NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
Retired_Member
Mar 05, 2021WAX610 intermittent client connection issues
Hello! I have a WAX610 for my home WAP (along with a couple Insight switches as well). The last month or two I've had a number of strange issues with the WAP. My router is a pfSense router. When I...
Retired_Member
Mar 06, 2021As I've been looking at my setup more I'm realizing I probably have the VLAN tagging wrong on my switches. I've got an image below showing how everything is tagged for VLAN 50/connected to each other via wiring in my apartment.
netgear28 is in my 12U server rack.
netgear08 is in the patch panel in the bedroom closet in my apartment (weird layout, but I'm working with what I've got).
netgear10 is under my TV to connect all the stuff there via ethernet.
netgear28 port 6 connects to netgear08 port 1 via the wall outlet wiring.
netgear08 port 2 connects to netgear10 port 1 via the wall outlet wiring.
netgear08 port 6 connects to the WAP via the wall outlet wiring.
Netgear28 connects to my pfSense router with ports 1-4. Port 1 connects to OPT1 in pfsense, which is what I have VLAN50 (the untrusted VLAN) assigned to. I did that so I can have some easier graphing of what's running over the VLAN. Port 2 is OPT2, currently unused. Port 3 is the pfsense LAN port, and port 4 is that server's IPMI port. My cable modem plugs straight into the 4th NIC (assigned to WAN) on the router.
For VLAN 1 (Management), every port on all the switches are set as access ports.
For VLAN 50 (Untrusted), I set it up as pictured below, trunking each of the switch interconnects. I also set a couple access ports on netgear10 and one on netgear28 for ethernet'd devices I'd rather have running on the Untrusted network. I set the port my laptop dock plugs into as a trunked port for VLAN 50 so when I dock my personal laptop it's on VLAN 1, but when I dock my work laptop I can set it's VLAN ID for it's network device to VLAN 50.
I believe my problem may be the fact that VLAN1 is only set as access ports on all ports. I imagine what I need to do is go thru and tag the same ports as trunk ports for VLAN1 as I have on VLAN50, as those ports are essentially just switch interconnects and all switches are potentially carrying both VLANs. I haven't done this yet since, up until recently, everything was working fine and I don't know why it would suddenly start to break.
Thoughts?
Related Content
NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!