VLAN Profile Results in No WAN Access on Port?

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

VLAN Profile Results in No WAN Access on Port?

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
VLAN Profile Results in No WAN Access on Port?
VLAN Profile Results in No WAN Access on Port?
2023-01-14 05:35:56

I have a OC200 managing an ER605 v1.0 and TL-SG2008P v3.0.  I have watched several videos on YouTube, etc., showing guys setting up the network and creating VLANs, SSIDs, ALCs, etc., but I'm hitting a wall here. 

 

As an example, I have my Philips Hue Hub connected to port 6 of the switch.  Best I can tell, I have followed what the guys do in the videos to a T to have a VLAN created for IoT devices, etc., but when I go to Devices > Switch > Ports > and edit Port 6 to the profile IoT, the hub loses access to the Internet.  I know it's hard to know without looking at everything, but what should I check?  It clearly seems like the IoT profile is blocked from accessing the WAN but...I'm not seeing that anywhere. Any tips?? 

 

The goal is to put the IoT devices on a separate VLAN to, of course, keep them segregated from more critical/important stuff like my computers, etc.  But when I switch the profile from "All" to IoT, the Hue Hub loses internet connection currently. 

  0      
  0      
#1
Options
3 Reply
Re:VLAN Profile Results in No WAN Access on Port?
2023-01-14 15:10:22

Any additional info I need to provide or whatever so you can provide some tips or something to try please ask. Or if there is a video that walks through it in detail then let me know.  I'm sure it's a setting somewhere or somewhere that I don't have that IoT profile routing out the WAN but I can't find it. 

  0  
  0  
#2
Options
Re:VLAN Profile Results in No WAN Access on Port?
2023-01-14 22:34:42

  @msc03 The first basic checks without seeing any info from your system.  Ensure IoT VLAN is an Interface VLAN, with checks on the router port to the switch.  Make sure the switch uplink port to the router (trunk port) has a profile that includes the IoT VLAN.  Make sure your ACLs for both switch and gateway are in top to bottom order of acces to elimination.  That is, ACLs should first allow traffic before denying traffic, since the rules are processed from top to bottom of the list, and once a rule has been met no further rules are checked.  Attach a computer to a port set as IoT VLAN, and see if the computer gets internet or not.  Perhaps the Hue Hub needs a port opened, or a UPnP allowed.  Make sure the trunk port profile is not set to "Isolated", it shouldn't be, because it would cause issues with other VLANs but just adding that out there.

  4  
  4  
#3
Options
Re:VLAN Profile Results in No WAN Access on Port?
2023-01-15 02:07:29

  @JoeSea So...verified all settings and everything was good.  Got the part about checking the port with a laptop.  Ah, OK...I hadn't thought about doing that as a test (novice move, I'm proving I'm learning here, I guess...).  Guess what?  Internet access but no access to the other VLANs (yay!) so...I guess I really did set it up right. I'll dig further into it and see if it's a port thing or what.  THANK YOU for your thorough response here.  I truly appreciate your taking the time to give me those suggestions.

  0  
  0  
#4
Options