Help / Question about OC300 controller and switch

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Help / Question about OC300 controller and switch

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Help / Question about OC300 controller and switch
Help / Question about OC300 controller and switch
2022-11-24 21:22:09
Model: OC300  
Hardware Version: V5
Firmware Version: 1.13.1 Build 20220921 Rel.35923

Hello,

 

I need help and have a qeustion regarding an issue regarding OC300 and one of our TP Link switches:

 

Hardware setup:

 

  • OC300 Controller
  • ER7206 Router
  • 3x TL-SG3428 
  • 1x TP-Link TL-SX3016F

 

We have attached on image about the setup and the issue. Description:

 

OC300

One important question: can we manage the switch 1 over the controller OC300 but the switch 1 should not be a part of the internal network? So this means that we can maybee make firmware upgrade and see status, traffic of the switch 1 but it should not assign any ip address from internal network to connected device on the switch 1. The switch is used to split our WAN connection to other devices e.g. server which has own public ip adresses over the WAN connection. Currently we have not connected the switch to controller network as we do not know how to make the setup with the controller.

We have try this with the second port of the oc300 controller but the switch isautomatically go inside our network which is not good about security reasons.

OC300

One important question: can we manage the switch 1 over the controller OC300 but the switch 1 should not be a part of the internal network? So this means that we can maybee make firmware upgrade and see status, traffic of the switch 1 but it should not assign any ip address from internal network to connected device on the switch 1. The switch is used to split our WAN connection to other devices e.g. server which has own public ip adresses over the WAN connection. And also not do a network loop etc.

We have try this with the second port of the oc300 controller but the switch isautomatically go inside our network which is not good about security reasons and we do not want to have a loop inside the network. Maybee port isolation or with VLAN and ACL?

 

I hope you can help with my issue.

 

Many thanks in advanced!

  0      
  0      
#1
Options
4 Reply
Re:Help / Question about OC300 controller and switch
2022-11-24 21:43:09

  @Cij 

 

The TL-SX3016F is not on the Omada compatibility list

 

https://www.tp-link.com/us/omada-sdn/product-list/

  0  
  0  
#2
Options
Re:Help / Question about OC300 controller and switch
2022-11-24 21:47:10
Yes, I know. My question is regarding the 3x TL-SG3428  Switch 1 -> TL-SG3428  Switch 2 -> TL-SG3428  Switch 3 -> TL-SG3428  My question is it possible to manage switch 1 over the OC300 controller but it should be not a part of the internal network. So maybee with an isolated port etc.?
  0  
  0  
#3
Options
Re:Help / Question about OC300 controller and switch
2022-11-24 21:57:31

  @Cij 

Hi, bit confused here, your diagram shows switch 1 is a TL-SX3016F....

  0  
  0  
#4
Options
Re:Help / Question about OC300 controller and switch
2022-11-24 22:03:56

  @Tescophil Mh I think it is the right one :)

 

TL-SX3016F

https://www.tp-link.com/de/business-networking/managed-switch/tl-sx3016f/

 

TL-SG3428

https://www.tp-link.com/de/business-networking/managed-switch/tl-sg3428/

 

But the images are not necessary, sorry for that. I have made a screenshot from my controller and marked the right switch which I will connect with the controller but not with the network.

 

  0  
  0  
#5
Options