drinkingbird
Part of the Furniture
So I am back on 386.5. I have configured Guest Network 2 and it behaves like the old Guest Network 1. It is the same subnet as the regular network, but uses firewall rules to block communication. Tested and cannot ping or reach anything on the main network from the guest network. So I guess the bug of being able to access the main network from GN2 and 3 is fixed. Since GN2 and 3 does not create these new special VLANs for AIMESH that were causing the WAN issue, I suspect it will be fine now. But time will tell.
I may still move to GN1 as having the separate subnet and interfaces offers some more flexibility, I can more easily put a physical LAN port in the guest network and also set up a VLAN trunk to my outdoor AP to extend the guest network to that too. But will need to manually remove those 5xx VLANs from port 0 if I do that. For now will wait and see if things are stable like this.
I may still move to GN1 as having the separate subnet and interfaces offers some more flexibility, I can more easily put a physical LAN port in the guest network and also set up a VLAN trunk to my outdoor AP to extend the guest network to that too. But will need to manually remove those 5xx VLANs from port 0 if I do that. For now will wait and see if things are stable like this.