In OpenWrt ...you have to have a bridge if you intend to have a WiFi to a VLAN
i think "wifi to a vlan" is a misnomer as dot11 frames dont have any such concept .
Now two options come :-
want to bridge wlan with router lan switch or not ?
now as bridging is L2 concept now if you have done the vlan segmentation of your switch and want bridging of any sub interface with wlan or ( as done by default by opnert ( they make a bridge call br-lan that has lan ethernet port and wlan port bridged ) you can do bridging
if you . opt for this firewall rules will be wriitin for zones LAN ( having br-lan( lan ethernet port and wlan) ) and WAN zone
but this is not a complusion what i usually do is remove wlan from the bridge and make three interfaces and apply policies accordingly more granularly
OpenWrt creates a br-lan by default**
A vlan is needed for Wired
IF YOU REMOVE THIS, LAN has to be reconfigured.**
in OpenWrt,** VLANs and Interfaces are synonyms, so it is possible to address a wlan1 without VLAN and add it to a bridge. BUT you would need to do this future if, FOR EXAMPLE, the OP CONNECTED IT TO THE FIREWALL MENTIONED!
no no , kernel only give api utilised by ifconfig and wlconfig and wi and all to customise , in this concept i just told kernal not to bridge my vint created on PHY with and eth port
my statement is i dont need vlans in this case
case is If i have eth1 eth2 wlan0 , no vlan is requires all untagged traffic flows
if wrong i ll send you a router if correct you send me one
You are correct, 802.11 does not have the notion of VLAN tagging.
However, the hardware switch requires internal VLAN tags to isolate the flows, even if you choose to remove those tags on delivery to the switch's ports (the phys, and the physical jacks).