VLAN Tagging how to setup in Nebula

Options
Tomatoman
Tomatoman Posts: 11 image  Freshman Member
First Comment Second Anniversary

Hi all,

I do have 2 access points in use (NWA50BE) and like to make some VLAN tagging.

Using the Nebula cloud (privat user) for the management of the devices.

I'd like to achieve 3 levels for my own use, for guest and for IOT devices.

What is the best strategy doing so, please explain it in user friendly mode, as I'm newbie around that topic.

br

tomatoman

All Replies

  • GiuseppeR
    GiuseppeR Posts: 711 image  Guru Member
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Engineer Level 1 - Nebula 5 Answers First Comment

    Hi @Tomatoman

    You have the possibility to setup VLAN tag directly when you setup WiFi SSID.

    You have not described your topology network, I hope you have also a friendly firewall+switch to setup how to route (and isolate) the traffic inside your network.

    To be exact PVID value is the value that you can setup with a number up to 4096.

    You can choose the number you want, for example:

    • PVID 100 for internal LAN
    • PVID 101 for IoT LAN
    • PVID 102 for Guests

    to say to a firewall which packet it is managing.

    You can “mix” inside your network (switches and firewall need to be able to manage PVID tagged packets) all the traffic but you need to setup also different LANs that collect packets from PVID 100, 101, 102 etc.

    For example:

    • LAN 100 for internal LAN
    • LAN 101 for IoT
    • LAN 102 for your gests

    After you setup PVID on WiFi SSIDs and setup LANs with VLAN tags, you can isolate their traffic with section Policy Rules to “Allow” or “Deny” traffic between them

Nebula Tips & Tricks