NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

sg08234's avatar
sg08234
Aspirant
Jul 26, 2023

VLAN on Netgear GS324TP

I want to span two different WLANs (based on Ubiquity-APs) both using the guest port of a Fritz!Box for Internet access. Let's say these VLANs have ID 200 and 300.

IOn my Netgear GS324TP I defined the port which connects to the guest port of the Fritz!Box as "untagged" for ID 200 and 300.

I read that "one should never have a port with more than one untagged IDs" but it works: Devices connecting to both VLANs have Internet access!?

Is this by coincidence or as designed? are there any articles covering this special case?

6 Replies

  • schumaku's avatar
    schumaku
    Guru - Experienced User

    The FritzBox is not VLAN-aware. Instead, you can have ports for the normal LAN plus one for the guest LAN port connected to dedicated VLANs. To assign these to a defined VLAN, configure these like access ports, for example

     

    First, create two VLANs, 200 and 300 as per your design

    One port for connecting the FritzBox normal LAN port [U]ntagged for VLAN 200, PVID set to 200

    A different port for connecting the FritzBox guest LAN port [U]ntagged for VLAN 300, PVID set to 300

     

    Needless to say, for the wireless access points define a trunk port carrying VLAN 200 and VLAN 300 [T]agged mapped on the access points to the two relevant SSIDs.

     

    Correct: On the same port, only one VLAN can be carried untagged for the obvious reason.

     

    PS The GS324TP is a Smart Switch, thus I'm requesting a moderator to move this thread away from managed Switch section to the appropriate Plus And Smart Switches Forum section to discuss Smart Switches (T) and Plus Switches (E), including Local and Remote Management

    • sg08234's avatar
      sg08234
      Aspirant

      Thanks for explanation! This is exactly what I understood.

      But concerning On the same port, only one VLAN can be carried untagged for the obvious reason. (which I did to span two WLANs on the guest port of the Fritz!Box): This works ( on both WLANs I have Internet access) - so: What are the obvious reasons?

      Thanks - Michael

      • schumaku's avatar
        schumaku
        Guru - Experienced User

        This is not what I had described above. The two physical ports make up different VLANs but implemented as untagged access ports each is fine. 

         

        Or do you talk of two SSIDs mapped to two tagged VLAN on the access points mapped to the same physical port? This can't work. The PVID config on the port does define to which VLAN the untagged frames will be assessed ciateed. And this can be only one.

         

        Both the guest and the normal  LAN can provide Internet access over the NAT router.

         

        Sho us some screenshots of what you have configured please.

NETGEAR Academy

Steigern Sie Ihre Fähigkeiten mit der Netgear Academy - Lassen Sie sich schulen, zertifizieren und bleiben Sie mit der neuesten Netgear-Technologie auf dem neuesten Stand!

Machen Sie mit!

ProSupport for Business

Umfassende Supportpläne für maximale Netzwerkverfügbarkeit und geschäftliche Sicherheit

Mehr erfahren