Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    How to do vlans with physical nic's to AP's?

    Scheduled Pinned Locked Moved L2/Switching/VLANs
    51 Posts 5 Posters 9.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • johnpozJ
      johnpoz LAYER 8 Global Moderator
      last edited by

      As already stated lagg is another way to skin the cat, but sometime $40 smart switches that do vlans don't support lagg ;) Also with lagg your never sure which physical path traffic will take. So it is possible for intervlan traffic to hairpin over the same physical path. Which is not possible when you split your vlans across multiple uplinks.

      Again you prob not have to worry about it and you could just use the single uplink with your vlans on it.

      Derelicts lagg solution is common practice yes.

      An intelligent man is sometimes forced to be drunk to spend time with his fools
      If you get confused: Listen to the Music Play
      Please don't Chat/PM me for help, unless mod related
      SG-4860 24.11 | Lab VMs 2.8, 24.11

      JKnottJ 1 Reply Last reply Reply Quote 0
      • JKnottJ
        JKnott @johnpoz
        last edited by

        @johnpoz

        One other point that seems to be missing is how much bandwidth is actually needed. If most of the WiFi traffic goes out to the Internet, then all that bandwidth between the AP and router won't do much good, if the Internet connection is only 100 Mb or so.

        PfSense running on Qotom mini PC
        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
        UniFi AC-Lite access point

        I haven't lost my mind. It's around here...somewhere...

        1 Reply Last reply Reply Quote 0
        • N
          N0_Klu3 @johnpoz
          last edited by N0_Klu3

          @johnpoz I have the Unifi AP HD's.
          They have 2 ports for LAGG and I've already set this up with my Unifi switches.

          https://unifi-hd.ui.com/ - For reference.
          Devices > UAP HD > Config > Network > Port aggregation

          1 Reply Last reply Reply Quote 0
          • johnpozJ
            johnpoz LAYER 8 Global Moderator
            last edited by johnpoz

            Ah yeah those do, but the older models do not.. Those inwall ones actually have 5 ports. Yeah I would love one of the shd models to play with.

            Completely off topic, but since wifi 6 official now, has anyone heard anything from unifi on what AP will support it?
            edit: While yes interested in when they will release AP that supports 802.11ax, I was more interested in news about wpa3, which was answered below.

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            1 Reply Last reply Reply Quote 0
            • N
              N0_Klu3
              last edited by

              Unfortunately not. Hopefully the HD's will get it :D

              1 Reply Last reply Reply Quote 0
              • NogBadTheBadN
                NogBadTheBad
                last edited by NogBadTheBad

                Not sure about WiFi6 but WPA3 is on the way.

                Noticed this on Reddit the other day:-

                https://www.reddit.com/r/Ubiquiti/comments/d51997/wpa3_support_coming_soon_for_gen2_and_gen3_uaps/

                https://help.ubnt.com/hc/en-us/articles/360012192813-UniFi-Getting-Started#3

                Andy

                1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                1 Reply Last reply Reply Quote 1
                • N
                  N0_Klu3
                  last edited by

                  So I made the switch this morning.
                  Was the most painless thing I've ever done on a network.
                  I can see IoT traffic going specifically through the IoT ports on both router and switch.
                  Same with Guest traffic.

                  Nice to see individual stats now too... Thanks all

                  1 Reply Last reply Reply Quote 0
                  • johnpozJ
                    johnpoz LAYER 8 Global Moderator
                    last edited by johnpoz

                    Yeah that was a typo on my part.. Oh course you would need hardware to support 802.11ax, what I meant was wpa3 support which should be able to be done in software.. My understanding when ios 13 drops (soon) it should be supported.. So looking forward to when this is enabled with unifi.. So that link is good news - curious how long, have not seen it mentioned, and running latest beta firmware and controller - and always read through the release notes..

                    I had wifi 6 in the brain, since had just read an article.. But with wpa3 should be able to just enabled it on a specific SSID..

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.8, 24.11

                    NogBadTheBadN JKnottJ 2 Replies Last reply Reply Quote 0
                    • NogBadTheBadN
                      NogBadTheBad @johnpoz
                      last edited by

                      @johnpoz said in How to do vlans with physical nic's to AP's?:
                      My understanding when ios 13 drops (soon) it should be supported.. So looking forward to when this is enabled with unifi.

                      Yesterday ☺

                      Andy

                      1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                      1 Reply Last reply Reply Quote 0
                      • johnpozJ
                        johnpoz LAYER 8 Global Moderator
                        last edited by

                        Yup you are corrected, already dropped for iphone, I believe ipads are next week.. Which is where I am most likely to test it from.. Wife old iphone doesn't support it, and my iphone is works - so can not move to 13 until they give the ok.

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.8, 24.11

                        1 Reply Last reply Reply Quote 0
                        • JKnottJ
                          JKnott @johnpoz
                          last edited by

                          @johnpoz said in How to do vlans with physical nic's to AP's?:

                          But with wpa3 should be able to just enabled it on a specific SSID.

                          ???

                          Don't you mean on a device? I've never heard of WiFi security being implemented by SSID.

                          PfSense running on Qotom mini PC
                          i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                          UniFi AC-Lite access point

                          I haven't lost my mind. It's around here...somewhere...

                          1 Reply Last reply Reply Quote 0
                          • johnpozJ
                            johnpoz LAYER 8 Global Moderator
                            last edited by johnpoz

                            Did you not have your coffee this morning??

                            If the ssid on the AP is set for wpa2-psk for wifi network SSID-X, how and the F could the client use wpa3 on it???

                            So you could have SSID-A yes on the AP (device) set wpa2-psk, and SSID-B set for wpa3, yes this assumes you have an actual AP that can do more than one wireless network, not some soho wifi router shit box.

                            An intelligent man is sometimes forced to be drunk to spend time with his fools
                            If you get confused: Listen to the Music Play
                            Please don't Chat/PM me for help, unless mod related
                            SG-4860 24.11 | Lab VMs 2.8, 24.11

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.