also have a WLAN interface that is connected to my lan.
What I totally don't understand is the section "Physical Settings" in the interface section (Network-->Interfaces--> Lan -->Physical Settings). According to my knowledge a bridge is a link layer device connecting two nets over OSI layer 2, i.e. it is the opposite of a VLAN, as far as I understand.
Here for example, the bridge interface option is set to true, and therefore I (could) select a set of interfaces. Currently only eth0 is selected. Eth0 is, as far as I understand, the interface describing all 5 !!! ports on my router (4xLAN, 1xWAN all wired). I have VLAN configured, i.e. LAN port 1-->VLAN #1, LAN port 2-->VLAN #2, LAN port 3-->VLAN #3, LAN port 4-->VLAN #4 and WAN port 1-->VLAN #5...
I have once tried to change eth0 to eth0.3 and br-lan but lost connection. I had to reboot my router and reset to my default configuration.
However, LAN+WAN works.
Guest WLAN doesn't work
Now, I thought I could replicate all data for Guest network. I created a Guest network, put it to a Guest zone. Guest can only go to WAN zone, input is reject (no access for guest to go to router), output is accept, forward for nets within guest zone is reject (could also be accept there is only one net in guest zone).
Then, I create a second WLAN interface.
I added it to the guest network.
However, it doesn't work.
SSH Console output
I can ssh to my console and have performed IP addr show command. Here is the result.
- I see an eth0 interface, no ip association.
- I see an br-lan interface that has the subnet data from my LAN (x.x.1.0/24).
- I see an eth0.3@eth0 interface that has the subnet data from my IoT network (x.x.2.0/24). Why is there no eth0.1@eth0, eth0.2@eth0, eth0.4@eth0 and eth0.5@eth0 interface????
- I see a wlan0 interface, no ip association
- I see a wlan0-1 interface that has the subnet data from my Guest network (x.x.3.0/24).
My opinion
My LAN (eth0) and WifiLAN (wlan0) work because both are connected in br-lan.
My Guest net(not physically connected to a port) and WifiGuest (wlan0-1) do not work because I ,make something wrong.
My questions
- What do I have to write to Network-->Interfaces-->Guest-->Physical Settings?
- How do I have to connect Network-->Interfaces-->Guest with Network-->Wireless-->GuestWifi
- What exactly is br-lan and do I need it?
Thanks for help.
Regards,
Equi