Hi all, this is my first time posting here and most likely someone asked my question before, but I spent hours trying to figure out networking between Pfsense and Openwrt. I'm also new to Openwrt.
I created 2 tagged VLANs (although I just need one for guest network) in Pfsense and assigned them to new interfaces.
I also enable DHCP server for each VLAN and created firewall rules to allow traffic
I think everything from Pfsense side looks good. Now from Openwrt I want to use Guest VLAN to assign it to Guest SSID.
I first created bridge device to bridge all 4 LAN ports on my AP. Then I enabled bridge filtering,
Then I created guest interface and gave it static address protocol and bridge.50 device. DHCP is not enabled on this interface since I enable for the VLAN (bridge.50)
Now when I assign SSID to GuestLAN network and try to connect to that SSID I cannot get an IP, but if I enable DHCP for GuestLAN interface I can connect to that SSID but I don't have Internet access.
/etc/config/network
config interface 'loopback'
option device 'lo'
option proto 'static'
option ipaddr '127.0.0.1'
option netmask '255.0.0.0'
config device
option name 'br-lan'
option type 'bridge'
list ports 'lan1'
list ports 'lan2'
list ports 'lan3'
list ports 'lan4'
config interface 'lan'
option device 'br-lan'
option proto 'static'
option netmask '255.255.255.0'
option ip6assign '60'
option ipaddr '10.10.1.20'
list dns '10.10.1.26'
list dns '9.9.9.9'
option gateway '23.240.200.1'
config device
option name 'wan'
option macaddr ''
config interface 'wan'
option device 'wan'
option proto 'dhcp'
config interface 'wan6'
option device 'wan'
option proto 'dhcpv6'
config device
option name 'eth0'
config device
option name 'wlan1-1'
config device
option name 'wlan0'
config interface 'GuestLAN'
option type 'bridge'
option device 'br-lan-test.50'
option proto 'static'
option ipaddr '10.10.50.20'
option netmask '255.255.255.0'
config device
option type 'bridge'
option name 'br-lan-test'
list ports 'lan1'
list ports 'lan2'
list ports 'lan3'
list ports 'lan4'
option bridge_empty '1'
config bridge-vlan
option device 'br-lan-test'
option vlan '50'
list ports 'lan1:t'
list ports 'lan2'
list ports 'lan3'
list ports 'lan4'
config bridge-vlan
option device 'br-lan-test'
option vlan '99'
list ports 'lan1:u*'
list ports 'lan2'
list ports 'lan3'
list ports 'lan4'
/etc/config/wireless
config wifi-iface 'wifinet4'
option device 'radio1'
option mode 'ap'
option encryption 'psk2'
option key ''
option ssid 'GuestWIFI'
option wmm '0'
option isolate '1'
option network 'GuestLAN'
FYI, my setup as follow
Pfsense acting as firewall and router (connected to ISP through WAN and LAN to unmanaged switch), Openwrt installed on AP to provide WLAN.