Not very good at drawing network diagrams… but I’ll look into it.
Just na FYI… I tried direct connect to Balance 20 Lan port (Access: VLAN21)… plugged in Airplay enabled hometheater receiver, confirmed it gets an IP in the vlan (10.57.21.52) …
Iphone accessing from MainLan…AirPlay device appears in the list, but connection times out.
Here is my Vlan AP configuration:
Note i have tried with L2 isolation unchecked, still did not work.
Hello @stego,
Have you got your Surf SOHO configured so that the WAP is operating in bridge mode?
Do you currently have the WAN of the SOHO connected to the LAN of the Balance 20?
Let’s start by simplify this for you so you do not need to be setting up routing tables on the SOHO.
As you are using your SOHO as a WAP, do this (high-level guide):
disable all DHCP on the SOHO on all VLANs giving those VLANs a Static IP for the SOHO.
assign the required VLAN(s) to the required SSID(s).
connect only one of the LANs (not WANs) of the SOHO to one of the LANs of the Balance 20 (should have matching VLANs).
Check required VLANs on Balance 20 each have a static IP (different from the SOHO).
Check that DHCP is running on the Balance 20 for the VLANs servicing the SSIDs
leave the WAN of the SOHO disconnected (forever).
The principles are the same here for the SOHO as if you were reusing any other combined consumer router with a built-in WAP, you disable everything on the router that you are salvaging as a WAP to do with routing and make the connection LAN to LAN ignoring the salvaged devices WAN(s).
I’ve pretty much done what you listed already, with the exception of reserving the VLAN IPs for the SOHO on the B20. I have used an IP outside my DHCP pool for each vlan, but haven’t actually reserved them on the B20.
I did reserve the mainLan IP of the SOHO on the B20 however:
Yeah I was trying to avoid having inter vlan enabled. This is what I essentially did with Pihole to enable it on my vlans from my mainLAN. (Deny all except dns traffic)
Your article mentions Apple protocol. Didn’t know that was an option, or you meant you listed out all the Apple protocols separately?
Quick question, turning my SOHO into AP also seems to bypass/ignore any firewall access rules and content blocking… to be expected as these rules are applied for anything going through the WAN interface.
I admit i was a little disappointed that the B20 doesnt have content blocking categories like the SOHO does. Not sure why, but I figured the Balance line would have more features than the SOHO.
@stego, sorry to hear that of the status for your Balance 20. You may need to open a ticket to proceed RMA if it still under warranty.
I suspect your problem is related to the multicast communication, not Bonjour Forwarding. Try to enable IGMP Snooping in SOHO’s SSID as below to confirm it helps if you have a replacement Balance router for the Balance 20.
I have enabled IGMP snooping on my untagged LAN as you recommended.
I also have a TrendNet managed switch and also enabled IGMP snooping on it as well. The POE switch is powering 2 AP AC minis.
Now I can Airplay to my AppleTV on the IoT vlan but that is most likely due to having allow firewall rule set for it with inter vlan routing enabled. This is my HomeKit hub.
Any other Airplay device connected to my IoT vlan doesn’t appear in my Airplay list in iPhone.