Home Network | Preparation

Started by Izanami, August 27, 2023, 01:53:19 AM

Previous topic - Next topic
Currently I'm stuck with AT&T 500 Fiber, utilizing their BGW320-505 Modem/Router Gateway Device.

My goal is to setup OPNsense on a N100 Appliance to sit behind the BGW320 Gateway, using a 5-port TP Link Smart Managed Switch & EAP620HD AP to give Wifi access to the rest of the devices in my home.

Hardware List:

"Barebones" N100 unit here:
https://www.aliexpress.us/item/3256805482073699.html?spm=a2g0n.productlist.0.0.1850263fxK2dx1&browser_id=816de12586f74033a8a197c296c52431&aff_platform=msite&m_page_id=puhyysaagcardzqx18a2fc5a7ee113ec3f4b1b1694&gclid=&pdp_npi=4%40dis%21USD%21229.20%21119.18%21%21%21229.20%21%21%40211bc2a016930185973622277d07a1%2112000033953188056%21sea%21US%212748491881%21A&algo_pvid=7ed4c822-80c2-45ec-a96f-c0539127ee1b

Added the following upgrades to the appliance:

1x 970 1Tb M.2 (Samsung)- https://www.amazon.com/gp/product/B07MFZY2F2/ref=ppx_yo_dt_b_asin_title_o02_s00?ie=UTF8&psc=1

1x 32Gb DDR5 4800Mhz Ram
https://www.amazon.com/gp/product/B09RVNMGFH/ref=ppx_yo_dt_b_asin_title_o02_s00?ie=UTF8&psc=1

Network:

1x 5 Port TP Link PoE Smart Managed Switch
https://www.amazon.com/gp/product/B0BWSWLV7L/ref=ppx_yo_dt_b_asin_title_o00_s00?ie=UTF8&psc=1

1x TP Link EAP 620HD AP
https://www.amazon.com/gp/product/B09WV3X1N7/ref=ppx_yo_dt_b_asin_title_o01_s00?ie=UTF8&psc=1

Two video tutorial resources I'll be using:

1. Setup BGW320 in "Passthrough Mode" (https://www.youtube.com/watch?v=aShbl1JZMx8)
2. Install & Setup OPNsense on Topton N100 Appliance(https://www.youtube.com/watch?v=54JWsGedXpo (4-Part Video Series)

Network Topology/Specifications:

1. "Trusted" VLAN(10) for most of the computers, laptops, phones in home.
2. "Untrusted" VLAN (20) for IoT devices, TVs ect.
3. "Guest" VLAN(30) for any temporary devices
4. "Management" VLAN (40) to access OPNsense, Switch, and Router Interfaces?
5. "Lab" VLAN (50) For everything else I may dork around with.

*Will need to be able to setup Wireguard VPN Server w/ Surfshark to Route either by device or VLAN potentially. Im hesitant to route all of VLAN(10) through.

*Will need to setup ZenArmor & AdGuardHome

--This is more or less serving as a way to organize my thoughts, receive constructive feedback & suggestions as I drive myself and my family nuts implementing this :D