53
submitted 2 months ago* (last edited 2 months ago) by [email protected] to c/[email protected]

Help I now have several lans

top 18 comments
sorted by: hot top controversial new old
[-] [email protected] 9 points 2 months ago

It just means you need to figure out how to route between them, that's all.

[-] [email protected] 6 points 2 months ago
[-] [email protected] 10 points 2 months ago

You get a gateway, and you get a gateway.

Everybody gets a gateway!

[-] [email protected] 11 points 2 months ago
[-] [email protected] 3 points 2 months ago

Virtually…

[-] [email protected] 3 points 2 months ago

It's going to haunt you for years. Wife: "why doesn't this iot thing work?" Oh its on the wrong network. "I don't understand it just doesn't work". Then I go add more exceptions in pfsense and the cycle continues.

[-] [email protected] 5 points 2 months ago

The correct way of doing this is to never interact with an iot device directly. Put all of them on the same network with Home Assistant and then control all of them only via Home Assistant. Then you make one exception for home assistant to be accessible to the other networks.

This also allows you to disable Internet access for every single iot device Except home assistant.

[-] [email protected] 1 points 2 months ago

I have so much trash on my network. For instance my security cameras are decentralized and we use tinycam on android to view them so I had to allow an exception for rtsp to get between the dirty iot WiFi and our normal WiFi. Our WiFi connected Bose speakers and Spotify is also another set of annoyance, they will only work if you try to connect to them from the same subnet via Spotify and app. I've tried to NAT the traffic and it didn't work.

[-] [email protected] 1 points 2 months ago

It's not easy but they only way to make it all work without creating massive security holes is to only buy things that allow connection with open standards (which means home Assistant can connect to it.

[-] [email protected] 2 points 2 months ago

Wan rules already takes 5 minutes to load. No more hosting, only blacklists.

[-] [email protected] 1 points 2 days ago

That's not least privilege

[-] [email protected] 6 points 2 months ago
[-] [email protected] 4 points 2 months ago

Well it was worse around lan 2, now it's definitely worst

[-] [email protected] 0 points 2 months ago

Hah, can Op's grammar get any worst

[-] [email protected] 5 points 2 months ago

I have a Mikrotik router, 2x VLAN-enabled switches, and 3x VLAN-enabled APs. My Internet access broke every day for a month while I figured out what I was doing.

[-] [email protected] 3 points 2 months ago

Have you tried a patch cable‽

[-] [email protected] 5 points 2 months ago

No need I have vlans

[-] [email protected] 1 points 2 months ago

Managed switches are the way to go. I have various segments and none talk to each other.

this post was submitted on 01 Jul 2024
53 points (98.2% liked)

homelab

6466 readers
3 users here now

founded 4 years ago
MODERATORS