Been wanting to overhaul my network for ages now. Main things i want to acheive is increased security especially concerning IOT/Smart Devices, ditch the ISP routers, im often changing ISP and constantly changing everything is annoying, and make use of the 2.5Gbe some of my devices can now do. Plus i like to tinker just never done much networking since my college days.
Router i have my eyes set on Opnsens running on one of these https://eu.protectli.com/product/vp2420/
Wifi i was thinking maybe a Unifi U7 Pro.
I have a POE switch so that will do the U7 Pro, plus another standard 1Gb switch, so at the least ill need to either replace or add a 2.5Gb switch.
VLANs are where it gets complicated for me. I want to put all the cheap smart switches and what not on one so they have zero access to the internet or my main LAN, but i still want my phones and speakers to be able to control them.
Do i need a managed switch for this? I also have a Philips Hue bridge but thats a physical connection so how to i do VLAN with that, could i do it via a physical port on the router with two cables to the switch?
Just because it different i was thinking of 10.10.1.0/24 for my main LAN full access to everything router set to 10.10.1.1, 10.10.2.0/24 for IOT stuff with no access to internet, 10.10.3.0/24 for LAN only access. Does this sound right?
Router i have my eyes set on Opnsens running on one of these https://eu.protectli.com/product/vp2420/
Wifi i was thinking maybe a Unifi U7 Pro.
I have a POE switch so that will do the U7 Pro, plus another standard 1Gb switch, so at the least ill need to either replace or add a 2.5Gb switch.
VLANs are where it gets complicated for me. I want to put all the cheap smart switches and what not on one so they have zero access to the internet or my main LAN, but i still want my phones and speakers to be able to control them.
Do i need a managed switch for this? I also have a Philips Hue bridge but thats a physical connection so how to i do VLAN with that, could i do it via a physical port on the router with two cables to the switch?
Just because it different i was thinking of 10.10.1.0/24 for my main LAN full access to everything router set to 10.10.1.1, 10.10.2.0/24 for IOT stuff with no access to internet, 10.10.3.0/24 for LAN only access. Does this sound right?
Last edited: