NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
gdlgiii
Jan 01, 2018Tutor
Update home network for IoT and private devices
Using a Netgear R8000 Nighthawk router, I would like to connect 2 GS108Tv2 switches to support 2 VLANs. I want to separate the computers, phones, tablets from the Arlo Cameras, Google Home, Chromecas...
- Jan 01, 2018You should set the default VLAN for an untagged port to the VLAN that you want untagged traffic received on that port to be mapped to. So that means the default VLAN for the ports connected to the HTPC, PC, NAS and RPi3 should be set to the private VLAN. And the ports for your IoT devices should have their default VLAN set to the IoT VLAN.
TheEther
Jan 01, 2018Guru
gdlgiii wrote:
So, if I obtain an Ubiquiti EdgeRouter Lite, I could possibly do this?
Yes, an Edgerouter Lite would work. I have one and it's great.
Thinking of devices that are not VLAN aware, perhaps it would be best to set the default vlan to the new IoT (vlan50) vlan on untagged ports?
What are you trying to accomplish with this?
I sent an different layout. I don't think I will have funds to purchase the netgear AP and will need to repurpose netgear routers.I have 1 R8000 and 2 R7000 routers I could use as APs for their respected vlan I would think.
Looks like your new layout just has the R8000 swapped out with an Edgerouter, but it still shows the WAC730. Anyway, you can certainly use the R8000 and R7000 as APs and place each one in a different VLAN.
gdlgiii
Jan 01, 2018Tutor
I forgot to remove the WAC730 AP from the diagram. My goal for this is to separate private network traffic from IoT traffic while repurposing some existing hardware. I am trying to keep it somewhat simple while keeping a secure environment.
- TheEtherJan 01, 2018GuruI understand, but I don't know what's your rationale about setting untagged ports to default to the IoT VLAN?
- gdlgiiiJan 01, 2018TutorMy thinking (if I'm correct) was to use the untagged ports to connect the Arlo camera base stations to since they do not support vlans.
Keeping the IoT vlan as default vlan for untagged ports would work best I believe to keep that traffic separate from the private network.- TheEtherJan 01, 2018GuruBut don't you also want to put other devices, like your PC and NAS in the private VLAN? The procedure would be similar. You would mark the port as untagged but you would, instead, set the default VLAN to the private VLAN.
The way you phrased it made it sound like you were going to put all untagged ports into the IoT VLAN, regardless of the device.
Related Content
NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!