Tp-Link Routers SUCK! ! ER7212 & Others !

Поділитися
Вставка

КОМЕНТАРІ • 106

  • @seantellsit1431
    @seantellsit1431 11 місяців тому +63

    Dude..... ACLs are a layer2 function. You need to use Layer3 (Firewall). Block the subnets and be done. This video just shows a lack of basic knowledge.

    • @JasonsLabVideos
      @JasonsLabVideos  10 місяців тому +3

      The built in switch IS L2, DERP ! Try again.

    • @seantellsit1431
      @seantellsit1431 10 місяців тому +7

      @@JasonsLabVideos yes... however, the second packets have a destination header to go to a different subnet, they go to the firewall for processing.... DERP

    • @JasonsLabVideos
      @JasonsLabVideos  10 місяців тому +1

      Correct, but the features to block things properly is missing in this device. Its a switch & router & controller all in one! @@seantellsit1431

    • @jorgemtds
      @jorgemtds 8 місяців тому +2

      ​​@@JasonsLabVideosI saw another video on UA-cam complaining about that integrated device. Avoid at all costs. You should have gotten separate Router, Switch and Controller. I think those Will do what you want.

    • @JasonsLabVideos
      @JasonsLabVideos  8 місяців тому +8

      The new firmware fixes the issue, I just haven't had time to do the video. @@jorgemtds

  • @alexandrpyankov430
    @alexandrpyankov430 8 місяців тому +4

    From manual for the device:
    Interface: Create the network with a Layer 3 interface, which is required for inter-VLAN
    routing.
    VLAN: Create the network as a Layer 2 VLAN
    It is on page 55

  • @hutchabilly107
    @hutchabilly107 9 місяців тому +11

    @JasonsLabVideos have you updated the firmware to the latest version for the ER7212PC and rechecked to see if it is any better? I just updated my hardware and the Gateway ACL has LAN-LAN permit and blocking now.

    • @JasonsLabVideos
      @JasonsLabVideos  4 місяці тому

      I did update it, and it works properly now :)

    • @apresutt
      @apresutt Місяць тому

      @@JasonsLabVideos Shouldnt you be pinning a comment or editing your description? Seems like clickbate at this point.

    • @JasonsLabVideos
      @JasonsLabVideos  Місяць тому

      @@apresutt The original Firmware was POOH! The new one improved everything and the unit is rock solid !

  • @ChfReviewer
    @ChfReviewer 8 місяців тому +4

    Recently I updated the ER7212PC to version : 1.1.0 Build 20230803 Rel.83667 with controller version 5.8.31 and I am happy to inform you that the Gateway ACL is now containing LAN-LAN option.
    I tried this ACL and it seems to be doing the job.
    So Finally this router looks ready for deployement.

    • @JasonsLabVideos
      @JasonsLabVideos  8 місяців тому +1

      I'll be trying this very soon, thanks for letting me know sir !

  • @BlueNETGaming
    @BlueNETGaming 8 місяців тому +4

    On my ER706w setup with the controller separate on my network I can setup the networks as needed.
    Not sure if you just meant the standalone hardware or tplink Omada full setup?
    Still thanks for making the video, always good to educate each other

    • @JasonsLabVideos
      @JasonsLabVideos  8 місяців тому +1

      The Er7212 was what I’m referring to.. but new firmware was released so, we shall see

  • @willbobgill
    @willbobgill Рік тому +2

    jason off topic, are any of those new grandstream switches silent like the ubiquti’s?

    • @JasonsLabVideos
      @JasonsLabVideos  Рік тому +1

      100% they are !! They startup for 3 seconds then ramp down. BTW they are built like tanks and will last a very long time. Inside PSU"S are built VERY VERY well !!

    • @willbobgill
      @willbobgill Рік тому

      @@JasonsLabVideos rapid reply, thank you you’re the man

  • @ryancyr3622
    @ryancyr3622 9 місяців тому +2

    You can’t vlan tag the ports on that router. I learned the hard way too with a customer install I did but luckily they only required a guest network over wifi so I was good. I usually just get the er7206 or the er707-m2 and use a switch to vlan tag the ports. Much neater when you have all your ports in the house going to a 24 port port switch. Aps, printers, cameras all in one place. Then vlan tag the ports as needed.

    • @JasonsLabVideos
      @JasonsLabVideos  9 місяців тому

      The new update might fix this, i need to try it..

  • @Practical-IT
    @Practical-IT Рік тому +4

    When it comes to routers these days, I'm in the "pfSense/OPNSense or bust" camp.
    Great video BTW.

    • @pinsjax
      @pinsjax Рік тому

      Me with HUAWEI WIFI AX3 No problem / And it have a Guest mode(^~^)

  • @RubenSmitGooglePlus
    @RubenSmitGooglePlus 10 місяців тому +1

    @JasonsLabVideos a new firmware has been released on 2024-01-15 . The description says it fixes some known security vulnerabilities. Can you test if the problem is still there?

    • @JasonsLabVideos
      @JasonsLabVideos  10 місяців тому +2

      I sure can, ill do that tonight, Thanks for letting me know about the new firmware !

    • @RubenSmitGooglePlus
      @RubenSmitGooglePlus 10 місяців тому

      @@JasonsLabVideos thanks! That would be great.

  • @diomedessanchez9952
    @diomedessanchez9952 7 місяців тому

    Hi Jason, Do you know if the controller in the device communicate well with Tp-link VIGI cameras and NVR?

  • @gaston5367
    @gaston5367 8 місяців тому +2

    The TPLink ER7212 is a layer 2 switch and a router, because of that you can´t deny communication trough the Vlans, for that you need a switch layer 3. It is not a problem of security, is a matter of kind of switch you are using.

    • @JasonsLabVideos
      @JasonsLabVideos  4 місяці тому +1

      The newest firmware fixed the issue.

    • @gaston5367
      @gaston5367 4 місяці тому

      @@JasonsLabVideos What version is?

  • @Net-Extension
    @Net-Extension Рік тому +1

    Is this problem only in the ER7212-PC or a general omada issue ?

    • @SPXLabs
      @SPXLabs Рік тому +4

      It's specific to this router because TP-Link markets this as a Router, Controller, and Switch. However, the ACLs and other options that are normally available to a Omada Switch are not available here. So if you want the fully functionality of a traditional stack like a ER605 + Switch + AP, then this is not for you. If you just use WiFi then this could be for you since you can still create VLANs, ACLs, ect for APs.

    • @Net-Extension
      @Net-Extension Рік тому

      @@SPXLabs I see. Its not a huge price difference. Since you mentioned it. What is the point of creating VLANs when you can not segregate them ?

    • @SPXLabs
      @SPXLabs Рік тому

      @@Net-Extension Yeah the pricing is odd too. Beats the heck out of me.

    • @mikemarcus4190
      @mikemarcus4190 11 місяців тому

      @@SPXLabs Thanks for this video and reply

    • @razorous
      @razorous 4 місяці тому

      @@SPXLabs Thanks for this, was almost going to consider this as my mini network rack is full. I'm sticking to the ER605 + Switch + APs setup

  • @keyoke
    @keyoke Рік тому +1

    I shall stick to my er605, sg2008p set up then. Thanks for the video!
    At least now i can block inter vlans via ACL as well as my IoT devices are on a separate vlan, and i have a acl to block these devices from accessing my internal network for security measures just in case they got hacked

    • @JasonsLabVideos
      @JasonsLabVideos  11 місяців тому +1

      Yep, maybe one day they will fix it for now PASS on Tp-link.

    • @MrDuka25
      @MrDuka25 11 місяців тому

      Do you have a.dedicated controller?

    • @keyoke
      @keyoke 11 місяців тому +1

      @@MrDuka25 yes i do

    • @JasonsLabVideos
      @JasonsLabVideos  11 місяців тому +1

      It's built into the ER7212.@@MrDuka25

    • @ChrisPorosky
      @ChrisPorosky 10 місяців тому

      Are you taking a pass on tplink in general or a pass on the er7212pc (which appears to be a one off device with specific limits)?

  • @Hein0703
    @Hein0703 3 місяці тому +1

    Is this issue fixed after all those Firmware updates ??

  • @googler38
    @googler38 4 місяці тому +1

    I need a wireless controller and a newer router for a simple home network - I'll probably get this yoke as the sw omada seems to work well to facilitate fast roaming.

    • @JasonsLabVideos
      @JasonsLabVideos  4 місяці тому +1

      The er7212 with a few WAP's will be perfect. I have about 28 of them out in the filed and all rock sold and working with VPN.

  • @MatysPC
    @MatysPC 11 місяців тому +2

    Należy ustawić Gateway ACL żeby router blokował ruch. Nie działało jakiś czas temu, ale już zostało poprawione. Na tym filmie masz pewnie jeszcze nieaktualny firmware.

  • @wojciech_migda
    @wojciech_migda 11 місяців тому +1

    I understand your complaint, but maybe this router is just not designed for that kind of task? I bought it just for a SOHO use without any guests and in this scenario it should be just right.....
    But once again it is good, that for users who might need a lan guest access, you presented what this router lacks!

  • @MrDuka25
    @MrDuka25 11 місяців тому

    Does the issue happen only when using this specific device? What if I use a dedicated tplink router and a dedicated switch?

  • @clabretro
    @clabretro Рік тому +3

    That's wild, defeats the entire purpose VLANs!

  • @PE4Doers
    @PE4Doers Рік тому +2

    A courageous video Jason - Great 🙂

  • @ChfReviewer
    @ChfReviewer 8 місяців тому

    @JasonsLabVideos
    Recently I updated the ER7212PC to version : 1.1.0 Build 20230803 Rel.83667 with controller version 5.8.31 and I am happy to inform you that the Gateway ACL is now containing LAN-LAN option.
    I tried this ACL and it seems to be doing the job.
    So Finally this router looks ready for deployement.
    Please give us a followup to this video

  • @CompuWhizz
    @CompuWhizz Рік тому +4

    Piles of steaming doodoo

  • @noshibear8408
    @noshibear8408 7 місяців тому +1

    its a good thing i saw this video as i was considering putting up one... went for another brand instead

    • @JasonsLabVideos
      @JasonsLabVideos  7 місяців тому

      Grandstream ? IMO tey fixed the main issue in the new firmware, I have applied it to all 18 units i manage and all is now good.

  • @212helpdesk
    @212helpdesk 2 місяці тому

    But I think you said you can block the wifi traffic from the hard wired lan traffic. Is that correct? Just don't provide a cable to the devices you don't want on your sensitive (accounting, HR systems) maybe.

    • @JasonsLabVideos
      @JasonsLabVideos  2 місяці тому

      The point was to have a so called device like a wired printer accessible from another wireless network BUT only by the printing port & block everything else !

  • @ShawnEdwardsDJShawnChristian
    @ShawnEdwardsDJShawnChristian 8 місяців тому +1

    Ok. Since there crap for you. would you donete theme to mjeear in Jamaica. I'd like to use them for a school set up

  • @ChevyBlazerBoy
    @ChevyBlazerBoy Рік тому +3

    Running tplink omada switches and APs and opnsense protectli For firewall/router. Been rock solid. I knew going into it the tplink routers sucked thats why i went opnsense.

    • @TismoGaming
      @TismoGaming Рік тому

      Man my setup exactly like yours but I am not sure if I set it up right. I wish you were my neighbor so you can give it a look and see if it’s all good 😅

    • @JasonsLabVideos
      @JasonsLabVideos  Рік тому

      Yup, that will work well. Their ap's are decent & switches not sure. BUT this ER7212 & other firewalls = garbage..

    • @homenetworkguy
      @homenetworkguy Рік тому

      I have managed TP-Link switches with OPNsense as the router/firewall and it works great. I have a couple of older UniFi APs as well. I’m planning on getting some other switches to try in the future to meet my needs/wants.

    • @JasonsLabVideos
      @JasonsLabVideos  Рік тому

      Try Alta Labs or Grandstream stuff. Ditch the Tp-link.@@homenetworkguy

    • @homenetworkguy
      @homenetworkguy Рік тому +1

      @@JasonsLabVideos Yeah, I have my eyes on one of the Engenious switches. Also a cheaper brand managed 48 port switch with 10G SFP+ interfaces. TP-Link managed switches do work ok for budget home network usage, but I definitely would never use any of their routers as you have mentioned in your video.

  • @WillieHowe
    @WillieHowe Рік тому +2

    Great video. If you run a tplink 605 by itself without Omada it works. Omada is the problem here for sure. Let's do a collab!

    • @ceramicchef
      @ceramicchef Рік тому +1

      Works fine on a 605 with Omada too.

  • @albanabraham5295
    @albanabraham5295 Рік тому +3

    I like the logo.

  • @SWLinPHX
    @SWLinPHX 11 місяців тому

    Both my TP-Link mesh systems I've installed (one a few years ago and one just this past year) work great but I have had issues with other older TP-Link products such as WiFi extenders.

    • @rayjaymor8754
      @rayjaymor8754 7 місяців тому

      to be fair, wifi extenders as a whole are a lotto bet. I avoid them unless I have zero other choice

  • @tv175s3
    @tv175s3 10 місяців тому +1

    I see you have1.0.3 on the router, I do have LAN->LAN on ER7212 with v1.1.1

    • @JasonsLabVideos
      @JasonsLabVideos  10 місяців тому

      I'm going to be doing a new video after i get 1.1.1 downloaded and tested ! Crossing fingers they fixed this !

  • @Kunstentech
    @Kunstentech Рік тому +1

    Thank you for sharing !!!

  • @richcreedy4118
    @richcreedy4118 Рік тому +5

    i found if you want to do anything serious, then TP-link isn't the best

    • @attilazk
      @attilazk 7 місяців тому

      It all depends on how serious you want/need to go. Anyway, the issue was only on this specific device and even this was solved with a new firmware in short time.
      Generalising statements like "this is $hit" is just as dumb as saying any some brand as "super safe" (especially at TP-Link price points).

  • @ericyost5287
    @ericyost5287 11 місяців тому

    Do you know if this security issue has been fixed?

    • @JasonsLabVideos
      @JasonsLabVideos  11 місяців тому

      It's still not fixed ! Tried it last week actually.

    • @ericyost5287
      @ericyost5287 11 місяців тому

      @@JasonsLabVideos Wow I wonder if they are atleast aware of the issue?

    • @projectcoopservis4020
      @projectcoopservis4020 11 місяців тому

      ua-cam.com/video/piRKAKj1AxQ/v-deo.html

    • @JasonsLabVideos
      @JasonsLabVideos  7 місяців тому

      @@ericyost5287 This has been fixed :)

    • @ericyost5287
      @ericyost5287 7 місяців тому

      @@JasonsLabVideos nice. When was it fixed?

  • @BDBD16
    @BDBD16 Рік тому +2

    FACTS!

  • @daltonschrader8328
    @daltonschrader8328 Рік тому

    Their switches and APs are awesome. Routers not so much

  • @christianfrey9181
    @christianfrey9181 10 місяців тому

    .... u get paid? ... L3...