Hi, I am currently planning a more complex retail PoC with Teltonika (RUTX11) hardware.
All use case examples provided by Teltonika in https://teltonika-networks.com/use-cases/retail/ are "kinda" simple when coming to LAN networking or VPN. Like https://teltonika-networks.com/use-cases/retail/fast-and-uninterrupted-retail-connectivity - lacking separated local VLANs for POS, guest wifi, etc.... Would this be possible?
What i need is having a RUTX11 per site which provides:
- LAN: 3 different VLAN; each on one of its three Ethernet ports which I'd like to call three local "zones" (CORP-POS, GUEST, DEFAULT). DHCP servers in each zones, serving three different IP networks
- WIFI: Each of these "zones" should also provide a dedicated WiFi-Network on the RUTX11
- Optionally: Provide a Captive Portal on the GUEST-zone (WIFI)
- WAN: MultiWAN Failover; Priority: 1st: DHCP on WAN, 2nd: WIFI-Client-WAN ; 3rd/Backup: LTE/WWAN
- VPN-Client:
- From the CORP-POS-zone connect a Wireguard-Client VPN to a central corporate Wireguard server and route all traffic from the CORP-POS-zone through this tunnel (and the corporate internet uplink)
- From the GUEST-zone connect a Wireguard-Client VPN to some privacy VPN-Provider (Mullvad/IVPN) and route all traffic from this "zone" through this tunnel to the internet
- From the DEFAULT-zone route all stuff directly to the local internet provider
- VPN-Server:
- Provide a Wireguard-VPN-Server to connect maintenance staff from outside to the location and access DEFAULT zone
- Optionally: Provide a second Wireguard-VPN server which "connects" to the GUEST-zone and and utilizes its uplink VPN for outgoing traffic (chained wireguard)
Well, I managed to get some parts working - but for most of the VPN und multi uplink routing part I got no clue wheter that is even possible? Could someone assist with some advice? Does Teltonika offers consulting with setups like this? Could someone punch me in the right direction? Thanks for any help / ideas on this.