EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions

EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions

EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions
EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions
2025-05-08 20:06:03 - last edited 2025-05-09 09:27:33
Model: EAP772   TL-SG3210XHP-M2  
Hardware Version:
Firmware Version:

Hi there!


I am moving from an apartment to a 2 story house with 300m2. I am currently planning the network + wifi and the idea is to use 4 EAP772 APs connected to a TL-SG3210XHP-M2 switch.


Internet connectivity / routing + DHCP + DNS will be provided by a pfsense appliance with 4 2.5 ether ports (one of those ports connected to the switch as LAN).


Omada Software Controller will be installed on a Mint laptop (might run in baremetal or inside a VirtualBox VM) - I use this laptop to run home automation (Home Assistant) and some scripts.


Right now, I have about 80 Tuya devices connected to a specific a legacy 2.4 GHz a/b/g network comprised of 5 TP-Link Archer C7 running DD-WRT. They are all working flawlessly, but it took me a great deal of time and effort to reach this - Tuya devices are known to be picky with the wifi network.


I also have a separate area (external area with a pool) where I want wifi coverage (need high perf wifi for mobile devices and legacy 2.4 ghz coverage as well for tuya devices and automation), but I guess that I won't be able to have a cat7 cable run from the switch to this location.

Questions:

 

  • Does any1 here use tuya 2.4 wifi devices with EAP772? Do they work or are special configs needed for them to work? My idea is to get rid of the old Archer C7s and create a 2.4 SSID within a VLAN specifically for IOT devices;
  • I would like to create a guest wifi network on a specific VLAN and use the Omada Software Controller for the captive portal. As far as I could read, this is possible and I won't have any problems with that. Any specific recommendations?
  • About the pool. Are there any APs (or even the EAP772 itself) that can be configured with a WIFI backhaul to the EAP772 main mesh? My concern is the possibility that I won't be able to run a cable to connect to an AP there;
  • Is the AI WLAN optimization available in such config?


Thanks in advance!

  0      
  0      
#1
Options
1 Accepted Solution
Re:EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions-Solution
2025-05-09 06:42:07 - last edited 2025-05-09 09:27:33

Hi  @StealthNet 

 

Thanks for posting and choosing TP-Link products. Please see my answers below:

 

Does any1 here use tuya 2.4 wifi devices with EAP772? Do they work or are special configs needed for them to work? My idea is to get rid of the old Archer C7s and create a 2.4 SSID within a VLAN specifically for IOT devices;

>>> 

We haven’t received any feedback about incompatibility with Tuya 2.4GHz Wi-Fi devices, and there are currently no known issues in this regard.

To ensure compatibility, you can compare the encryption methods used by your 2.4GHz network with ours. If our system supports them, the devices should work without issues.

 

I would like to create a guest wifi network on a specific VLAN and use the Omada Software Controller for the captive portal. As far as I could read, this is possible and I won't have any problems with that. Any specific recommendations?

>>>

Yes, this should work. If the captive portal is applied to a guest SSID, don't forget to create an EAP ACL to allow the guest network access to the controller's IP. Below is the guide:

How to allow guest network to access specific device on the main network by configuring EAP ACL?

 

 

About the pool. Are there any APs (or even the EAP772 itself) that can be configured with a WIFI backhaul to the EAP772 main mesh? My concern is the possibility that I won't be able to run a cable to connect to an AP there;

>>>Yes, most EAP units can mesh with EAP772. You can consider an outdoor EAP, such as EAP650-outdoor.

 

Is the AI WLAN optimization available in such config?

>>>Yes, EAP772 supports WLAN optimization. But please kindly be noted that mesh EAP units will be excluded.

 

Recommended Solution
  0  
  0  
#2
Options
7 Reply
Re:EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions-Solution
2025-05-09 06:42:07 - last edited 2025-05-09 09:27:33

Hi  @StealthNet 

 

Thanks for posting and choosing TP-Link products. Please see my answers below:

 

Does any1 here use tuya 2.4 wifi devices with EAP772? Do they work or are special configs needed for them to work? My idea is to get rid of the old Archer C7s and create a 2.4 SSID within a VLAN specifically for IOT devices;

>>> 

We haven’t received any feedback about incompatibility with Tuya 2.4GHz Wi-Fi devices, and there are currently no known issues in this regard.

To ensure compatibility, you can compare the encryption methods used by your 2.4GHz network with ours. If our system supports them, the devices should work without issues.

 

I would like to create a guest wifi network on a specific VLAN and use the Omada Software Controller for the captive portal. As far as I could read, this is possible and I won't have any problems with that. Any specific recommendations?

>>>

Yes, this should work. If the captive portal is applied to a guest SSID, don't forget to create an EAP ACL to allow the guest network access to the controller's IP. Below is the guide:

How to allow guest network to access specific device on the main network by configuring EAP ACL?

 

 

About the pool. Are there any APs (or even the EAP772 itself) that can be configured with a WIFI backhaul to the EAP772 main mesh? My concern is the possibility that I won't be able to run a cable to connect to an AP there;

>>>Yes, most EAP units can mesh with EAP772. You can consider an outdoor EAP, such as EAP650-outdoor.

 

Is the AI WLAN optimization available in such config?

>>>Yes, EAP772 supports WLAN optimization. But please kindly be noted that mesh EAP units will be excluded.

 

Recommended Solution
  0  
  0  
#2
Options
Re:EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions
2025-05-09 09:27:26

  @Vincent-TP Thank you, you answers cleared things up for good rsrs

 

When you say "mesh AP units" I understand you are referring exclusively to the APs connected to the other ones through a wifi backhaul right? In my use case, if I am not able to get a cat7 cable from the switch to the external area (pool), the idea is to have an EAP772 there connected to the mesh through a wifi backhaul. I am asking this because in my view, all APs will be in a mesh config to enable roaming for example (3 of them connected to the switch with a cable and 1 of them connected to the mesh through a wifi backhaul).

 

Once I get the external AP connected to the mesh trough a wifi backhaul, will it be possible to bridge its ethernet port to the ethernet segment it is connected, so I may connect this port to a another switch and get all the cabled devices over the external area / pool connected too?

  0  
  0  
#3
Options
Re:EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions
2025-05-10 02:00:57

Hi  @StealthNet 

 

Yes. To be more specific, (3 of them connected to the switch with a cable and 1 of them connected to the mesh through a wifi backhaul), the one connected via wifi backhaul is the mesh AP. 

For mesh EAPs, there will be a wifi symbol beside them, like this:

 

Once I get the external AP connected to the mesh trough a wifi backhaul, will it be possible to bridge its ethernet port to the ethernet segment it is connected, so I may connect this port to a another switch and get all the cabled devices over the external area / pool connected too?

>>> Yes, you can plug a switch into the ethernet port of the mesh EAP to get more wired connections.

 

 

 

  0  
  0  
#4
Options
Re:EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions
2025-05-10 08:14:27

  @Vincent-TP Perfect! Thank you so much for the help and orientations!

  0  
  0  
#5
Options
Re:EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions
2025-05-12 02:08:59

  @StealthNet 

 

My pleasure.

 If you have additional questions, feel free to reach out. We're here to help! 😊

  0  
  0  
#6
Options
Re:EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions
2025-06-21 11:34:33 - last edited 2025-06-21 12:23:21

  @Vincent-TP hi there! I have an additional question.

 

I want to keep costs down, so I am planning to use EAP772 APs in those areas where I need speed and EAP650 where I just need to connect IOT devices and high speed access is not a requirement (front of the house, attic etc). Is it possible to mix them with EAP772 and still be able to use seamless roaming functionality?

 

Edit, just to make things a bit clearer: I plan to have 4 SSIDs / networks.

 

1 - VLAN LAN SSID (high speed WIFI6~7, laptops, PCs, mobile devices). let´s call it intranet_mesh

2 - guest VLAN SSID high speed, wifi7 but compatible with slower devices). Let´s call it guest_mesh

3 - IOT SSID, compatible (2.4 compatible network for IOT devices like tuya and the sort). Let´s call it iot24_mesh

4 - IOT SSD, high speed (2.4 ~ 5 GHz high speed but compatible wifi network, where TVs, alexas and other multimedia devices wil reside). Let´s call it iot5_mesh

 

I decided to have a segregated SSID 2.4 network for tuya IOT devices because they are really picky, but 3 and 4 would be the sane VLAN.

 

EAP772 and EAP650 would share those SSIDs and the goal is for example, be able for my cellphone to roam from an EAP772 to an EAP650 while connected to the high speed VLAN LAN SSID. That would desirable for guests too. No need for IOT devices to roam.

  0  
  0  
#7
Options
Re:EAP772 + TL-SG3210XHP-M2 - Tuya Devices, Portal and Other Questions
2025-06-23 02:42:00

Hi  @StealthNet 

 

Yes, you can achieve seamless roaming between EAP650 and EAP772 with proper installation.

 

These options will apply to all the EAPs adopted by the site. Clients connecting to the EAPs will roam between each other.

 

StealthNet wrote

  @Vincent-TP hi there! I have an additional question.

 

I want to keep costs down, so I am planning to use EAP772 APs in those areas where I need speed and EAP650 where I just need to connect IOT devices and high speed access is not a requirement (front of the house, attic etc). Is it possible to mix them with EAP772 and still be able to use seamless roaming functionality?

 

Edit, just to make things a bit clearer: I plan to have 4 SSIDs / networks.

 

1 - VLAN LAN SSID (high speed WIFI6~7, laptops, PCs, mobile devices). let´s call it intranet_mesh

2 - guest VLAN SSID high speed, wifi7 but compatible with slower devices). Let´s call it guest_mesh

3 - IOT SSID, compatible (2.4 compatible network for IOT devices like tuya and the sort). Let´s call it iot24_mesh

4 - IOT SSD, high speed (2.4 ~ 5 GHz high speed but compatible wifi network, where TVs, alexas and other multimedia devices wil reside). Let´s call it iot5_mesh

 

I decided to have a segregated SSID 2.4 network for tuya IOT devices because they are really picky, but 3 and 4 would be the sane VLAN.

 

EAP772 and EAP650 would share those SSIDs and the goal is for example, be able for my cellphone to roam from an EAP772 to an EAP650 while connected to the high speed VLAN LAN SSID. That would desirable for guests too. No need for IOT devices to roam.

 

  1  
  1  
#8
Options