cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
622
Views
0
Helpful
1
Replies

Setting up VLANs using RV325, SG200-26P, and 4 x WAP561

RutReturns
Level 1
Level 1

I have a simple straight forward setup but something isn't working correctly.  I am simply trying to create a guest wireless network and separate all traffic from the main company traffic. I have 1 router, 1 switch, and 4 wireless access points. All 6 devices have the most current firmware.

Router - RV325.

Configure VLAN 1 with IP 192.168.111.1 and DHCP is enabled.

Configure VLAN 10 with IP 192.168.200.1 and DHCP is enabled.

VLAN 1 is untagged on all ports

VLAN 10 is tagged on all ports

Port 7 is plugged into the switch

Switch - SG200-26P

IP is 192.168.111.2

Access points are plugged into ports 15-18

VLAN 1 is untagged on all ports

VLAN 10 is tagged on ports 15-18 and port 24

Port 24 is plugged into the router

Ports 15-18 and 24 all show 1UP, 10T

Access Points - WAP561 x 4

IP's are 192.168.111.30-33

VAP 0 is VLAN 1 SSID BTB

VAP 1 is VLAN 10 SSID BTB-Guest

When I connect to BTB, everything works perfectly both inner office communication as well as all internet traffic. When I connect to BTB-Guest, I pull an IP of 192.168.200.100 which is correct, but I am not able to get to the web. I am also not able to ping anything including the DHCP server. A tracert returns nothing, not a single hop. I need to know what I am missing or what I have done wrong.

Here is a map showing the setup. It is very basic.

1 Reply 1

devils_advocate
Level 7
Level 7

Presumably your AP's are setup to Tag the VLAN ID as Vlan10 on the BTB-Guest SSID?

I would assume they are if you get a DHCP address in the correct VLAN10 subnet.

Can you ping the AP's from the router or the switch?

Presumably the DHCP scope on the router for VLAN10 is giving out 192.168.200.1 as the default gateway?

I would start by verifying you have the Trunk ports setup from end to End, the uplink port on the SG200 towards the router needs to have VLAN10 as tagged and the AP's also need to tag Vlan10 from their AP's. 

Is the router configured to NAT both ranges as it needs to be in order for internet access?

Seems odd you can't even ping 192.168.200.1 from the Client's as this should simply use Layer 2 for this, hence why I would verify all the Trunk ports are setup correctly.