ADSL & VLAN's

Associate
Joined
18 Oct 2002
Posts
1,998
Location
Swindon
I'm after some help at home with my network setup.

My main switch in the office is a 24port Zyxel 1920, I want to have the first three ports connected to my HG612 modem for my DSL, and then into the vSwitch on my ESXi hosts for my OPNSense firewall. However when I try and split the network with a Port based VLAN the OPNSense firewall will not connect at the PPPOE layer, however if I use a separate switch with the three LAN cables, so i know my configuration works, it's just my attempt at trying to separate the firewall traffic from the rest of the LAN. I've tried using VLAN id's 2, 101 & 301. but they all just stop the PPPOE traffic from hitting the HG612 ADSL modem.

Any ideas of what ive missed or what i can try next. I was under the impression that using a port based VLAN would mean the traffic would not need to be tagged, as the switch is managing the VLAN's independently, which should mean that the traffic does not need to be tagged.
 
stupid question but have you setup the vlan tags on your Zyxel switch?

i dont have as massive network as yours, but i used to use a PFsense firewall so they are similar. Currently I am using a physcial firewall connected on the same switch but the fundamental is the same. on the smart switch, I need to assign vlan tags to the ports so that the switch knows where to route the traffic. once that was done it was straight forward. however I didn't vlan the WAN connection tho. I vlaned my home subnets and setup a lot of firewall rules etc.
 
Sounds like a similar thing netgear do with port based vlans. If you can change it to 802.1q type vlan instead. Then just untag your 3 ports on their own vlan id.
 
Cheers, i worked it out that although i had created the VLAN, and assigned the ports, the ports themselves needed to be told what VLAN to use, even with untagged traffic. All sorted now. and one less switch in use, and a tidier desk. (For Now).

Cheers.
 
Back
Top Bottom