Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?
Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?
2023-12-31 13:18:16 - last edited 2024-01-05 06:27:09
Model: TL-SG2428P  
Hardware Version: V5
Firmware Version: 5.0.5 Build 20230602 Rel.73473

 

My goal  is a standard home network segregation (VLANS) for different services

 

  1. CCTV 
  2. Intercom
  3. NAS and Internet

- System Vlan (Default) 

 

 

I have created the VLANS for CCTV and Intercom but the problem is that when I set the ports for CCTV devices as Untagged I cannot reach them from my PC. I can only reach them when I add the ports back in the default system VLAN.

 

Question: How can I reach the devices in each VLAN from my PC ? 

 

Switch Model: TL-SG2428P Ver 5

Firmware: 5.0.5 Build 20230602 Rel.73473

 

 

 

 

 

  0      
  0      
#1
Options
2 Accepted Solutions
Re:Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?-Solution
2024-01-02 02:44:18 - last edited 2024-01-05 12:28:50

Hi @AADuw 

Thanks for posting in our business forum.

No. This is not VLAN interfaces which you can access each VLAN from your PC. This is 802.1Q VLAN and you cannot access them because of the isolation.

So, buy a router or your current router supports VLAN interfaces, then you can do what you want.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
Recommended Solution
  1  
  1  
#2
Options
Re:Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?-Solution
2024-01-02 14:56:39 - last edited 2024-01-05 06:27:12

    To sum it up, you would need a layer 3 switch ( one that also can do routing ) to function like you are asking. Like Clive says, a standalone router would work with sub interfaces set for your vlans - your basic router on a stick setup.

 

Layer 3 switches are pretty sweet, but also can be pretty spendy depending on your needs in general. 

Recommended Solution
  1  
  1  
#3
Options
7 Reply
Re:Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?-Solution
2024-01-02 02:44:18 - last edited 2024-01-05 12:28:50

Hi @AADuw 

Thanks for posting in our business forum.

No. This is not VLAN interfaces which you can access each VLAN from your PC. This is 802.1Q VLAN and you cannot access them because of the isolation.

So, buy a router or your current router supports VLAN interfaces, then you can do what you want.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
Recommended Solution
  1  
  1  
#2
Options
Re:Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?-Solution
2024-01-02 14:56:39 - last edited 2024-01-05 06:27:12

    To sum it up, you would need a layer 3 switch ( one that also can do routing ) to function like you are asking. Like Clive says, a standalone router would work with sub interfaces set for your vlans - your basic router on a stick setup.

 

Layer 3 switches are pretty sweet, but also can be pretty spendy depending on your needs in general. 

Recommended Solution
  1  
  1  
#3
Options
Re:Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?
2024-01-05 12:19:25
Thanks Clive_A
  0  
  0  
#4
Options
Re:Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?
2024-01-05 12:20:19
Thanks Jdubl
  0  
  0  
#5
Options
Re:Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?
2024-01-05 12:28:36 - last edited 2024-01-05 12:29:21

  @AADuw 

 

I Understand now the requirements to reach this goal.

 

To wrap up this post How would 802.1Q (Isolation) be benificial in this case when setting up this home network ?

 

Thanks

  0  
  0  
#6
Options
Re:Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?
2024-01-08 01:32:38

Hi @AADuw 

Thanks for posting in our business forum.

AADuw wrote

  @AADuw 

 

I Understand now the requirements to reach this goal.

 

To wrap up this post How would 802.1Q (Isolation) be benificial in this case when setting up this home network ?

 

Thanks

Beneficial, how? You should be more specific.

It is beneficial for the business environment where they need to separate and isolate the departments and be clear about their access path. It would be great for the network management.

I don't know if this is "beneficial" for your home network. Anyway it is contradictory to what you need.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  0  
  0  
#7
Options
Re:Home VLAN Segregation - How can I reach the devices in each VLAN from my PC ?
2024-01-08 09:06:35

  Simply having your devices in different vlans will help keep traffic "clean" where you want it clean.  This is especially true in regards for IOT devices and your CCTV network by both decreasing congestion on your main user vlan and giving you better control and visibility of traffic within all of them.  For instance, you can have a much more strict dns policy with Pihole or AdGuard in the IOT vlan, and that would cover a significant problem area since they like to collect data on you and your network.  Using ACLs to segregate it further wouldn't be the worst idea, but those devices likely don't have a decent way to even know about your other networks.  Some might be that sneaky somehow.  If you want to lock down your cctv network access to, say, just one host with ACLs, that would need doable too im sure.

 

You would have to assess your own benefits really.  If you want something anecdotal, I do not use ACLs to lock down a whole lot at home. Putting devices in appropriate broadcast domains will almost always be sufficient and blocking/blackholing things with DNS is even more effective. At least that's how I operate.

  1  
  1  
#8
Options

Information

Helpful: 0

Views: 494

Replies: 7

Related Articles