Hello,I am running OPNsense 22.7.10_2-amd64 on a desktop with three NIC cards: WAN, LAN (192), and LAN02 (172). I have to abandon this setup and switch to a laptop.I understand that instead of using USB Ethernet adapters it's better to setup VLANs with a managed switch (https://forum.opnsense.org/index.php?topic=9363.msg42382#msg42382) like the TP-Link TL-SG10 series.Setting up VLANs on OPNsense itself seems straightforward enough. I've looked at screenshots of the TL-SG10 configuration interface and read up a bit on the topic of VLANs (https://www.theregister.com/2017/06/30/vlans_at_20/).Traffic flow should be something like this I believe:Internet > Modem > Switch port 1 (WAN) > Switch port 2 (LAN) & port 3 (LAN02)This seems straight forward enough but for some reason I still struggle on how to get this to work. I was hoping that someone in particular who is familiar with TL-SG10s can help to get this fast tracked.Thank you very much
What is the model number of your TP-Link? Make sure it ends in 'E', such as the TL-SG108E. They have a few unmanaged switches in the same price range with similar model numbers.
I found this video helpful. Netgear GS108Ev3 Review and Setuphttps://www.youtube.com/watch?v=VY6WPrMZjykIf you are about to buy a switch, don't just pick one with enough ports to satisfy your immediate use case. With VLANs this is specially true. I made this mistake myself by buying a 5 port Netgear GS105Ev2. You'll outgrow a switch faster than you think.
Post pics of the 802.1q and pvid pages in the switch and interfaces/vlans from the router.
VLAN ID 555, VLAN Name WAN, under Untagged tick your WAN modem switch port 1 and under tagged tick your OPNsense laptop port 2, click Add/ModifyVLAN ID 172, VLAN Name LAN02, under Untagged tick the devices/AP's that have 172 addresses, click Add/ModifyVLAN ID 192, VLAN Name LAN, under Untagged tick the devices/AP's that have 192 addresses, click Add/Modify
Don't use vlan1 on any ports.
Yes, set vlan ID1 as not a member of any ports in the switch.Just like the pic I posted.
Are you sure you should get a public address?