Setup for apartment complex

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Setup for apartment complex

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Setup for apartment complex
Setup for apartment complex
2022-06-22 16:07:33
Model: OC200  
Hardware Version:
Firmware Version:

Model: OC200

Hardware Version:

Firmware Version:

A friend of mine asked me to help with his network in his apartment complex. It's a building with 12 separate apartments. 

 

 

 

How the IT arranged it right now.

 

- MicroTik router (old and unstable)

 

- HP GB switch (24 port)

 

- EAP115-Wall walloutlet. (with POE)

 

- PC for remote management (LOL)

 

- Many meters of CAT6 and a few CAT5e cables

 

 

 

Their main issue is you might get is that they are all in one big network. They can see each other, the TV will find open shares, you can discover all the PC's, one decides to download whatever, all of the network speed goes down (slow), until the download is finished. They have a contract of 500/300 (down/up) but the EAP115 doesnt get over 70mb (cable). When I remove EAP and put a basic Mi Router it goes 500MB via the cable.

 

 

 

Most of the things I do with Ubiquiti, but availability and prices are skyrocketing, and looking for something new. 

 

 

 

I have the freedom of what to do, so I was thinking of getting the

 

- OX200 

 

- EAP225-Wall (since its GB)

 

- Keeping the HP GB Switch 

 

 

 

* My goal.

 

Create 3 packages of the internet. (o1 = max 50mb/10mb) + (o2 = max 100MB / 25mb) + (o3 max 300mb /100mb) (the TP link supports this?

 

And to give the best experience of the internet. Because now, he gets every few days a call and he has to switch off the MikroTIk, whats results in no internet for everyone. Also they should be able to see each other. So they should not be able to ping or to see each other's devices. 

 

 

 

To achieve my goal, I assume I need either the

 

- 1x OC200 or OC300

 

- 12x EAP225-Wall

 

- 3x TP GB Switch

 

 

 

The questions I have.

 

- The hardware mentioned above is all I need to achieve what I want?

 

- Any comments or suggestions?

 

Thanks!

  0      
  0      
#1
Options
33 Reply
Re:Setup for apartment complex
2022-06-22 22:14:19

  @ArjanKS 

 

Hey

 

This is possible indeed

 

Just thinking out loud here but it should work for you.   Im guessing you want to offer 3x internet type packages?   50  100  300 as you mentioned?    If so you would be best setting 3x VLANs and using them to control your bandwidths for each vlan.. that's simple enough

 

Have the 3x VLANs connected to 3x SSIDs and use the new PPSK feature..  that way it will allow you to allocate different Passkeys to each apartment on the same SSID. 

 

EG,  Apartments 1-4 all want the 300mbps offering so connect to the 300mbps SSID and VLAN.    Apartment one you create the passkey  1234   apartment 2  abcd    apartment 3   4567  etc etc..   They connect their devices as they need.  Should someone in apartment 1 scan for devices, he will only see the device connected with his key, not the other apartments, even though they are on the same SSID.. hope that makes sense?   Might be an option for you!  Basically each apartment will have their own passkey

 

To do this you will need hardware that supports its, this a VERY new feature so firmware are only just out for it.. do some checks first cause I'm not 100% offhand what devices have the updated firmware at present.. i know most of the ceiling mounted APs do, not sure on the wall models.

 

Also WiFi6 (EAP6xx wall) devices are now out, may be a good option to splash the extra $$ now.  Means should you upgrade to 1gbps internet its not swoping wall boxes everywhere to handle the new speeds.

 

My one concern would be the actual ports on the wall versions (the jack for plugging in), you may need to disable them or stick them on a guest vlan to stop anyone bypassing the vlans.. one to think about.

 

In terms of hardware..  you would need to go full omada on this one and ditch the HP switch

 

- 1x OC200   (OC300 would be overkill)

- 12x EAP225-Wall   (consider the 6xx range)

 

- 3x TP GB Switch     Could you get away with one 24 port POE?  something like the TL-SG2428P

- 1x  Omada Router.  The ER605 would suffice, you will need the router to terminate the vlans. 

 

Hopefully helps?

 

 

 

 

 

 

  1  
  1  
#2
Options
Re:Setup for apartment complex
2022-06-22 22:17:06

  @Philbert 

 

Other option is 12 vlans with 12 ssids - 1 for each apartment, set bandwidths on each vlan individually as required

 

Then enable only that one SSID on the appropriate AP for that apartment.

 

Its another way of doing this...  may require more admin time however.. 

  1  
  1  
#3
Options
Re:Setup for apartment complex
2022-06-25 19:53:38

  @Philbert 

 

Thanks for the reply (and sorry for the late reply!) I wrote it, but forgot to publish and had to rewrite it.

 

Yes, that's correct. Right now they just share their 500MB with everyone. But because there are some people abusing it (uploading almost 80% of the day). With the solution they have now, they have to accept it (since they can't make any changes)

 

I assume the AEP615-wall should be good enough. (price is ~90 euro)
megekko . nl/product/0/910627/TP-LINK-Access-Point-EAP615-WALL-Omada

The AEP235 cost ~70 euro

computeruniverse . net/en/p/90825240

TP Link SG116 Switch

computeruniverse . net/en/p/90736252

ER605

megekko . nl/product/2144/1120883/Bedrade-Routers/TP-LINK-Router-VPN-ER605-Omada

 

 

Their internet is 500MB and will not be upgraded in the next 1 to 2 years because the 500MB is the fastest they can go now.

 

I know there are 6 apartments that are using their own access point on it because they have some devices connected with a cable. So this has to be separated. (right now, they can see all the devices and got complaints from people especially looking for them)

 

The hardware:

1x OC200 ~85 euro

12x  EAP235 ~ 800 euro
3x SG116 ~150 euro
1x ER605 ~50 euro

The cost if we take the 235 will be around 1100 euro

If we take the EAP6XX it will be around 1400 euros.

 

Right now, the access points having as their SSID the apartment numbers eg. 102/103/201/202/301/etc. Is there a way to keep it this way and give each EAP235/EAP615 their own SSID (eg 102) with 50mb (eg 203 100MB)?

 

Never used the Omada, so sorry for the questions.

 

Thanks again

 

Arjan

 

PS; have an amazing weekend!
 


 

  0  
  0  
#4
Options
Re:Setup for apartment complex
2022-06-25 22:15:40

  @ArjanKS 

 

Hey Arjan

 

Sounds like you have the makings of a plan there!   However one thing isn't right for your setup, as you are going to be using VLANs then you need a SDN compatible switch to handle this, which the the SG116 is not.     Also unless you are intending to run a heck of a lot of injectors, you are going to need a POE switch to power the APs, if this is at all possible then one 24 port POE SDN switch would be better than multiple.   Something like the SG2428P would be my recommendation, or the SG2210MP if you only want 10 port switches.    Sadly this is going to increase your costings..

 

Are the 6 apartments that have their own APs getting new APs?  or sticking to their own?   If sticking to their own, create then a VLAN and apply it to the port in their apartment, that way as soon as they jack in their own hardware its going to be on that's apartments VLAN, that will also stop them seeing anyone else.  

 

VLAN for each apartment is likely the best way to do this if honest, more work setting up but offers you more control overall.  You can then apply bandwidth controls as you feel necessary based on those VLANs.

 

AP wise, yeah you can create 12 SSIDs (one for each apartment) and then apply those SSIDs to the VLANs.   Note the APs only broadcast a max of 8 SSIDs, so turn off the non used ones on each AP.. eg.. on Apartment 102  disable SSID 101  103  201  etc etc.  leaving just 102 broadcast.  Sadly the APs try to broadcast all by default! 

 

To control bandwidth, easy..   you can create bandwidth controls on the controller as you feel  (500 down / 50 up etc).  Then apply them to the VLANs as needed. 

 

I have added a screenshot below of what I think this should look like.   Sorry but you will need an SDN switch  indecision

 

 

 

  1  
  1  
#5
Options
Re:Setup for apartment complex
2022-06-25 22:51:09
They have already their POE injectors behind their walls.... (Not my idea..,but they are there)
  0  
  0  
#6
Options
Re:Setup for apartment complex
2022-06-26 00:29:26

  @ArjanKS 

 

Then in that case you will get away with just a standard / Non POE switch, provided its part of the SDN range and manageable via the controller

 

  1  
  1  
#7
Options
Re:Setup for apartment complex
2022-06-26 09:18:05

  @Philbert 

 

Thank you again! Sorry for the short answer, but it was late, and didn't want to reply after too much time.  

I can use the " T1600G-28TS V3 JetStream 24-Port Gigabit Smart Switch with 4 SFP Slots" since it's noted that it's supported by Omada? Or do I need a different model?

 

If the T1600G can be used, it will be the following hardware I need:

 

1x ER605
1x OC200

1x T16000G-28TS V3
12x EAP235 or EAP615

 

I will set up the controller on an old PC to see how it looks and get myself familiar with it (or maybe just get a controller, since its lifetime warranty, and maybe I will use it more in the future if it all works fine)

 

Thanks again!

 

Arjan
 

  0  
  0  
#8
Options
Re:Setup for apartment complex
2022-06-26 10:20:15

  @ArjanKS 

 

Hey

 

Unfortunately you will need a different model, the T1600G-28TS switch is of an older generation and not compatible with the latest version of SDN.   For a full compatibility list its best checking the controller firmware release notes, these list the actual devices it supports.

 

Link below to the latest OC200 firmware release notes, should give you more info

https://static.tp-link.com/upload/firmware/2022/202205/20220512/OC200.pdf

 

Honestly, its best no scrimping too much on a switch, ultimately remember this is the central point of your network and its where most of your controls and performance comes from.   Any switch starting 2xxxx is the older generation, 3xxxx is the latest.   There is nothing wrong with using a 2xxxx switch if its cheaper, just wont be supported as long for future upgrades.

 

 

  1  
  1  
#9
Options
Re:Setup for apartment complex
2022-06-26 11:31:26

  @Philbert 

 

So it will be the "TL-SG3428"  (computeruniverse(.)net/en/p/90829638) because the other ones are the older generation and the other ones are either 8port or 48 ports. The TP-Link TL-SX3016F is also an option, but its 10GB and they will not have that anytime soon and it will be overkill for now. It would be better just to replace it when the time comes.

 

  0  
  0  
#10
Options
Re:Setup for apartment complex
2022-06-26 11:49:09

  @ArjanKS 

 

Yes that will do you perfectly!    No don't be splashing out for 10gb switches, that would be totally overkill for what you need smiley

 

As you say its unlikely any WAN speed over 1gb is going to appear in the next few years for you, therefore 1gb ports are more than sufficient.   Should that miraculously change in 2-3 years the price of 2.5gbps ports should have dropped to more affordable by then

 

 

  1  
  1  
#11
Options