Creating VLANs and subnets (and SSIDs) using pfSense
-
I am brand new to pfSense, and in truth, not that well versed in networking. Its mostly a home hobby for me. That said . . .
I'm very hyped up after studying pfSense for months. I've loaded pfSense CE on Virtual Box and I've put a copy of Linux Mint and Fedora 36 of the same pfSense subnet I created when installing pfSense. WOW - it really works in its most basic configuration and I'm learning a lot so far.What I'm trying to do in the end....
I want to duplicate with pfSense what I did on another system using a DD-WRT flashed router. I don't know pfSense nor networking well enough to figure out whether the following is possible:
In short, on my aforementioned DD-WRT router, I was able to create a number of VLANs (guest, IoT, main, etc) on different subnets....AND....have up to 8 WiFi SSIDs broadcasting simultaneously from the router's radios.I understand I'll need to purchase a separate "access point gadget" to create a SSID. Do most modern APs allow multiple SSID transmissions using separate subnets simultaneously?
I'd LIKE to avoid purchasing a managed switch to "create/route the VLANs" since my planned PROTECTLI hardware purchase has 4 NIC interfaces. I want the minimum number of hardware 'gadgets' in my project. The DD-WRT router did everything I wanted, including Access Point, firewall and DHCP assignments for each separate subnet with the ONE piece of hardware. I would continue with DD-WRT but it doesn't have support for the newer faster WiFi 6 protocols....plus pfSense looks so interesting especially with IDS/IPS. LOTS for me to learn.
Since my question straddles 3 or 4 pfSense sub-forums ...thought it best to start here, but willing to pursue in another forum if that's a better fit.
Thanks to all for your kind guidance and information..
-
@onepiece said in Creating VLANs and subnets (and SSIDs) using pfSense:
Do most modern APs allow multiple SSID transmissions using separate subnets simultaneously?
Anything aimed at enterprise will. Something more SOHO might, be sure to check. Something that can be flashed wityh OpenWRT/DD-WRT can be made to.
You could probably use your existing DD-WRT device as an AP until you get something that supports .11ax.You don't need a managed switch. You can connect an AP directly to an interface in pfSense and trunk all the VLANs across it.
Steve
-
@onepiece said in Creating VLANs and subnets (and SSIDs) using pfSense:
Do most modern APs allow multiple SSID transmissions using separate subnets simultaneously?
Proper APs usually do, but using a router as an AP won't. Just read the specs to see what an AP can do.
I have a Unifi AC-Lite AP, which supports multiple SSIDs and VLANs, as did a TP-Link AP I used before.
BTW, some people here like the Unifi APs.