Posted: Sat Feb 17, 2018 13:33 Post subject: VLAN help
Hi all,
I'm rather struggling to set up VLANs properly, having had to factory reset DD-WRT three times now I'm asking for some much needed help!
Firstly, my setup and what I am trying to achieve:
pfSense -> Netgear R7000 DD-WRT (access point / switch only)
I have created four VLAN's on the LAN interface of pfSense
VLAN11
VLAN12
VLAN13
VLAN14
I have five ports on my R7000 including the WAN. Three ports are used for network devices and I would like to tag a VLAN to each of those, one port is used to connect to pfSense, and I have 1 port spare for future expansion. I have also created two new SSID's so I have a total of 3 SSIDs which will all be on separate VLANs
I'm rather confused by what exactly I need to specify in the Setup -> VLANS and the Setup -> Networking to get this to work. Would really appreciate help getting me on track
Joined: 13 Aug 2013 Posts: 6868 Location: Romerike, Norway
Posted: Sat Feb 17, 2018 17:50 Post subject:
There is no traces of VLAN 11-14 here. Did you set it up on the VLAN tab?
nvram set vlan11hwname=`nvram get vlan1hwname`
nvram set vlan12hwname=`nvram get vlan1hwname`
nvram set vlan13hwname=`nvram get vlan1hwname`
nvram set vlan14hwname=`nvram get vlan1hwname`
nvram set vlan1ports="1t 2t 3t 4 5"
nvram set vlan11ports="1t 2t 3t 5"
nvram set vlan12ports="1t 2t 3t 5"
nvram set vlan13ports="1t 2t 3t 5"
nvram set vlan14ports="1t 2t 3t 5"
pfSense connected on port 1, and I'd probably keep WAN port free for doing diagnostic directly with the dd-wrt router (if possible). port 2, 3, 4 have devices on my LAN
Joined: 13 Aug 2013 Posts: 6868 Location: Romerike, Norway
Posted: Sun Feb 18, 2018 22:05 Post subject:
The ports are labelled backwards, so port labelled 1 is port 4 in the chip. Port 0 is the WAN (not assigned to any VLAN in your screenshot). I have set it to VLAN1.
nvram set vlan11hwname=`nvram get vlan1hwname`
nvram set vlan12hwname=`nvram get vlan1hwname`
nvram set vlan13hwname=`nvram get vlan1hwname`
nvram set vlan14hwname=`nvram get vlan1hwname`
nvram set vlan1ports="0 1 2 3 4t 5"
nvram set vlan11ports="4t 5"
nvram set vlan12ports="4t 5"
nvram set vlan13ports="4t 5"
nvram set vlan14ports="4t 5"
nvram commit
reboot
So if I run these commands, it will overwrite the config in the GUI? And then will I be able to access the DD-WRT through WAN port still incase things go wrong, to save me from doing hard reset with reset button?