Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    VLAN & DHCP hosting

    Scheduled Pinned Locked Moved General pfSense Questions
    10 Posts 2 Posters 896 Views 2 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S Offline
      sven72
      last edited by sven72

      Good day and hew year to you !
      With the advice of @johnpoz, I did get rid of my UDM and replaced it with a cloud key, a L3 switch and an AP (all from Ubiquiti). Now I face a dilemma in terms of configuration.
      On the Netgate 1100 router, I can create new interface, like LAN and IOT, allocate to each a DHCP range - a VLAN for IOT, and some rules. But I am getting confused with the Ubiquiti configuration, the software shows Wi-Fi and Network, and proposes to create networks. Which I did, using DHCP relay option, pointing back to the Netgate router. Is that the correct way to set it up, as I want the Netgate to handle all DHCP and not Ubiquiti ?
      Thank you !
      Edit: I forgot to add that Ubiquiti seems to create those network by default, and with a set of IP that I cannot control, hence my confusion. And the Wi-Fi SSID it proposes to create are tied up to those network...

      johnpozJ 1 Reply Last reply Reply Quote 0
      • johnpozJ Offline
        johnpoz LAYER 8 Global Moderator @sven72
        last edited by

        @sven72 said in VLAN & DHCP hosting:

        the software shows Wi-Fi and Network, and proposes to create networks

        You have no need to create networks in pfsense other than the networks you want on your wifi

        Your wireless networks would be your SSIDs and what vlan IDs they would carry.

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.8, 24.11

        S 1 Reply Last reply Reply Quote 0
        • S Offline
          sven72 @johnpoz
          last edited by

          @johnpoz Exactly my point, on pfsense I have created an extra interface for IOT, with its own DHCP range, VLAN ID and nothing really extra.
          When I get to UI web interface, it shows me WiFi and Networks. I do not intend to create any new network there but only WiFi SSID.
          When creating a WiFi, it asks for a name, a password and ... a network to tie it up to. And inevitably only shows what it knows, i.e. the UI one's, not pfsense. And it does not propose any VLAN ID whatsoever, for that, a "network", UI sense, has to be created. And then defeats the purpose of having pfsense to manage it.

          johnpozJ 1 Reply Last reply Reply Quote 0
          • johnpozJ Offline
            johnpoz LAYER 8 Global Moderator @sven72
            last edited by johnpoz

            @sven72 my bad - meant to say unifi - doh!

            Example

            vlanonly.jpg

            Those would match up with the networks you created in pfsense.

            Then in your ssid you crate you would match that up with the vlan ID you want on that ssid

            ssid.jpg

            An intelligent man is sometimes forced to be drunk to spend time with his fools
            If you get confused: Listen to the Music Play
            Please don't Chat/PM me for help, unless mod related
            SG-4860 24.11 | Lab VMs 2.8, 24.11

            S 1 Reply Last reply Reply Quote 0
            • S Offline
              sven72 @johnpoz
              last edited by

              @johnpoz Ah alright sorry for my quick answer as well.
              So those networks have to exist on unifi as well, thank you, this is clear. Would you mind sharing their basic configuration, especially the DHCP if anything ? I thought relay was the good approach but I might be wrong (and I added both pfsense's LAN and IOT gateway in unifi panel)?
              And last question to bother you new year's day :) a regular unifi AP can handle multiple SSID without dropping one for another, right ?

              johnpozJ 1 Reply Last reply Reply Quote 0
              • johnpozJ Offline
                johnpoz LAYER 8 Global Moderator @sven72
                last edited by johnpoz

                @sven72 there is nothing other than the vlan ID, they are vlan only networks.

                Your only actual network that would be listed would be the network the controller is on and your AP for management.

                An intelligent man is sometimes forced to be drunk to spend time with his fools
                If you get confused: Listen to the Music Play
                Please don't Chat/PM me for help, unless mod related
                SG-4860 24.11 | Lab VMs 2.8, 24.11

                S 1 Reply Last reply Reply Quote 0
                • S Offline
                  sven72 @johnpoz
                  last edited by

                  @johnpoz The I believe the unifi software is my problem, it does not show me exactly what you hint at sadly for me.
                  4975571c-5130-47bc-9e59-87a0adf4912c-image.png

                  I cannot remove, or did not figure out so far how to remove that inter-VLAN thing.
                  Secondly when I create a new network, indeed for VLAN only like you showed, here is the panel:
                  1440b089-d929-4592-8679-de533879b3ff-image.png
                  c647dadf-df03-4d6f-a89e-d9e8c6dc7079-image.png

                  It does not let me create the same object than what you showed unfortunately.

                  johnpozJ 1 Reply Last reply Reply Quote 0
                  • johnpozJ Offline
                    johnpoz LAYER 8 Global Moderator @sven72
                    last edited by

                    @sven72 oh your in the new gui, go to legacy I don't use the new gui..

                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                    If you get confused: Listen to the Music Play
                    Please don't Chat/PM me for help, unless mod related
                    SG-4860 24.11 | Lab VMs 2.8, 24.11

                    S 1 Reply Last reply Reply Quote 0
                    • S Offline
                      sven72 @johnpoz
                      last edited by

                      @johnpoz Thanks again johnpoz, indeed, the new interface is very messy and cumbersome. I switched to the old one and can now do what you showed above. No clue though on how to remove that LAN entry so far...

                      johnpozJ 1 Reply Last reply Reply Quote 0
                      • johnpozJ Offline
                        johnpoz LAYER 8 Global Moderator @sven72
                        last edited by johnpoz

                        @sven72 just edit to be your network if its not already... Doesn't really matter if you don't have a unifi router to manage what is in there.

                        All you need is the vlan only networks so you can assign them to your ssids

                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                        If you get confused: Listen to the Music Play
                        Please don't Chat/PM me for help, unless mod related
                        SG-4860 24.11 | Lab VMs 2.8, 24.11

                        1 Reply Last reply Reply Quote 1
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.