NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
secdoc
Jul 10, 2023Aspirant
Orbi pro wifi 6 (SXK80) can't do separate vlans in ap mode
I have installed the Orbi Pro Wifi 6 systems and have them in AP mode. I tried following or using the below solution as the mechanism to take/use the existing VLANs on my network.
Using the reference, I still have issues getting the system to:
1 - Get the VLANs to be assigned to the associated physical interfaces/SSIDs
2 - When configured, the attached devices do not get DHCP addresses from the DHCP server and get APIPA addresses
Is there an actual manual on configuring dot1q in AP mode? or a step by step guide?
Current Configuration:
Netgear Orbi Pro Firmware: V4.2.3.102
FW/Router Version: OPNsense 23.1.11-amd64
Mikrotik 10G switches
10 Replies
- BasuKhodanapurApprentice
Hi secdoc ,
Could you please share your netwrok topology ,
Since Orbi pro in AP mode . We need upper router which is running dhcp servers for defined Vlan's at orbi (which is in AP mode).
Other way put Orbi pro in Router mode , define vlan's Orbi has options to run dhcp servers in Router mode.
Thanks,
Basavaraj
- BasuKhodanapurApprentice
Adding to above vlan isolation enable/disable can be done at upper router -where dhcp servers are running.
- secdocAspirant
ere
Here is a basic layout of the network. I can get DHCP allocated IPs only when I specify the port on the switch is untagged VLAN assignments. If I treat the interface as a typical trunk port, the APs do not pass the VLANs or the DHCP communication even when I apply the VLAN Profile.
- schumakuGuru - Experienced User
secdoc wrote:
If I treat the interface as a typical trunk port, the APs do not pass the VLANs or the DHCP communication even when I apply the VLAN Profile.
For dhcp (aka bootp) the systems requesting dhcp have to do this on a native, untagged network. A switch (or for the sake an Orbi satellite or router) properly configured as an access port (with the pvid configured to associate the expected VLAN) will be able to forward the dhcp request. Direct on a trunk port, you can't connect any system and expect it to do bootp/dhcp request. Needless to say, eg. your security appliance must be configured to handle dhcp, too.
Related Content
NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!