Wednesday, July 17, 2019

Looking for advice on VLANs and AP setup

Hi all, I am looking for advice on the best approach to take on a project I have volunteered to help with. Background We have a small caravan setup where customers can rent a caravan and stay with us to relax and unwind. We have 6 caravans in total, each having their own T-link AP where, during their stay, they can connect to the wi fi and use our internet. Up until now all networking has been done by a 3rd party engineer who has become unreliable at best. I have recently decided to get more involved as I now have more time and need to get this more secure!

Aim We have 6 caravans which are in close proximity, but separately have an AP in each van. I would like to implement a more secure setup in terms of how the wireless networks are configured. Each van has its own Wi Fi AP and should not be able to connect to devices on other APs(the other 5). Each van will hold either a group of friends or members of the same family so each AP needs to function as if the customers were on their home internet. But not be on the same LAN as their neighbour! Currently it’s a bit of a mess as each van as a t-link AP which all connect to a main AP connected to a Draytek router, which in turn connects wirelessly to an AP some distance away where the main router/ internet(gateway), supply exists. Currently these individual APs have the DHCP server on as well as the main router(gateway) handling DHCP. We have no passwords for the APs in each room and no password for the draytek where these APs connect too!! So right mess! Seems this engineer wants to be in control while not being around to actually provide support. And let’s not go there on the multiple DHCP server setup!

Clearly to get control and have any hope of configuring this network, the APs and draytek will need factory resetting and setup fresh!

I am more than capable of resetting this kit and resetting up the config as it is, minus the multiple DHCP servers. However I would like to introduce a better level of security between the devices in each van.

I’d like to setup vlans so that each van/ AP has its own VLAN but still talks back to the draytek AP to get it’s internet.

It looks like I might have to get a new switch/ router to replace the draytek as downtime is going to be an issue, so I can’t really go wading in and reset the draytek to start configuration changes as the setup may take longer that anticipated and I can’t risk the customers being down for long periods.

So is it possible to get some advice on VLAN setup and can you recommend a suitable replacement for the draytek router? We have a Draytek Vigor 2820vn which has 2 t-link CPE210 APs plugged in. One to supply the vans and the other receives signal from the main gateway/ router.

Sorry for long post but felt detail was important.

Really hope you can help!

~Thanksrepoc



No comments:

Post a Comment