NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
davidcheok
Sep 18, 2019Apprentice
Orbi Pro Firmware update - V2.4.0.114
Just updated the firmware to the latest today. Nothing seems to have changed. 1) 2nd Wifi still gives a third open SSID (initially seems to work but 3rd open ssid appeared again after some time) 2...
- Sep 19, 2019
1) 2nd Wifi still gives a third open SSID (initially seems to work but 3rd open ssid appeared again after some time)
Did you see the issue on 2.3.5.108? then update FW to 2.4.0.114, still see the issue,
if you see the issue on 2.3.5.108, then update to 2.4.0.114, but config don't change after update, so the issue still happen on 2.4.0.114,
Please disable WiFi 2 and Enagle again on 2.4.0.114, it won't see the issue again,
We will fix it in next maintance release.
schumaku
Sep 18, 2019Guru - Experienced User
davidcheok wrote:3) VPN access puts me on a different subnet (one lower) to my internal network so I cant see nor access my network which defeats the purpose
TAP vs. TUN ... FMI: https://community.openvpn.net/openvpn/wiki/BridgingAndRouting
- davidcheokSep 18, 2019Apprentice
FMI: https://community.openvpn.net/openvpn/wiki/BridgingAndRouting
That looks like a workaround for a workaround for a workaround. Is it so difficult to do things so that when we open a vpn connection into our network, we get an ip on our subnet? The wireless gives me the opposite problem when i want a separate network for the guest ssid, it allocates ips from my private subnet. Apple's airport extreme did it perfectly with no fuss and no hassle. Here we are given hoops and loops to jump through just to get something to work right. Ive also worked with flashing ddwrt too and those are easy enough to do too without resorting to writing scripts.
- davidcheokSep 18, 2019ApprenticeMoment you turn on the second ssid, looks fine.
- davidcheokSep 18, 2019ApprenticeOne minute later
- schumakuSep 18, 2019Guru - Experienced User
davidcheok wrote:FMI: https://community.openvpn.net/openvpn/wiki/BridgingAndRouting
That looks like a workaround for a workaround for a workaround.
No workaround - well, not for the Netgear side. These are two options available to configure the OpenVPN. The point is that not all OpenVPN clients (platforms) are supporting the direct bridging - iOS and non-rooted Android don't offer this for example. Regardess, even if the VPN does use a dedicated routed subnet for the connection, the LAN subnet should be reachable, too.
davidcheok wrote:The wireless gives me the opposite problem when i want a separate network for the guest ssid, it allocates ips from my private subnet.
Unless something basic was changed on the Orbi and specifically Orbi Pro model line, indeed the same IP subnet is used for all SSIDs. There is no VLAN isolation with routing for multiple subnetworks. Netgear does only deploy some L2 isolation for the guest network.
- davidcheokSep 18, 2019ApprenticeIts not a prudent policy to put unknown clients on your company network. Doing so simply invites potential hacks and with the large variation of malware out there infesting various o/ses, it would be a matter of time one propagates into an internal client. I would think it would be a simple job to create say separate private network to host these 'guests' especially since your guest ssid is unsecured. Dont know but thats just my logic.
Related Content
NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!