Guest WiFi passthrough INSIDE local lan?
Ok so I'm trying to setup a guest wifi on a remote site we have. I cannot use a DMZ as our ASA only has base license. I also only have one router that can handle multiple SSIDs. So with the diagram below (everything is in place besides the guest wifi...) is this possible while restricting guest wifi to only the internet? The employee wifi is currently working.
Side note we also don't have any extra ports on the 1941 Otherwise I would have just setup a vlan and used that so it has to go through the brocade. If this is not possible let me know
Uploaded with ImageShack.com
Side note we also don't have any extra ports on the 1941 Otherwise I would have just setup a vlan and used that so it has to go through the brocade. If this is not possible let me know
Uploaded with ImageShack.com
Comments
-
phoeneous Member Posts: 2,333 ■■■■■■■□□□Since the icx6430 is layer2 only, you can create subinterfaces on the 1941 lan interface and use them as your respective gateways.
Also, you shouldnt be using vlan 1 for production traffic. -
Khaos1911 Member Posts: 366is there a firewall separating (between) guest wireless and the internal network?
-
loxleynew Member Posts: 405Since the icx6430 is layer2 only, you can create subinterfaces on the 1941 lan interface and use them as your respective gateways.
Also, you shouldnt be using vlan 1 for production traffic.
So basically divide the interface into 2 interfaces? -
loxleynew Member Posts: 405is there a firewall separating (between) guest wireless and the internal network?
Nope no firewall. Well I guess I could use the Asus as another firewall if needed. -
phoeneous Member Posts: 2,333 ■■■■■■■□□□So basically divide the interface into 2 interfaces?
A physical interface can have hundreds of logical subinterfaces, not just 2. But for your case, correct, you would only need two. Look up router-on-a-stick.