Using an unmanaged switch to extend the wired LAN in a Deco Mesh

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Using an unmanaged switch to extend the wired LAN in a Deco Mesh

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Using an unmanaged switch to extend the wired LAN in a Deco Mesh
Using an unmanaged switch to extend the wired LAN in a Deco Mesh
2023-01-24 22:05:32

On my 3-floor house I want to create a wireless/wired network using a Deco X50 router on teh main floor with the multimedia users, and M9 satellites on the other 2 floors. I have LAN plugs in all the rooms, some free, other for the IP cameras and other dedicated to the backhauling of the Deco units; all the cables arrives in a single junction box. I think the correct setup is the following:

 

  • The optical fiber is connected to the modem of the provider (FTTH)
  • The modem is connected by lan cable to the Deco X50 port 1
  • A 24-ports unmanaged switch is connected to the Deco X50 port 2
  • All the LAN cables in the junction box are connected to the switch, included the backhaul of the Deco satellites

 

The Deco X50 will work in Router mode, it means that any forwarding rule needs to be propagated from the modem to the Deco X50 binding its address in the modem network to the port of the service and forwarded in the Deco network binding IP:port. I have two main needs:

 

1) Playstation Network: ports 80,443,3478-3480  - udp: 3478-347980,443,3478-3480  - udp: 3478-3479

2) OpenVPN udp, tcp 1194

 

I will had a mini PC running my hown host applications, for example a VPN Server, a multimedia server, etc.

 

is this a right setup?

 

 

  0      
  0      
#1
Options
2 Reply
Re:Using an unmanaged switch to extend the wired LAN in a Deco Mesh
2023-01-25 12:50:02

  @jupiter 

 

It really depends if the ISP device is a MODEM or a ROUTER.

 

If its a Modem, then fine you can just set forwarding on the Deco as needed.  If its a Router however you will need to consider double NAT and have the ISP router forward to the Deco, then the Deco forward to the client

 

Dont ever set a forwarding on 80 or 443 as that is internet traffic.. EVERYTHING will then go to your PS5 or whatever you have it set.  You only need to forward the UDP and TCP ports for data, this is usually anything OVER 1024  

For example, PSN just the 3478-3480  ports.. not the 80 443 as these are ports used for all internet traffic by all devices, forwarding them would screw your access :)

  1  
  1  
#2
Options
Re:Using an unmanaged switch to extend the wired LAN in a Deco Mesh
2023-01-26 14:04:08 - last edited 2023-01-26 15:54:47

  @Philbert PSN is not clear about what ports are inbound what are outbound, I will follow your suggestion!

 

They statement reported in PSN docs indicates:

:

  • TCP: 80, 443, 3478, 3479, 3480
  • UDP: 3478, 3479

 

and many other sources report this. It is not clear if these are outbound rules the playstation uses to connect to services or inbound rules for online gaming, when the playstation is a server. 

 

My ISP provides a modem router, but I want to use the better features offered by Deco, so I will not connect them in access point mode but in router mode. It means I need a double forwarding: ISP --> Deco and Deco --> Playstation.

 

The Deco unit should immediately route all the traffic coming from ports 80 and 443 to the fixed IP I assigned by DHCP to the playstation, not to the other IPs I have in teh network because I forward only to binded services IP:port; the risk of an exploit is only on the playstation. I will try to exclude 80 and 443, my son, the main unser of gaming, will report me the results. 

 

To avoid many forwardings, I will set up a VPN server, unfortunately this is a feature offered by other TPLINK modem, but not by noth X50 and M9: with a "triple forwarding" I will connect another TP-LINK router with wifi disabled and OpenVPN enabled.

 

jupiter

  0  
  0  
#3
Options