Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Need suggestions for home topology

    Scheduled Pinned Locked Moved L2/Switching/VLANs
    12 Posts 5 Posters 1.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • JKnottJ
      JKnott @PM_13
      last edited by

      @pm_13

      You have a lot of switch ports there. You don't need a L3 switch for routing, since pfsense can do that. Same with DHCP server. Also, with all those ports on the Dell switch, do you need the Trendnets? Why not just run cables to all the locations. Those switches give you 8 ports at 1 location, one of which goes back to the Dell. You can get 6 position outlet box panels, which can be cabled back to the Dell. Unless you have space restrictions, pulling in 6 cables isn't much harder than 1. One other consideration is that Dell will likely be power hungry, as well as noisy. Are you sure you want to use it?

      PfSense running on Qotom mini PC
      i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
      UniFi AC-Lite access point

      I haven't lost my mind. It's around here...somewhere...

      1 Reply Last reply Reply Quote 1
      • P
        PM_13
        last edited by

        This post is deleted!
        1 Reply Last reply Reply Quote 0
        • P
          PM_13
          last edited by

          Thanks for your input and your questions are definitely helping clear things in my head.

          Here are few more clarifications:

          1. Dell Switch was a bargain that I stumbled upon on eBay and got a functional L3 switch for forty bucks!! But not planning on using it for routing as I like the UI and ease of pfSense.
          2. There is a utility junction box outside the house that runs an Ethernet cable from each room to this junction box, these cables were put in during home construction and it is not possible to run any more cables except one room (see next point).
          3. My office desk where pfSense is installed is on the other side of the wall that hosts the junction box and all I needed was to drill a hole and I can add more wires (as needed) between pfSense and the utility junction box. Currently I have an unmanaged switch in the junction box that connects all the cables from each room to pfSense.
          4. The attic sits on top of three bedrooms so I can use one of the existing Ethernet cable from one of the bedroom and extend it few feet to get into attic.
          5. In attic I am putting following hardware:
            a. A rack server (4 Ethernet ports) that will run four components:
            i. Home Assistant server
            ii. Zoneminder for surveillance cameras
            iii. NAS for home LAN
            iv. Central log server for all machines on home LAN
            b. Dell Switch
            c. TBD – alarm system, the house is pre-wired and would put one in place this year
          6. The Dell switch and rack server have really noisy fans but putting them in attic eliminates the noise factor and also makes them physically secure.

          I think following would make sense:

          1. The pfSense machine has 6-ports which can be used as follows:
            i. WAN
            ii. LAN-1: Netgear Orbi – this will make WiFi a dedicated VLAN, barring 1~2 devices most of it is either IoTs or guest network devices.
            iii. LAN-2: trusted machines like work laptop
            iv. LAN-3: test network for VMs and all trial projects which I have started doing a lot off lately
            v. LAN-4: TBD
            vi. LAN-5: TBD
          2. Current WiFi hardware does not support VLANs in AP mode but ithat will change in future so hopefully filter out “guest” from “IoTs” using VLANs
          3. Since there is only a single dedicated cable from utility junction box to attic, adding a L2 switch at both ends would create more virtual cables as number of ports on Trendset L2 switch.
          4. There are only three rooms (office and two living rooms) where there is congregation of multiple devices and I can use a Trendnet L2 switch in each of these rooms to leverage VLAN functionality.
          bingo600B 1 Reply Last reply Reply Quote 0
          • bingo600B
            bingo600 @PM_13
            last edited by bingo600

            @pm_13
            I'd make one or two of the Qotom lanports Vlan capable from the beginning.
            Murphy (experience) says that you will always need more lan segments than yo have physical pfSense ports.

            And you prob need it anyway for a multi SSID WiFi setup.

            /Bingo

            If you find my answer useful - Please give the post a 👍 - "thumbs up"

            pfSense+ 23.05.1 (ZFS)

            QOTOM-Q355G4 Quad Lan.
            CPU  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
            LAN  : 4 x Intel 211, Disk  : 240G SAMSUNG MZ7L3240HCHQ SSD

            P 1 Reply Last reply Reply Quote 1
            • P
              PM_13 @bingo600
              last edited by PM_13

              @bingo600 I agree...as it is Better to have it and not need it rather than needing it and not have it......

              Thanks!!

              1 Reply Last reply Reply Quote 0
              • johnpozJ
                johnpoz LAYER 8 Global Moderator
                last edited by johnpoz

                Nothing wrong with putting switches at both ends of cable ;) But for bandwidth reasons don't go daisy chaining switches for the fun of it ;)

                And I am all for multiple interfaces on the router that is for sure. And can be helpful in spreading out the bandwidth for your vlans. If possible would use interface on the router for each segment. But when you have more networks then interfaces you will have to share.

                My question about the L3, was there is no reason to call out that its an L3 switch unless your planning on using it as router..

                Whats the specific model of the dell switch? Old enterprise gear can be enticing at low costs - but quite often they are very loud and very power hungry... The power can eat up any upfront perceived cost savings really quickly... Be amazed at how much it costs you to run a 130W switch per year vs just 10w switch.. When they are on 24/7/365

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.8, 24.11

                NogBadTheBadN bingo600B 2 Replies Last reply Reply Quote 0
                • NogBadTheBadN
                  NogBadTheBad @johnpoz
                  last edited by NogBadTheBad

                  FWIW I don’t have any ethernet between the rooms at home, I get over the issue running vlans over Devolo ethernet over power devices, not ideal but they do pass tagged ethernet packets.

                  Andy

                  1 x Netgate SG-4860 - 3 x Linksys LGS308P - 1 x Aruba InstantOn AP22

                  1 Reply Last reply Reply Quote 0
                  • bingo600B
                    bingo600 @johnpoz
                    last edited by bingo600

                    @johnpoz said in Need suggestions for home topology:

                    When they are on 24/7/265

                    Poor guy ... 10 100 days downtime/yr 😊

                    Edit: Totally agree w @johnpoz
                    The initial saving on used enterprise equipment is easily eaten up by electricity cost , in the long run.

                    If you find my answer useful - Please give the post a 👍 - "thumbs up"

                    pfSense+ 23.05.1 (ZFS)

                    QOTOM-Q355G4 Quad Lan.
                    CPU  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                    LAN  : 4 x Intel 211, Disk  : 240G SAMSUNG MZ7L3240HCHQ SSD

                    johnpozJ 1 Reply Last reply Reply Quote 0
                    • johnpozJ
                      johnpoz LAYER 8 Global Moderator @bingo600
                      last edited by johnpoz

                      We both did typos ;) 365 - nice catch - doh!

                      Fixed ;) heheheh

                      edit: Just for example.. That 120w difference depending on what electric costs you could be $120 a year difference. Multiply that out for say 5 years that you use said switch and its not all that much of a cost savings ;)

                      I am all for leveraging old enterprise gear for a lab you have on a few hours now and then to "lab" something.. But if going to be your networks switch and they are sucking juice 24/7 you really prob want something that is very low power.. Especially if you going to have a lot of them due to layout and lack of wiring, etc..

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 24.11 | Lab VMs 2.8, 24.11

                      bingo600B 1 Reply Last reply Reply Quote 0
                      • bingo600B
                        bingo600 @johnpoz
                        last edited by

                        @johnpoz said in Need suggestions for home topology:

                        Poor guy ... 10 100 days downtime/yr

                        We both did typos ;) 365 - nice catch - doh!

                        Well maybe i can get my tuition money back for calc ...
                        Nice catch too 👏

                        If you find my answer useful - Please give the post a 👍 - "thumbs up"

                        pfSense+ 23.05.1 (ZFS)

                        QOTOM-Q355G4 Quad Lan.
                        CPU  : Core i5 5250U, Ram : 8GB Kingston DDR3LV 1600
                        LAN  : 4 x Intel 211, Disk  : 240G SAMSUNG MZ7L3240HCHQ SSD

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.