Following the wiki documentation I set up a new interface, wifi device and firewall rules now being able to connect a device with my new iot wifi. It gets an IP (network 192.168.187.0) and can resolve URL addresses to ip. But I cannot get any web traffic through. Hard stuff for a newbie so I thought I can get some hints here.
This is my local setup (basic schema):
I simply want to seperate my iot devices from the rest starting with a dedicated ap to start learning. Goal is to have my own VLAN where I can specifically control per device/port what is going where.
I dont have a WAN interface, LAN is static ip and provides 192.168.188.1 as gw. As for now, I want to understand, meaning, being fully capable of managing zones and fw rules. So, from my iot net I want to reach out to all my lan devices (but not vice versa) and from my iot net I want to connect to internet (no restrictions). This is not working but as I got it, it should work ;(
firewall.iot_dns=rule firewall.iot_dns.name='Allow-DNS-iot' firewall.iot_dns.src='iot' firewall.iot_dns.dest_port='53' firewall.iot_dns.proto='tcp udp' firewall.iot_dns.target='ACCEPT' firewall.iot_dhcp=rule firewall.iot_dhcp.name='Allow-DHCP-iot' firewall.iot_dhcp.src='iot' firewall.iot_dhcp.dest_port='67' firewall.iot_dhcp.family='ipv4' firewall.iot_dhcp.proto='udp' firewall.iot_dhcp.target='ACCEPT' firewall.@forwarding=forwarding firewall.@forwarding.dest='lan' firewall.@forwarding.src='iot' firewall.@rule=rule firewall.@rule.src='iot' firewall.@rule.name='fromIOT2LAN' firewall.@rule.dest='lan' firewall.@rule.target='ACCEPT' firewall.@rule.proto='all'
wireless.iot=wifi-iface wireless.iot.device='radio1' wireless.iot.mode='ap' wireless.iot.network='iot' wireless.iot.ssid='miti_iot' wireless.iot.encryption='none'
network.lan=interface network.lan.type='bridge' network.lan.ifname='eth0.1' network.lan.proto='static' network.lan.ip6assign='60' network.lan.gateway='192.168.188.1' network.lan.dns='192.168.188.2' network.lan.ipaddr='192.168.188.6/24' network.iot=interface network.iot.type='bridge' network.iot.proto='static' network.iot.ipaddr='192.168.187.1' network.iot.netmask='255.255.255.0' network.iot.ifname='eth0.10'
This is my polite question to the community if someone would be so nice to throw me a hint
happy new year!