I bought an Asus RT-AX86U to replace my Apple Time Capsule (TC). I have a home office and enough extra requirements that I have a separate router and network switch, so I was using the TC in bridge mode. One of the things I liked about the Apple device is that the guest network was tagged with VLAN ID 1003, so I was able top set up network isolation and special rules for the guest network by filtering traffic based on the VLAN ID.
I would like to do the same thing with the Asus, using the official Asus firmware (in part because I want official support for Time Machine on an external drive), but it does not have GUI access to set up a VLAN ID on the guest networks. I want to set that up, and I am OK with doing it via scripts or command line, but I have not found quite all the information I need. I read these threads:
What I Want
I have the Asus set up in Access Point (AP) mode using the official Asus (USA) firmware. All the Wireless traffic goes out the WAN port to my Router. What I want is the traffic from guest networks to be tagged with a VLAN ID indicating which guest network the traffic came from. I want traffic from the non-guest networks to remain untagged, or, failing that, be tagged with a different VLAN ID.
What I Think I am Missing
I do not want to use open source firmware.
Please answer or provide links to answers for any or all of my questions. Thank you.
I would like to do the same thing with the Asus, using the official Asus firmware (in part because I want official support for Time Machine on an external drive), but it does not have GUI access to set up a VLAN ID on the guest networks. I want to set that up, and I am OK with doing it via scripts or command line, but I have not found quite all the information I need. I read these threads:
- Guest Network in Access Point Mode
- Handling Tagged VLAN on a AC86U
- RT-86U - vlanctl & ethctl usage puzzle
What I Want
I have the Asus set up in Access Point (AP) mode using the official Asus (USA) firmware. All the Wireless traffic goes out the WAN port to my Router. What I want is the traffic from guest networks to be tagged with a VLAN ID indicating which guest network the traffic came from. I want traffic from the non-guest networks to remain untagged, or, failing that, be tagged with a different VLAN ID.
What I Think I am Missing
- I do not know how to map Guest Network SIDs to interfaces on the Asus OS.
- I do not understand the role of Bridges in the Asus OS.
- I do not know the interaction between VLAN IDs and bringing and routing on the Asus.
I do not want to use open source firmware.
Please answer or provide links to answers for any or all of my questions. Thank you.