NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

secdoc's avatar
secdoc
Aspirant
Jul 10, 2023

Orbi pro wifi 6 (SXK80) can't do separate vlans in ap mode

I have installed the Orbi Pro Wifi 6 systems and have them in AP mode. I tried following or using the below solution as the mechanism to take/use the existing VLANs on my network.

 

https://community.netgear.com/t5/Orbi-Pro-WiFi-for-Small-Business/Orbi-pro-wifi-6-SXK80-can-t-do-separate-vlans-in-ap-mode/m-p/1977233#M2413

 

Using the reference, I still have issues getting the system to:

 1 - Get the VLANs to be assigned to the associated physical interfaces/SSIDs

 2 - When configured, the attached devices do not get DHCP addresses from the DHCP server and get APIPA addresses

 

Is there an actual manual on configuring dot1q in AP mode? or a step by step guide?

 

Current Configuration:

Netgear Orbi Pro Firmware: V4.2.3.102

FW/Router Version: OPNsense 23.1.11-amd64

Mikrotik 10G switches

 

10 Replies

  • Hi secdoc ,

     

    Could you please share your netwrok topology ,

    Since Orbi pro in AP mode . We need upper router which is running dhcp servers for defined Vlan's at orbi (which is in AP mode).

    Other way put Orbi pro in Router mode , define vlan's Orbi has options to run dhcp servers in Router mode.

     

    Thanks,

    Basavaraj

    • BasuKhodanapur's avatar
      BasuKhodanapur
      Apprentice

      Adding to above vlan isolation enable/disable can be done at upper router -where dhcp servers are running.

       

    • secdoc's avatar
      secdoc
      Aspirant

      ere

      Here is a basic layout of the network. I can get DHCP allocated IPs only when I specify the port on the switch is untagged VLAN assignments. If I treat the interface as a typical trunk port, the APs do not pass the VLANs or the DHCP communication even when I apply the VLAN Profile.

      • schumaku's avatar
        schumaku
        Guru - Experienced User

        secdoc wrote:

        If I treat the interface as a typical trunk port, the APs do not pass the VLANs or the DHCP communication even when I apply the VLAN Profile.


        For dhcp (aka bootp) the systems requesting dhcp have to do this on a native, untagged network. A switch (or for the sake an Orbi satellite or router) properly configured as an access port (with the pvid configured to associate the expected VLAN) will be able to forward the dhcp request. Direct on a trunk port, you can't connect any system and expect it to do bootp/dhcp request.  Needless to say, eg. your security appliance must be configured to handle dhcp, too.

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More