I have an tplink EAP225 that I have flashed with OpenWrt. This access point has a single network port, so I'm trying to avoid making it unreachable as I have not yet tested out the factory reset button.
I'm trying to incorporate lan/guest/IOT network. Here is my config via my main router (AP is connected to eth0 via an unmanaged switch to provide POE, nothing else is connected to the switch):
As it stands I can log into the device via LUCI, but I can't connect to the internet. I assume if I go to "tagged" on the vlan ID 74 on the access point I will be able to connect to wifi, but will I still be able to reach the device?
Is there some sort of fail-safe vlan that can be added so the device is always reachable?
Try it... there is no harm and it should function per the failsafe method. This is a good tool to have in your pocket and it is good to know how to get into it (and confirm that it works) before you get into a situation where you actually need it.
To be clear, the EAP225 is just operating as an AP and your main router is handling all the additional networks/routing, correct?
You need a managed switch for this, as unmanaged switches are not designed for passing VLANs and could cause you problems.
The AP doesn't need internet access. It's just bridging the wired and wireless networks, so as long as the clients work normally that's all that matters.