Internet access help using router/switch/EAP and Vlans
I have a Router/Switch/EAP setup that provides 4 vlans using a single EAP.
I have had it working previously but something happened and I can't get Internet access to any of the vlans working any more.
Router: TL-ER6020
Switch: TL-SG2008P
EAP: 655-Wall
The setup has ISP internet providing a dynamic IP to WAN1 of my router (vlan10.) WAN2 (vlan20) is not currently used and the remaining ports 3-5 are on vlan1
DHCP is using 10.10.0.100-150
The Switch (port 8) is connected to port 5 of the Router.
Switch L2 features:
vlan1 - system vlan (port 1 -8 untagged)
Each Vlan provides its own pool of IPs
vlan100 - 10.10.1.x (port 1 tagged and port 8 tagged)
vlan200 - 10.10.2.x (port 1 tagged and port 8 tagged)
vlan300 - 10.10.5.x (port 1 tagged and port 8 tagged)
vlan400 - 10.10.10.x (port 1 tagged and port 8 tagged)
The EAP is configured to provide SSIDs for each of the vlans and is connected to Port 1 of the switch
According to all documentation I could find, Port 1 on the switch should be set to untagged, but I found that with that setup I was unable to get the IPs delivered to the Hosts.With port 1 of the switch set to tagged the IP was assigned to the host properly. I assumed that this was because the port was connected to the EAP rather than to an individual host.
If I connect to the EAP and connect to the SSID for vlan1 I am able to access the internet, however, if I connect to any other SSID (connected to the other vlans) I get the proper IP address but have no internet access. I assume this has something to do with a missing route I need to define?
If I connect my computer with an ethernet cable to one of the unused ports on the Switch or Router I have access to the 10.10.0.x IP range and have internet access.
I know I had this working before but I must have deleted a route or something else that made it work and I can't figure out what i did.
From what I can tell, everything else is working as expected, I just need to find a way to get the hosts that are connecting to the other vlans to access the internet.
I tried adding the IP ranges into the Multi-Nets NAT List but that didn't work. There must be something simple I am missing. I keep trying different things but the more I do the more of a mess I make. I am hoping someone can point out what I need to do and give me some kind of explanation. I tried following procedures on line but most don't explain why they are doing what they are, and give examples based on outdated interfaces and equipment/ setups that don't match what I am using. I don't mind experimenting to figure out what is happening but there are way too many variables and in a lot of cases I have to reboot everything in order to be sure that changes have actually taken effect.
I assume that there must also be a way to allow hosts on different subnets to communicate. Is this possible by setting up routes in the Switch? Any examples or guides using the same hardware I am using?
Thanks for any assistance anyone can provide.