SOLVED Tplink A20 wifi security

Started by chasinreno, October 04, 2025, 08:21:59 PM

Previous topic - Next topic
October 04, 2025, 08:21:59 PM Last Edit: October 06, 2025, 04:37:35 PM by chasinreno
*** Resolved ***
I have a newly setup opnsense v25.7 running on an sophos XG 125r3 with a tplink A20 wifi (AP) on a sufficiently isolated guest port. I understand that tplink may be banned in the US because of security vulnerabilities. I'm not sure that it is true but just the same; does anyone have an opinion on the wisdom of using this wifi behind the above firewall?

OPT6/igb3 bridged to LAN (ix0)
firewall rules OPT6
BLOCK OPT6.net LAN.NET
BLOCK OPT6.net ThisFirewall
PASS OPT6.net any

Well its behind a FW and not on the edge so it doesn't change anything about how you use it.

If you are scarce about security, you should go for an AP that can run OpenWRT, as it provides continues updates and patches...

Regards,
S.
Networking is love. You may hate it, but in the end, you always come back to it.

OPNSense HW
APU2D2 - deceased
N5105 - i226-V | Patriot 2x8G 3200 DDR4 | L 790 512G - VM HA(SOON)
N100   - i226-V | Crucial 16G  4800 DDR5 | S 980 500G - PROD

Thank you for the reply.
I did check out OpenWRT on the tplink wifi and it's not supported. I do have several older APs and will look into OpenWRT on one of them.

Good advise,
Thanks

If for some reason you would look for a new or an supported OpenWRT router/AP I can advice

https://openwrt.org/toh/asus/rt-ax53u

I run this one + a lot other people I advised it. Its a solid device with good enough resources. If you set it to dumpAP mode it will not have problem with VLAN tagging per several SSIDs.

Regards,
S.
Networking is love. You may hate it, but in the end, you always come back to it.

OPNSense HW
APU2D2 - deceased
N5105 - i226-V | Patriot 2x8G 3200 DDR4 | L 790 512G - VM HA(SOON)
N100   - i226-V | Crucial 16G  4800 DDR5 | S 980 500G - PROD