
Hi,
I would like to be able to segregate the devices in Red onto a separate VLAN and ideally be able to access them (ping them from Nagios running on a RPi) from the main LAN (ie initiate connections Green to Red but not be able to initiate connections from Red to Green). There is currently one Cat6 cable between 192.168.1.1 and 192.168.1.101 however there is another connection already wired up from living room to loft (and 2 more in the wall not connected).
So simplistically I believe a port based VLAN with a second network for the segregated devices would be sufficient with some firewall rules if I connected up the second cable between 192.168.1.1 and 192.168.1.101, however I would like the ability in the future to be able to further segregate or set up a wireless guest network so would if I am correct in my understanding it would be better to have a 802.1q VLAN and trunk all the VLANs from living room to loft and then split out as appropriate.
My current WRT160NL router does not support this.
It looks like an Edgerouter X would do the job and in collaboration with my Netgear managed switch would hopefully be sufficient to do what I want. I would then re-purpose the WRT160NL as an AP on the main network in the short-mid term.
Does this sound reasonable? I am just getting to grips with VLANs and the like.
I am not in a particular rush and keep on reading here that EdgeRouter/USG etc are all due a refresh.
Many thanks
Last edited: