VLAN Tagging how to setup in Nebula
Hi all,
I do have 2 access points in use (NWA50BE) and like to make some VLAN tagging.
Using the Nebula cloud (privat user) for the management of the devices.
I'd like to achieve 3 levels for my own use, for guest and for IOT devices.
What is the best strategy doing so, please explain it in user friendly mode, as I'm newbie around that topic.
br
tomatoman
All Replies
-
Hi @Tomatoman
You have the possibility to setup VLAN tag directly when you setup WiFi SSID.
You have not described your topology network, I hope you have also a friendly firewall+switch to setup how to route (and isolate) the traffic inside your network.
To be exact PVID value is the value that you can setup with a number up to 4096.
You can choose the number you want, for example:
- PVID 100 for internal LAN
- PVID 101 for IoT LAN
- PVID 102 for Guests
to say to a firewall which packet it is managing.
You can “mix” inside your network (switches and firewall need to be able to manage PVID tagged packets) all the traffic but you need to setup also different LANs that collect packets from PVID 100, 101, 102 etc.
For example:
- LAN 100 for internal LAN
- LAN 101 for IoT
- LAN 102 for your gests
After you setup PVID on WiFi SSIDs and setup LANs with VLAN tags, you can isolate their traffic with section Policy Rules to “Allow” or “Deny” traffic between them
0 -
Attach a FAQ for refernce:
How to Configuring SSID for VLAN-specific DHCP Allocation in Nebula Network? — Zyxel Community
Zyxel Melen0
Categories
- All Categories
- 442 Beta Program
- 3K Nebula
- 223 Nebula Ideas
- 129 Nebula Status and Incidents
- 6.6K Security
- 638 USG FLEX H Series
- 357 Security Ideas
- 1.8K Switch
- 86 Switch Ideas
- 1.4K Wireless
- 54 Wireless Ideas
- 7K Consumer Product
- 301 Service & License
- 494 News and Release
- 93 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.8K FAQ
- 34 Documents
- 88 About Community
- 109 Security Highlight
Freshman Member
Guru Member
Zyxel Employee