My home network has grown out of control and I want to invest a little time and money to make sure we are getting the best possible performance and also improve security.
We usually have 4 to 6 high bandwidth connections (IPTV, Video Conferencing, etc.) and about 60 total connections (PCs VPN'd into work/School, Phones, Tablets, TVs and STBs, IoT devices, etc.) to the network at any one time. About 40 are wired and about 20 are wireless.
I run a Netgear R7800 for firewall, DHCP Server, 5 and 2.4GHz Local and Guest networks directly from ISP Cable Modem via CAT6. We have 250/25mbps plan today, but can see this increasing over time. I have a Netgear R7000 running as an AP via CAT6 from the R7800. I have a 24 port unmanaged switch also from the R7800 via CAT6. I have about 6 other 8-port unmanaged switches throughout our house connecting all the wired devices. Amazingly, it all runs pretty good most of the time. When we have a couple TV's streaming IPTV with 4 computers on Video Conferences, sometimes we run into some issues, but hard to know if it is on our end our not. I have a 3rd Asus AC1900 router that I am currently not using.
For the most part, I put the work and school computers and wireless IoT devices on the Guest WiFi network so they can only get to the internet. I have made a couple of exceptions for convenience and I know this leaves my network vulnerable. I would like to be able to implement vlans to control what devices the IoT devices can and can't interact with and also be able to have work laptops on ethernet, but not able to see anything on my network accept for my network printer.
I know that my routers don't support vlan out of the box and I am not really interested in running dd-wrt or other similar firmware on my routers.
I have spent a little time looking at Wired routers like Ubiquiti ER-X and ER-4, and similar offerings from Microtik, Cisco, Linksys, TP-Link, etc.
I also know that there are smart switch options that support vlans from these same and other suppliers. I haven't put much time looking at these yet.
I want to avoid any subscription services. I also prefer to avoid needing to use SSH and CLI interfaces. I much prefer IP accessible web interfaces for configuring the products if possible.
Q1: Which equipment needs vlan support to do what I am asking for? Can I just buy a new Wired Router, or just a new smart switch, or do I need the router, the switch, and the APs to all support vlans?
Please provide suggestions or links to concise information to help me learn what I need to make this work. Note that I prefer not to spend more than a couple hundred dollars to implement.
Thank you!
We usually have 4 to 6 high bandwidth connections (IPTV, Video Conferencing, etc.) and about 60 total connections (PCs VPN'd into work/School, Phones, Tablets, TVs and STBs, IoT devices, etc.) to the network at any one time. About 40 are wired and about 20 are wireless.
I run a Netgear R7800 for firewall, DHCP Server, 5 and 2.4GHz Local and Guest networks directly from ISP Cable Modem via CAT6. We have 250/25mbps plan today, but can see this increasing over time. I have a Netgear R7000 running as an AP via CAT6 from the R7800. I have a 24 port unmanaged switch also from the R7800 via CAT6. I have about 6 other 8-port unmanaged switches throughout our house connecting all the wired devices. Amazingly, it all runs pretty good most of the time. When we have a couple TV's streaming IPTV with 4 computers on Video Conferences, sometimes we run into some issues, but hard to know if it is on our end our not. I have a 3rd Asus AC1900 router that I am currently not using.
For the most part, I put the work and school computers and wireless IoT devices on the Guest WiFi network so they can only get to the internet. I have made a couple of exceptions for convenience and I know this leaves my network vulnerable. I would like to be able to implement vlans to control what devices the IoT devices can and can't interact with and also be able to have work laptops on ethernet, but not able to see anything on my network accept for my network printer.
I know that my routers don't support vlan out of the box and I am not really interested in running dd-wrt or other similar firmware on my routers.
I have spent a little time looking at Wired routers like Ubiquiti ER-X and ER-4, and similar offerings from Microtik, Cisco, Linksys, TP-Link, etc.
I also know that there are smart switch options that support vlans from these same and other suppliers. I haven't put much time looking at these yet.
I want to avoid any subscription services. I also prefer to avoid needing to use SSH and CLI interfaces. I much prefer IP accessible web interfaces for configuring the products if possible.
Q1: Which equipment needs vlan support to do what I am asking for? Can I just buy a new Wired Router, or just a new smart switch, or do I need the router, the switch, and the APs to all support vlans?
Please provide suggestions or links to concise information to help me learn what I need to make this work. Note that I prefer not to spend more than a couple hundred dollars to implement.
Thank you!