NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
sg08234
Jul 26, 2023Aspirant
VLAN on Netgear GS324TP
I want to span two different WLANs (based on Ubiquity-APs) both using the guest port of a Fritz!Box for Internet access. Let's say these VLANs have ID 200 and 300.
IOn my Netgear GS324TP I defined the port which connects to the guest port of the Fritz!Box as "untagged" for ID 200 and 300.
I read that "one should never have a port with more than one untagged IDs" but it works: Devices connecting to both VLANs have Internet access!?
Is this by coincidence or as designed? are there any articles covering this special case?
6 Replies
- schumakuGuru - Experienced User
The FritzBox is not VLAN-aware. Instead, you can have ports for the normal LAN plus one for the guest LAN port connected to dedicated VLANs. To assign these to a defined VLAN, configure these like access ports, for example
First, create two VLANs, 200 and 300 as per your design
One port for connecting the FritzBox normal LAN port [U]ntagged for VLAN 200, PVID set to 200
A different port for connecting the FritzBox guest LAN port [U]ntagged for VLAN 300, PVID set to 300
Needless to say, for the wireless access points define a trunk port carrying VLAN 200 and VLAN 300 [T]agged mapped on the access points to the two relevant SSIDs.
Correct: On the same port, only one VLAN can be carried untagged for the obvious reason.
PS The GS324TP is a Smart Switch, thus I'm requesting a moderator to move this thread away from managed Switch section to the appropriate Plus And Smart Switches Forum section to discuss Smart Switches (T) and Plus Switches (E), including Local and Remote Management
- sg08234Aspirant
Thanks for explanation! This is exactly what I understood.
But concerning On the same port, only one VLAN can be carried untagged for the obvious reason. (which I did to span two WLANs on the guest port of the Fritz!Box): This works ( on both WLANs I have Internet access) - so: What are the obvious reasons?
Thanks - Michael
- schumakuGuru - Experienced User
This is not what I had described above. The two physical ports make up different VLANs but implemented as untagged access ports each is fine.
Or do you talk of two SSIDs mapped to two tagged VLAN on the access points mapped to the same physical port? This can't work. The PVID config on the port does define to which VLAN the untagged frames will be assessed ciateed. And this can be only one.
Both the guest and the normal LAN can provide Internet access over the NAT router.
Sho us some screenshots of what you have configured please.
Related Content
NETGEAR Academy
Steigern Sie Ihre Fähigkeiten mit der Netgear Academy - Lassen Sie sich schulen, zertifizieren und bleiben Sie mit der neuesten Netgear-Technologie auf dem neuesten Stand!
Machen Sie mit!
ProSupport for Business
Umfassende Supportpläne für maximale Netzwerkverfügbarkeit und geschäftliche Sicherheit