Admin VLAN setup (router, controller and switches/EAP's)
Hi!
I'm just getting to know Omada/TP-link products, just made a lab setup, using OC200, ER605v2, SG2008P and a couple of EAP's.
In my current production setup I have VLAN as this, looking to reproduce the same on Omada:
MGMT 10 – 192.168.10.0/24
OFFICE 20 – 192.168.20.0/24
GUEST 30 – 192.168.30.0/24
I've been reading a few of articles here (like this one) and seen a few videos, but I'm still not sure of the best way to setup the management VLAN.
There was also another article, a FAQ entry which seems to indicate I should/could change the default VLAN from 1 to the chosen management VLAN (or did I misread the article?).
Main question:
Should I keep the default VLAN untouched (at 1)? And then connect that to a switch port set to MGMT VLAN/PVID profile?
(Working with other vendors, I've learnt that some equipment really wants PVID 1 for trunks ports and whatever.)
The confusing part for me, then, is that I would usually configure my router/firewall to have the non WAN port(s) as trunk port (which is All in the switch configs if I have understood the Omada setup). But configuring the ER605 through Omada, it seems I can either:
A. Change just PVID for the port, or
B. Change the default VLAN
But the B option seems to change the meaning of the All profile for all switches (setting MGMT as PVID, instead of VLAN 1 PVID and the rest tagged).
I was kind of hoping I could set the desired switch profile for each WAN/LAN and LAN port, but I only see PVID option.
(All videos I've seen and articles I've read just use VLAN1 as management VLAN.)
Not sure if I'm missing something obvious, but I've struggled a bit getting stuff to work ...
On a side note (DHCP):
Setting DHCP reservations, it seems impossible to reserve IP's in different VLANs for the same mac address? (Getting an error that the mac address already exists, when I try to add the same mac address with a different IP in a different VLAN/IP range.)