Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Vlan workaround asus router

    Scheduled Pinned Locked Moved Official Netgate® Hardware
    6 Posts 3 Posters 1.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      Betahelix
      last edited by

      HI.
      My setup is:

      Netgate 2100
      Asus AX86U.

      Would this be possible:
      Turn off DNCH on Asus router.

      Connect WAN on Asus router to port 1 on pfsense
      Connect LAN port on Asus to port 2 on pfsense

      Setup route on PFsense to allow normal traffic via LAN-port 2.

      Guestnetwork on asus router, will default route via WAN to port1 allowing a gateway around the network to the internet, not allowing LAN access.

      I know this is a long shot, but due to no support of VLAN on the asus router, this could be an option to route guest network directly to inet, and no LAN access.

      johnpozJ 1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        That could work as long as you put the two ports into different subnets in the 2100.

        https://docs.netgate.com/pfsense/en/latest/solutions/netgate-2100/switch-overview.html

        Steve

        1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator @Betahelix
          last edited by

          @betahelix So this asus router will provide dhcp to its "guest" clients? And then nat it to the network that is on the wan of the asus router?

          This could work in theory, but I believe when you disable dhcp on the asus - guest clients wouldn't be able to get an IP.

          While I haven't played with whatever latest native firmware you have your asus, I think merlin or tomato firmware might run on them, and that should provide true vlan support..

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          1 Reply Last reply Reply Quote 1
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            That would be a much better option if the hardware is supported yet.

            johnpozJ 1 Reply Last reply Reply Quote 0
            • johnpozJ
              johnpoz LAYER 8 Global Moderator @stephenw10
              last edited by johnpoz

              @stephenw10 said in Vlan workaround asus router:

              if the hardware is supported yet.

              Listed on the merlin site

              merlin.jpg

              Also show support on asuswrt-merlin

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 24.11 | Lab VMs 2.8, 24.11

              B 1 Reply Last reply Reply Quote 1
              • B
                Betahelix @johnpoz
                last edited by

                @johnpoz HI.
                i have asus merlin on the device, but i cant figure out how to get vlan on it.
                I read in forum that it would be possible to bind a vlan to a specific port on the router.

                But i dont know how.
                It seems like it dont support robocfg which is needed.

                1 Reply Last reply Reply Quote 0
                • First post
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.