Home Network Vlan Design
Each vlan has an associated vlan id 802 1q tag.
Home network vlan design. You can find them in most organization with a properly configured network. In case it wasn t obvious vlan stands for virtual local area network and they re ubiquitous in any modern network beyond the size of a tiny home or very small office network. Tagged network traffic contains vlan id info and would only be accepted by devices that carry the same vlan id. Vlan 10 for the secure network where your phones tablets computers and nas live.
I m going to start with a diagram of the network. Vlan 50 is where all of the servers live. This post is a description of my home network setup based on gigabit ethernet. The vlan 10 connects to the internet via the isp and the vlan 20 connects via the vpn.
Vlan 20 for the device network where all your connected devices including smart tv speakers lights thermostats etc. Just take a look click to enlarge. These include vlans 1 and 1002 1005. In the early days of networking splitting a network into segments required a router.
Vlan 30 for the guest network. The design is exactly the same as if you had a dsl port on your router instead of vlan 7 and then hooked up a bunch of dumb switches all over your house. In doing some background reading on good network design i have seen that segmenting the network with vlans has some advantages even for a relatively small network such as mine within a home. Now we will use vlan technology to add more logical subnets to the home network.
Vlan design for home network. I now have replaced my mac mini with a hp n40l router based on ubuntu 12 04 lts. Also the apple tv and the airport express reside here. Before creating new vlans there are two changes i suggest making.
It just takes a while to not think it is weird to plug the wan port of a router into switch port 1 and the lan port into switch port 2. Although supporting 4096 per vlan spanning tree pvst would be nice one for each vlan there is an ios limit of 64 instances of spanning tree instances. Vlans or virtual lans is a technology that allows you to split a home network into segments using low cost switches. Generally a switch will send broadcast traffic to all connected ports and will allow devices connected on any port to communicate with any other device.
Virtual lan vlan vlan is a logical group of devices to form a sub network. Vlan 40 is for dmz as i plan to have ssh access to my home network at some point in the future. The creation of vlans starts at network network settings shown below. I d like to understand a bit better what the basis should be for my deciding that a particular device should sit on a different vlan.
I did a non standard trick with vlans that may also be of interest to other people. I might move the apple tv and airport express to another vlan in. In a home network a minimum of 3 vlans are required.