Hi,
I flashed openWrt 23 onto my new TP-Link RE650.
This is sold as a network extender and defaults into a network proxy ( Mac Proxy/IP proxy etc ) type set-up when I plug in the WAN cable.
It is not exactly what I want, but I don't mind the abstraction, but does it stop me from remotely administering the device when it is connecting to the upstream Ubiquiti Edge Router so I have to change much of this.
What I would like to have:
-
Access point that DHCPs an IP for the wan NIC from my Edgerouter.
-
4 APs configured ( 4 x SSIDs) with inter SSID traffic client connections permitted.
-
No SSID traffic may communicate with other SSIDs.
-
Firewall on each SSID.
I think the TP-Link will need some NAT as well for this unless the upstreamEdgeRouter is better off doing this. I wonder if it is faster than the consumer Linksys device, and it seems extra over head to have the TP-Link RE650 do NAT and then EdreRouter then do NAT on top of this.
I am not and never have been a network admin., My network knowledge is quite limited.
So, here is what I have managed to date:
I created 4 SSIDs ( 2 for each radio 2.4ghz and 5ghz ), and these APs can all be connected with).
However, I saw that clients on one SSID can communicate with clients on other SSIDs.
I suspect that this is because each SSID has been assigned to the device lan.
I do not wish to have Isolate Clients enabled because I have to have clients within each SSID able to communicate with each other, but not have clients from one SSID communicate with clients from other SSIDs.
To solve this, will this work:
Should I create a new set of devices called something like:
lan-ssid-1
lan-ssid-2
lan-ssid-3
lan-ssid-4
Then I can assign each new network device each to their respective SSIDs
e.g
lan-ssid-1 -> ssid1,
lan-ssid-2 -> ssid2
lan-ssid-3 -> ssid3
lan-ssid-3 -> ssid4
Will I have to configure a DHCP server for each device?
lan-ssid-1 10.1.1/24
lan-ssid-2 10.1.2/24
lan-ssid-3 10.1.3/24
lan-ssid-4 10.1.4/24
How will I create the Firewall settings?
How can I get the routing to work? e.glan-ssid-1 -> wan
Can I enable some bandwidth control per SSID or LAN device such max-upstream=15Mbits and max-downstream=30Mbits
How can I stop the TP-Link from turning itself into a network proxy and losing all access to the Linksys box when plugged into an upstream router.
Help !
Looped in @brada4