Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

How do I set up a WiFi Router to create a private network within one.

Status
Not open for further replies.

netczar

IS-IT--Management
Feb 20, 2003
1
0
0
US
I have been told that there is a way to connect a WiFi router, i.e. Linksys, Netgear, etc, to a port on a Summit switch and then configure that port to allow traffic to flow to the internet only, and not see anything inside the primary network, just internet traffic.

The WiFi router would issue private ip addresses (192.168.x.x)using it's built in DHCP server.

We need to do this once and a while and it would be handy if it were so.

I have taken a wack at this a few times with no luck, and I don't have time to really think about it, so any help would be greatly appreciated.

Cheers.
 
First off, how does your internet feed into your network. Since there's not a whole lot of informaiton I'll out line how i'd do it for a small office with limited funds.

A layer 2 vlan (no routing enabled) would have the internet feed, the WAN interface of the WIFI device, and whatever Firewall device you use for the internal network. Don't patch any of the LAN ports in to the internal network.

For remote mgmt, create another layer 2 VLAN, for the internal interface. place a static route to get to the WIFI's internal interface via it's external interface and have remote mgmt disabled for the external interface of the WIFI.

If you need more assistance, please provide more description. Please don't use your actual IP's.
cheers

 
This doesn't exactly answer your question but I usually do this with two devices. 1 your wireless router and 2 a second firewall device. If you put the wireless router on the outside (between the internet and firweall) it will allow access to the internet but the firewall will block the pc's on the wireless network from reaching the local network.

 
In your question you said "traffic to flow to the internet only, and not see anything inside the primary network, just internet traffic."

Do you or don't you want wireless users accessing the internal network? I'm confused.
 
He probably wants a guest wireless LAN...
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top