I am trying to wrap my head around VLANs to segregate my home network in several subnets with their own SSIDs.I have an OpenSense box as my router. and a two Netgear manageable switches. The AP will be VLAN aware with multi SSIDs such as TP-Link EAP245.
My plan is as following:
Router <-----> Switch <---- VLAN TRUNK ----> (AP with VLAN SSIDs)
I am trying to figure out the difference between VLAN ID and PVID and how to setup the switches.
My current understanding is that VLAN ID is used for outgoing packets from a port and PVID is to assign a VLAN to untagged incoming packets.
I found this tutorial on tp link website that is a close scenario to my situation. I understand most of the setup however I am confused regarding Port 2 which they use in their example for the Router. At some point they say:
Port 1 must be configured as “ tagged” while Port 2 must be configured as “untagged”.
For Port 1, I understand that it must be tagged, as all VLANs are passed to the AP in a VLAN trunk. Why does it have PVID 1 on all VLAN IDs ?
For Port 2, I understand it must also be part of all VLANs since it handles routing, but why did they mark it untagged with PVID 1 on all VLAN IDs ?