I got access again, no harm done. Added the parent and running all vlans over sfp+. Still looking for my AP, its still in hiding..
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
Show posts MenuQuote from: Patrick M. Hausen on Today at 05:37:30 PMQuote from: Hemhems on Today at 05:34:06 PMI have tagged vlan 10-20-30-99 on mikrotik ether 2 and they all work fine, but have no mgmt access it at the moment. Setup vlans and "open" ssid on my Grandstream 7665 prior, and LAN had it accessible through dhcp before..
I do not quite understand but to get management access configure an IP address on some untagged port and connect your management PC to that at first. You can also configure the bridge itself on the Mikrotik as untagged for the VLAN that is your management network and configure a DHCP client for that.
All more Mikrotik than OPNsense questions it seems to me, honestly.
Quote from: Patrick M. Hausen on Today at 05:23:42 PMYou need to configure a port on the Mikrotik as untagged VLAN 10 (? that what your AP should be in?) and connect the AP there. On the link between Mikrotik and OPNsense VLAN 10 should be tagged. Same for all VLANs.
Quote from: Patrick M. Hausen on Today at 05:17:38 PMYou don't need a bridge on OPNsense. OPNsense is not a switch like the Mikrotik. Just set all VLAN interfaces with the SFP+ as parent. What would you need a bridge for? Then plug in Mikrotik trunk port.
Quote from: Patrick M. Hausen on Today at 04:49:21 PMYou can of course place all your VLANs on a single SFP+ port. Just make sure not to assign the untagged port itself to anything like "LAN" or "OPT1" and use tagged VLANs only. Then do the same on the switch - all VLANs tagged for the trunk port. If the switch insists there must be a "native VLAN" or "PVID", use something unused like 999 or so.
Quote from: Greg_E on Today at 04:40:26 PMSince you have many ports, I would start from a fresh config, and set one of the 2.5g ports to be a "management" port that doesn't have any of your vlans. Connect a computer directly to that port and use it to set up the trunked vlans and wan on your other ports, this might allow you to skip setting up a bridge.
Or I'm not understanding what you want to do, which is possible.