What's new

Using AC86U and N66U as router and managed switched for VLAN tagging/trunking

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

So a fun thing I just found in researching (and testing) those TP Link switches is that you can't define a management VLAN and the management IP is available from every port on the switch, no matter what settings you change. So my "untrusted" VLAN can still access the management IP if you set a static IP in the correct range, and can still see traffic to/from the management IP. Going to replace them with two D-Link DGS-1100-08V2 that should do the same thing for $10 more each but allow setting a separate management VLAN that's not accessible from all ports.

I have the TPLink 108 managed switch. I have read other warnings from other websites about this issue. I read into it that TP-Link is aware of it, but it is designed this way. You need the commercial version for better.
 

Latest threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top