Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


Earbanean

937 posts

Ultimate Geek


#303029 11-Jan-2023 13:50
Send private message

I've been meaning to set up an IoT VLAN for some time, and with all the bad weather, I probably have time now.  I've already set up a guest Wifi VLAN with appropriate firewall rules etc, using an Edgerouter Lite and Cambium e400/e410 WAPs (tagging through SSIDs).  I plan to do similar for the IoT VLAN, except also add wired ethernet devices, by tagging on our Netgear managed switch.

 

So the question I have is, which devices should/shouldn't go on the new IoT VLAN? Here are my first thoughts:

 

- Main VLAN: PC, laptops, phones.

 

- IoT VLAN:  Ring doorbell and 2 x chimes, Escea gas fireplace, TP-Link Tapo smart switch.

 

- Not sure: 4 x Sonos speakers, 3 x Amazon Echo Dots, Apple TV.


Create new topic
cyril7
9058 posts

Uber Geek

ID Verified
Trusted
Subscriber

  #3020049 11-Jan-2023 13:59
Send private message

Hi, not sure what you are trying to achieve, purhaps some security from vunrabliities in IOT devices? personally I would not bother.

 

As for your last "Not Sure" vlan, I would not do that, you will create a lot of grief for yourself, unless you have an Avahi proxy on the network any chance of mDNS allowing airplay/chromecast to work will break.

 

Cyril




Earbanean

937 posts

Ultimate Geek


  #3020064 11-Jan-2023 14:13
Send private message

cyril7:

 

Hi, not sure what you are trying to achieve, purhaps some security from vunrabliities in IOT devices? personally I would not bother.

 

As for your last "Not Sure" vlan, I would not do that, you will create a lot of grief for yourself, unless you have an Avahi proxy on the network any chance of mDNS allowing airplay/chromecast to work will break.

 

Cyril

 

 

Sorry, I wasn't clear.  I'm not intending to create a 'Not Sure' VLAN.  I was just saying that I wasn't sure whether those devices would be on the Main VLAN or the IoT VLAN.  I was thinking probably on the main VLAN.


cyril7
9058 posts

Uber Geek

ID Verified
Trusted
Subscriber

  #3020072 11-Jan-2023 14:29
Send private message

Hi, yes if you do create an IOT vlan, then leave your AV devices on the same network as your mobile/tablet devices or lots will break, unless you go all out and build an Avahi proxy, which in a domestic setting is a bit OTT

 

Cyril




richms
28168 posts

Uber Geek

Trusted
Lifetime subscriber

  #3020149 11-Jan-2023 15:09
Send private message

I have all the cloud connected tuya, ewelink and some other app I forget smart bulbs on their own vlan that can see the internet but not the other networks. Just connect the phone to it when adding devices. It has a loooooooooon PSK since its a pain to change that.

 

I have a ssid for my smart speakers that is on the same vlan as my important stuff, but again, it has a much longer PSK since changing is a pain. This also has some of the chromecast/firetvs on it. SSID has to match for echos to be happy to group up it seems.

 

I have my one that I use for phones/laptops, and some of the other devices I have not moved yet. It has a shorter key as I often have to enter it into things so I periodically change it. Its well overdue for a change. Has some streaming devices connected to it because they were set up before the above SSID.

 

I have a third vlan for chinese IP cameras. It cannot see the internet, it can be seen from the other vlan with devices on it so I can see the cameras. I have a slightly more trustable NVR that I have on the main vlan that I have some cameras added to so that I can see them when not at home thru the NVR providers cloud and app.

 

My home assistant machine had had interfaces added on all vlans so it can directly see everything. So does my desktop PC so I can watch all cameras from it.





Richard rich.ms

Create new topic





News and reviews »

Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01


Epson Launches New AM-C550Z WorkForce Enterprise printer
Posted 9-Jul-2025 18:22


Samsung Releases Smart Monitor M9
Posted 9-Jul-2025 17:46


Nearly Half of Older Kiwis Still Write their Passwords on Paper
Posted 9-Jul-2025 08:42


D-Link 4G+ Cat6 Wi-Fi 6 DWR-933M Mobile Hotspot Review
Posted 1-Jul-2025 11:34


Oppo A5 Series Launches With New Levels of Durability
Posted 30-Jun-2025 10:15









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.