Iot segmentation with Purple

Comments

6 comments

  • Avatar
    Firewalla

    If you want network layer segmentation (control devices, so they can't talk to each other), you need VLAN support, either a switch or AP that understands VLANs.

    If your devices getting segmented are all WiFi, you can buy a AP with VLAN support; (I recommend this one)

    If you have extra wifi unit, you can buy a switch and use wifi unit as access points, that will create you x VLAN. (x is the number of wifi unit you have) 

    0
    Comment actions Permalink
  • Avatar
    Bill Wilhelm

    I use my Firewalla purple along with an Orbi mesh WiFi AP (in AP-only mode).
    I have 4 VLANs for Trusted, IoT, Streaming and Guest(s). Works great.

    0
    Comment actions Permalink
  • Avatar
    Firewalla

    Do you use any switch in between?

    0
    Comment actions Permalink
  • Avatar
    Bill Wilhelm

    I used no switch. The Orbi AP understands incoming VLANs from Firewalla and has four separate radios, one per VLAN.

    0
    Comment actions Permalink
  • Avatar
    thobu

    are you saying that the VLANs are picked up if the router is set to AP mode? Is FW doing the DHCP stuff then?

    0
    Comment actions Permalink
  • Avatar
    Firewalla

    VLAN is a layer 2 feature, so firewalla will need to know those VLAN's and also DHCP addresses to the connected device via those VLAN (usually mapped to some SSID)

    0
    Comment actions Permalink

Please sign in to leave a comment.