Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    New XG-7100 owner confused

    Scheduled Pinned Locked Moved Official Netgate® Hardware
    lagvlan4090vlan4091
    9 Posts 3 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      ParanoidDuck
      last edited by

      Hi,

      I'm quiet used to WatchGuard and feel quiet confused with my new XG-7100.
      I read up on the documentation provided here -> https://docs.netgate.com/pfsense/en/latest/solutions/xg-7100/switch-overview.html#switch-lagg

      If i want to treat every single interface independently, how do i skip the "LAG" part?
      Or do i create VLAN and tag the specific port with the LAG-vlan that i create, then disable the ports that i don't want configured at all?

      Also, is it recommended to keep VLAN 4090 on WAN and VLAN4091 on LAN?
      Is not LAN normally untagged as vlan1?

      Sorry for possibly asking stupid questions..

      Thanks,
      Fredrik

      1 Reply Last reply Reply Quote 0
      • P
        ParanoidDuck
        last edited by

        I just realized, that i already knew the answer to this quiestion...

        I forgot about the physical limitations of using the XG-7100 over building my own firewall.

        //Fredrik

        1 Reply Last reply Reply Quote 0
        • RicoR
          Rico LAYER 8 Rebel Alliance
          last edited by

          Configuring Discrete Ports on the XG-7100 is covered here (official Netgate documentation): https://www.youtube.com/watch?v=NgRy14rYhV8

          -Rico

          1 Reply Last reply Reply Quote 1
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            If you want all 8 ports separately accessible I usually use vlans 4081-4088 just to make things a bit easier. Those are only tagged internally, all traffic leaving the ports would be untagged.

            We can give you a default config with that already configured if you open a ticket: https://go.netgate.com/

            Steve

            1 Reply Last reply Reply Quote 1
            • RicoR
              Rico LAYER 8 Rebel Alliance
              last edited by

              @stephenw10: I have a great document Configuring-Discrete-Ports-on-XG-7100.pdf (Author Doug).
              I really can't remember where I get this from, but I can't find it online (and I don't know if I'm allowed to share it or not ;-)).

              -Rico

              1 Reply Last reply Reply Quote 1
              • stephenw10S
                stephenw10 Netgate Administrator
                last edited by

                Doug from Netgate?

                What's shown here?
                https://docs.netgate.com/pfsense/en/latest/solutions/xg-7100-1u/configuring-the-switch-ports.html#switch-configuration-examples

                Steve

                1 Reply Last reply Reply Quote 0
                • RicoR
                  Rico LAYER 8 Rebel Alliance
                  last edited by

                  Nope it's a whole other document.

                  -Rico

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    Hmm, yeah I see it. Checking...

                    1 Reply Last reply Reply Quote 0
                    • P
                      ParanoidDuck
                      last edited by

                      I think I figured it out.

                      Using VLAN probably is the best way to do it.
                      Only thing is that the firewall makes it confusing with the 4090 and 4091.

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.