I am currently looking at potentially replacing my DD-WRT router(s) with OpenWRT so I've been starting to play around with OpenWRT on an old router to get more comfortable with OpenWRT and as a platform to learn more about networking/routing/firewalls.
I am trying to achieve the following:
Use 3 ports as a 3 port switch for my primary home network (192.168.0.0/24)
Use 1 port as a VLAN with a dedicated DHCP range (10.0.0.0/24)
WAN port is not used
Devices connected to the VLAN should be able to access both LAN and internet resources
I have the VLAN and dedicated DHCP range setup and working, but I am running into problems being able to have devices connected to the VLAN be able to access the internet. Here is the firewall rule that I currently have setup:
config zone
option input 'ACCEPT'
option output 'ACCEPT'
option name 'VLAN'
option forward 'ACCEPT'
option masq '1'
option network 'VLAN'
config forwarding
option dest 'lan'
option src 'VLAN'
Shouldn't this double NAT devices on my VLAN and allow access to both LAN and internet resources? I also played around with SNAT and static routes, but couldn't get this to work.