Title: Configuring VLANs to isolate untrusted traffic
Post by: brbaker on December 06, 2019, 07:36:44 PM
I want to isolate untrusted traffic from the rest of my network. Scenario is:
Two VLANs. One named "HOME", and one named "UNTRUSTED"
Both need access to the Internet through a pfSense Router.
Router is on port 24 of the DGS-1100.
Untrusted clients are plugged into switch port ranges 11-15
All other ports are for the trusted network.

I've tried 802.1Q VLANs and Port-based VLANs but can't get it to work. But I read somewhere that because Port 24 needs to carry both VLANs I need to use 802.1Q... (Is that right?)

Is there a good tutorial for doing this? (The product doco is not entry-level)