...I used a dashed line to indicate the part of the topology I don't know how to configure.
Clearly I'm messing something up, but I'm not sure what.
root@OpenWrt:~# cat /etc/config/network
..."Did you also added the AP management VLAN ID (7) and both VLAN ID's for the wireless networks at the switch uplink port (tagged) towards OPNsense ?"This I don't understand. I'm sorry.
If I factory reset the OpenWRT device then change its primary IP to 10.0.7.2 and plug it into the "access point" port, I can ping it from OPNsense, but not from desktop, even with an allow CORE to any rule (desktop is on CORE) at the top of my rule list.
OMG, the ping is actually working from desktop after adding the default gateway. Very happy to finally see this haha. I was going a bit insane yesterday.
I supposed this is besides the point now, Ok, back to relevant things..
If I set the firewall zone to unspecified, I lose connection. So I'm not really sure what to do about that.I have some sense of what's next, probably setting the VLANs up in the "Switch" menu of OpenWRT and fixing this firewall zone thing, but maybe I'll let you spell it out so I don't go down the wrong path here. Thanks very much for getting me to the point of actually being able to ping the device.