I do exactly like you, but on staff port with pc, i do not get any ip address from DHCP? What could be wrong? I Have latest firmware in OC200 and SG2008p
@@harrrybailey from the software controller manual : "For Layer 2 isolation, create a network as VLAN. To realize inter-VLAN routing, create a network as Interface, which is configured with a VLAN interface."
from the software controller manual : "For Layer 2 isolation, create a network as VLAN. To realize inter-VLAN routing, create a network as Interface, which is configured with a VLAN interface."
I have watched your video a dozen times. Very helpful. But one more questions about VLANs. I have created two additional VLAN's, just like you in the video. I have the ER605 router and the TL-SG2210P Switch with 4x EAP620 Access Points. In the TL-SG2210P Switch on Omada there is a setting Config -> VLAN interfaces. It lists the three VLAN I have created, but only the default LAN is enabled. Is that OK? What does that setting do?
great video! im having a little trouble cause i dont have omada router. i setup as universal to port one, which i have plugged into lan of opnsense... also does omada show actual traffic of clients (like what sites)? im using opnsense router and using zenarmor for now. but thinking of switching to omada router.
Hello. I bought an EAP620HD V1 (20dbm) in Canada, then moved to the USA. Will the firmware from the USA help me to raise the power to 25dbm? Or are the changes only hardware, not just firmware? Because I flashed it, but the power did not change.
Do these VLANs only work when everything is connected to the controller? I need to set this up, but the router and the switch need to be completely disconnected from the internet for a demo.
Omada is great, but what is little bit confusing is naming(terminology), on ports is not trunk or tagged port, but all(meaning i think that allow all vlan) and many other confusing things....
Since the edgerouter x is sold out everywhere I was looking for an alternative. The Omada ER605 seemed like a strong candidate, but the more I read about it, the more potential issues I come accross. Can someone tell me if mDns is already supported? What I would like to do is put my Chromecast in a separate vlan but make it accessible from my main network but also my guest network.
I've followed this video and others just like it several times. No matter what I do, if I assign a switch port to a vlan and plug a device in, it does not see a DHCP server and thusly never gets an IP Address.. I get the same thing if I try to assign wireless networks to VLANS and connect to that specific wireless network. Is there an additional step I'm missing somewhere?
Did you have any issue getting the switch to show up in the controller? I got the er605, oc300 and tl-sg2210p and the switch doesn't show up ANYWHERE. arp -a, in the controller, Wireshark... Nothing!
I am using the omada 605 and a t1600 poe switch that is adopted to the controller as the router.When i add a port to the camera vlan i setup the port ip wont change...I wish i had your knowlege....Thanks
Hi All I have purchased all the same equip as Mac & followed the same settings, I have Switch Port 1 VLan10, Port 2 VLan 20, Port 3 Vlan30 but when i plug my laptop into these ports it wont connect, will not get an IP Address, BUT all other ports i get the 192.168.1.xxx address from the Controller DHCP is enabled for each Vlan It was only when I adopted by TPLink switch to the Omada Controller then my VLans began to work. On another note - I struggled to get the TPLink Omada Controller to adopt the TPLink Er605 . The network switch was a Netgear. But as soon as I swapped this to a TPLink Managed Switch I could adopt the ER605 immediately. So it's worth keeping everything TPLink and adopting all devices
Hi, having only the EAP connected to Omada Cloud Controller and without have TP-LINK SWITCHES or TP-LINK FW, can I still create a GUEST NETWORK ISOLATED (VLAN and Network IP Range)???
So what are your thoughts on how this compares to Unifi? Knowing that you just put back your dream machine back in how does this stuff stack up? Thanks
Hi. I have ER605 and OC200 and TL-SG3210XHP-M2 Switch, I have setup several vlans on omada controller and working perfectly accept for I want to make portforward or setup DDNS to access my surveillance ip camera remotely I could'nt fix that. Would kindly tell me if there is a way to resolve this issue. Thank you for your help and support.
I wish there was a little more explanation in this and not just filling in settings with arbitrary values. Doesn't really help us customize this for our own use.
I use zyxel getway firewall when omada setup vlan30 and switch select port3 = vlan30 than connect rj45 to my notebook What wrong? I see you get dhcp form port3 but i can't.
Greetings : My setup has 1) Router TL ER7206 (With 2 internet vendors) 2) Switch TL2210P 3) Various TP Link AP's like TL245 ,EAP 110b,.. 4) TP link Deco Mesh of X60 scattered around my home with ethernet backhaul. The Deco is configured as AP. 5) Two WAN connections on the Router , Primary (500 Mbps) on SFP WAN and the other as a Back Up (100 Mbps) on WAN. 6) Load balancing Weight set at 5:1 7) The set up works well if the Primary SFP WAN fails and the Back Up takes over . 8) I would like to direct all traffic on the Switch Port 3 to the Router WAN port (not the SFP WAN port) I look forward to your assistance if this can be setup. Thanks
Has anyone had issues with VLAN to VLAN connectivity? I have a strange behaviour where my VLAN1 can't access any device on VLAN172, but all devices in VLAN172 can acces both VLANs. TP Link support insist that is the device firewalls. I'm finding it difficult to believe my MacBook and Windows machine became VLAN aware out of the blue. Because everything works as expected on VLAN172 but not on VLAN1.
found it on the internets: You can write an ACL rule to deny access to the internet at the switch or EAP level. Create a group of the devices you want to block, under Settings-Profile-Group. The group can be by mac address or IP. If by IP make sure to reserve the IP addresses. Go to Settings-Network Security-Switch ACL and create a deny rule that prevents your created group from router access. This will still allow the devices to access the private lan and get an IP address, but prevents internet access.
Thanks! from FFBetania, Italy
Thanks for the super chat :)
Looking forward to the 3rd and 4th parts of this series
I'm really looking forward to this video series. I hope you release the other parts soon.
Life saver. Thank you for the video.
I do exactly like you, but on staff port with pc, i do not get any ip address from DHCP? What could be wrong? I Have latest firmware in OC200 and SG2008p
Why did you choose Interface as the purpose when there was a VLAN option? What's the difference?
Also curious about this
@@harrrybailey from the software controller manual : "For Layer 2 isolation, create a network as VLAN. To
realize inter-VLAN routing, create a network as Interface, which is configured with a VLAN
interface."
from the software controller manual : "For Layer 2 isolation, create a network as VLAN. To
realize inter-VLAN routing, create a network as Interface, which is configured with a VLAN
interface."
Part 3 plsss.
Bro thank you so much for this video.
I have watched your video a dozen times. Very helpful. But one more questions about VLANs.
I have created two additional VLAN's, just like you in the video. I have the ER605 router and the TL-SG2210P Switch with 4x EAP620 Access Points.
In the TL-SG2210P Switch on Omada there is a setting Config -> VLAN interfaces.
It lists the three VLAN I have created, but only the default LAN is enabled.
Is that OK?
What does that setting do?
great video! im having a little trouble cause i dont have omada router. i setup as universal to port one, which i have plugged into lan of opnsense...
also does omada show actual traffic of clients (like what sites)? im using opnsense router and using zenarmor for now. but thinking of switching to omada router.
Is it possible to assign VLANs to Ports on the ER605 Gateway, or are you only able to on switches?
Hello. I bought an EAP620HD V1 (20dbm) in Canada, then moved to the USA. Will the firmware from the USA help me to raise the power to 25dbm? Or are the changes only hardware, not just firmware? Because I flashed it, but the power did not change.
Do these VLANs only work when everything is connected to the controller? I need to set this up, but the router and the switch need to be completely disconnected from the internet for a demo.
Omada is great, but what is little bit confusing is naming(terminology), on ports is not trunk or tagged port, but all(meaning i think that allow all vlan) and many other confusing things....
has a part 3 been created? I cant find it
Since the edgerouter x is sold out everywhere I was looking for an alternative. The Omada ER605 seemed like a strong candidate, but the more I read about it, the more potential issues I come accross.
Can someone tell me if mDns is already supported? What I would like to do is put my Chromecast in a separate vlan but make it accessible from my main network but also my guest network.
I have a question - I am unable to see my TL-SG108PE switch in my omada controller - I have even updated the firmware.
It is not omada capable switch, just a smart switch.
I've followed this video and others just like it several times. No matter what I do, if I assign a switch port to a vlan and plug a device in, it does not see a DHCP server and thusly never gets an IP Address.. I get the same thing if I try to assign wireless networks to VLANS and connect to that specific wireless network. Is there an additional step I'm missing somewhere?
Did you have any issue getting the switch to show up in the controller? I got the er605, oc300 and tl-sg2210p and the switch doesn't show up ANYWHERE. arp -a, in the controller, Wireshark... Nothing!
I am using the omada 605 and a t1600 poe switch that is adopted to the controller as the router.When i add a port to the camera vlan i setup the port ip wont change...I wish i had your knowlege....Thanks
Hi All
I have purchased all the same equip as Mac & followed the same settings,
I have Switch Port 1 VLan10, Port 2 VLan 20, Port 3 Vlan30
but when i plug my laptop into these ports it wont connect, will not get an IP Address,
BUT all other ports i get the 192.168.1.xxx address from the Controller
DHCP is enabled for each Vlan
It was only when I adopted by TPLink switch to the Omada Controller then my VLans began to work.
On another note - I struggled to get the TPLink Omada Controller to adopt the TPLink Er605 . The network switch was a Netgear. But as soon as I swapped this to a TPLink Managed Switch I could adopt the ER605 immediately.
So it's worth keeping everything TPLink and adopting all devices
Hi, having only the EAP connected to Omada Cloud Controller and without have TP-LINK SWITCHES or TP-LINK FW, can I still create a GUEST NETWORK ISOLATED (VLAN and Network IP Range)???
Hello will you do a video on setting up vpn's for different lan ports/separate networks?
So what are your thoughts on how this compares to Unifi? Knowing that you just put back your dream machine back in how does this stuff stack up?
Thanks
It’s good for homes and small business. Still missing some major features like mdns etc but for the price point it’s good
I already setup ACL rules but devices in different VLANS and different subnets can still communicate/ping with each other on ER605
Any solution you found
Any plans for part 3??
Bro I have a question can I also change the physical port of my router tl er605 into specific vlans?
Hey you can
@@MactelecomNetworks Thanks bro
Hi. I have ER605 and OC200 and TL-SG3210XHP-M2 Switch, I have setup several vlans on omada controller and working perfectly accept for I want to make portforward or setup DDNS to access my surveillance ip camera remotely I could'nt fix that. Would kindly tell me if there is a way to resolve this issue. Thank you for your help and support.
I wish there was a little more explanation in this and not just filling in settings with arbitrary values. Doesn't really help us customize this for our own use.
I use zyxel getway firewall when omada setup vlan30 and switch select port3 = vlan30 than connect rj45 to my notebook What wrong? I see you get dhcp form port3 but i can't.
Greetings : My setup has
1) Router TL ER7206 (With 2 internet vendors)
2) Switch TL2210P
3) Various TP Link AP's like TL245 ,EAP 110b,..
4) TP link Deco Mesh of X60 scattered around my home with ethernet backhaul. The Deco is configured as AP.
5) Two WAN connections on the Router , Primary (500 Mbps) on SFP WAN and the other as a Back Up (100 Mbps) on WAN.
6) Load balancing Weight set at 5:1
7) The set up works well if the Primary SFP WAN fails and the Back Up takes over .
8) I would like to direct all traffic on the Switch Port 3 to the Router WAN port (not the SFP WAN port)
I look forward to your assistance if this can be setup.
Thanks
Is it possible to assign multiple VLANs to a single port?
Yup it is
From the controller when selecting the port, a pull down let's you select a single LAN profile. Doesn't seem to be possible to select multiple.
You need to create a profile containing multiple VLANs which can be assigned to a port
Has anyone had issues with VLAN to VLAN connectivity?
I have a strange behaviour where my VLAN1 can't access any device on VLAN172, but all devices in VLAN172 can acces both VLANs. TP Link support insist that is the device firewalls. I'm finding it difficult to believe my MacBook and Windows machine became VLAN aware out of the blue. Because everything works as expected on VLAN172 but not on VLAN1.
How do I restrict IOT VLAN form accessing internet on Omada?
found it on the internets: You can write an ACL rule to deny access to the internet at the switch or EAP level. Create a group of the devices you want to block, under Settings-Profile-Group. The group can be by mac address or IP. If by IP make sure to reserve the IP addresses. Go to Settings-Network Security-Switch ACL and create a deny rule that prevents your created group from router access. This will still allow the devices to access the private lan and get an IP address, but prevents internet access.
create a YT video about setting up Cams, IOTs and VLANs for kids and focus on ACL rules for each.
possibly need to wait until the oc200 controller version gets to v5 as its still vulnerable to log4j
where is part 1
where is Part 3?
Part 3 never happened there wasn’t a ton of interest in the video. I’m thinking about making a new full Omada video though