|
|
|
cyril7: Hi is there any real reason to isolate IoT stuff from your main network, how many IoT devices do you have and what's your logic for separating them, just asking as a network engineer as to your reason.
Cyril
cyril7: Hi so your a domestic residence with more than 250 devices including IoT??
Cyril
Its more having many things on static allocations in strange places, like all the fire tv devices are in the 172.16.2.70-79 range, etc which means I dont have a large enough contiguious block to use for DHCP.
Also past devices with no security like belkin wemo would be accessible to anyone on the wifi and it would also learn them into the app so they could then remote control them, so I wanted them off the main lan range that I let other people use.
If I get all the $5 wifi strip controllers up and running like I have been meaning to, I would be well over 150 devices on the network.
Could be fun when an IoT gimmick reveals your wifi password and eMail credentials. :-)
- NET: FTTH & VDSL, OPNsense, 10G backbone, GWN APs
- SRV: 12 RU HA server cluster, 0.1 PB storage on premise
- IoT: thread, zigbee, tasmota, BidCoS, LoRa, WX suite, IR
- 3D: two 3D printers, 3D scanner, CNC router, laser cutter
as others have mentioned unifi flex-hd ticks your boxes - it's no longer beta access and is now in the general availability unifi store, so presumably stocks should be available here soonish - maybe drop gowifi an email?
https://store.ui.com/products/unifi-flexhd
So re security issues, are the vlans routing on a L3 switch or Router/Firewall, and regardless I presume the switch has ACLs to block inter-vlan traffic and the Router/Firewall also has rules to block??? or can traffic route.
Further, paranoia of IoT and cameras etc accessing other devices on your network, one presumes there are firewalls on all your PC/Laptops/tablets to block inbound initiated connections (this is normal) or have you let them loose. If you have open shares then you might have an issue I guess, but beyond that, seems like paranoia, but each to their own.
Cyril
|
|
|