Quote from: ednt on Today at 10:23:20 AMBut still, it should also work with a DHCP address on that interface.IMHO that should always be a Backup Configuration and not the Primary Configuration.
Quote from: meyergru on Today at 09:16:42 AMYou also can do "all tagged" on Unifi APs and switches as well, but the default is that they normally expect their management VLAN to be untagged, so adopting a new one in an otherwise "all tagged" network setup would require a special "adoption port" on the switch and after adoption, you would have to move the AP.Using TAGGED for Management Network purposes in combination with Ubiquiti UniFi products IMHO falls in this category too :
Quote from: dseven on Today at 08:34:34 AMand accept that you'll burn in hell for itLOL! :P
Quote from: danman on Today at 06:54:25 AMExactly that -> `Setting the correct Management IP Address for the webGUI of the Switch?`OK, then you need to do this :
QuoteHowever... in some cases... you need to also add one Untagged VLAN in order to have a Management IP Address for Switches and Accesspoints and this subnet comes from a seperate Untagged NIC in the case of OPNsense as I was trying to explain to your earlier on !!There are two ways it can be done :
QuoteI dont understand. So do you mean other ports on the opnsense device should be used only for different switches/APs?No, this is all because of the whole "Don't mix UNTAGGED and TAGGED on a Single FreeBSD NIC Interface" issue so you have to work your way around it by using 1 Switch Port for UNTAGGED Management Network Traffic and 1 Switch Port for TAGGED VLAN Networks Traffic ;)Quote- Pick any of the available NICs for a new Interface and just leave it Enabled but without any IP Address configuration.Are you talking particular about that?
QuoteI just wanted to mentioned that the tagged from opnsense (port 1 - igc1 VLANs) -> switch (port 5 only TAGGED) -> openwrt (wan port TAGGED and untagged) works so far.NICE! :)
QuoteWell, I thought PVID takes care to tell opnsense that this switch would like to go with VLAN 25 but this seems to be not the case so I think the only option is to use a static IP address.It's a matter of the device you are connect to your network :
QuoteI've also a few proxmox server and other switches etc I'll see how that will work.The Switches configuration depends on what they like as mentioned above.
I think on proxmox for example I had to set up IPv4/CIDR which should take care of that.
QuoteMaybe, I was just lucky before that the switches took the right VLAN in the first place :D I'm not so familiar with VLAN, I'm not setting it up every day or even years. Once its done, its done ;)I think it's simply because OpenWRT = Linux based => You are allowed to mix UNTAGGED and TAGGED traffic on the same NIC.
QuoteI think it's more my way of thinking about all that especially the PVID is probably the key issue in my brain here :DTo be honest :
Quote from: HarveyEllis1 on Today at 01:41:16 AMI did fresh install of 26.7.1 & reloaded backup config file.OK, but could you post the exact RealTek NIC models then and which driver you are using for them ?
This was less hassle than spending more time on borked upgrade.
Quote from: NonGough on Today at 01:19:38 AMMy problem is that a website used by a Windows laptop and a Windows desktop references a domain name – dms.xxxxxx.com - generates a SERVFAIL because:What happens when you grab one of your working and not working Clients and use :
1) "all servers for this domain failed, at zone up.railway.app at [a valid IPv6 address] no server to query nameserver addresses not useable"; and per Services : Unbound DNS : Log File -
2) there is no public DNS records for the domain name – dms.xxxxxx.com – available per DNSchecker's "DNS Lookup" service (all worldwide authoritive servers including ICANN's agree on this).
Domains involved have been placed on the Services : Unbound DNS : Blocklists : Allowlist Domains to no effect.
When the Windows desktop bypasses OPNsense by directly by a dedicated use one of the AT&T Fiber's modem/firewall ports, the SERVFAIL does not occur!