My Starlink VLAN Setup

  Рет қаралды 55,359

Crosstalk Solutions

Crosstalk Solutions

3 жыл бұрын

In my recent Starlink videos, I mentioned that I was running my Starlink Internet service through a VLAN from a switch down in my garage all the way up to a WAN port on my EdgeRouter X. A lot of folks commented on those videos and wanted to know how I did that, so this video will explain it! Hopefully that is...VLANs are a lot to wrap your brain around, and theyr'e pretty difficult to explain - any questions I didn't answer, put down in the comments below!
--------------------------
Buy me a beer! ko-fi.com/crosstalk
Or donate some Crypto! crosstalksolutions.com/contact/
Follow me on Twitter: @crosstalksol
Crosstalk Solutions - RECOMMENDED PRODUCTS: crosstalksolutions.com/recomm...
Crosstalk Discord: / discord
Amazon Wish List: a.co/7dRXc67
Crosstalk Solutions offers best practice phone systems and network/wireless infrastructure design/deployment. Visit CrosstalkSolutions.com for details.
Connect with Chris:
Twitter: @CrosstalkSol
LinkedIn: goo.gl/j2Ucgg
KZfaq: goo.gl/g4G58M

Пікірлер: 147
@JackHurley624
@JackHurley624 3 жыл бұрын
OMG! Thank you so much! I've struggled to understand VLANs thinking I had it many times. The way you explained this setup finally made the lightbulb go on for me!!!!!
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
Glad to hear it!
@doalwa
@doalwa 3 жыл бұрын
Just wanted to say a quick Thank You! Ever since I’ve stumbled across your channel years ago, I’ve learnt so much about networking in general and UniFi in particular! Keep up the GREAT work 👍
@mikeraineri4018
@mikeraineri4018 3 жыл бұрын
Why doesn't Chris have a mil in subs yet? 2 years ago he taught me Free PBX and it now handles 600 calls into our dispatch center per day and then convinced me to switch to Unifi equipment saving hundreds a year in Meraki license fees.
@Defan24
@Defan24 3 жыл бұрын
This has been the best explination of VLANs I've heard in a long time. Thank you so much!!!!
@stevenbertram8226
@stevenbertram8226 3 жыл бұрын
I've done this with a DSL ISP before. Are you getting StarLink clients on your VLAN?
@KennethFox
@KennethFox 3 жыл бұрын
I'm not a network engineer and have only lightly dabbled in VLANs... usually enough to be confused. I followed what you did. Excellent job explaining it!
@StuartTurrell
@StuartTurrell 3 жыл бұрын
Very imformative video, enjoyed this one, learnt a lot, thanks Chris, VLANS are something i want to bring into my unifi home network.
@gregamb
@gregamb 3 жыл бұрын
Very interesting use of vLANs. I'd never thought of doing that. My default solution/thought of aggregating different ISPs would be on gateway/firewall level and then split it up into VLANs.
@DRAGONFANG18
@DRAGONFANG18 3 жыл бұрын
im just a beginner and I love learning about setting up a network in my home. Thanks for this!
@SteveSwags
@SteveSwags 3 жыл бұрын
Great video, Chris! As a tech hobbyist, but nowhere close to a professional, I love watching your stuff to get ideas for my own home UniFi network!
@tac73
@tac73 3 жыл бұрын
Ya know, It hadn't dawned on me to create a VLAN on my switches, for the WAN. I saw part of this video, before I ran into my office, and reconfigured 2 Edgeswitches, for the WAN connection between my cable modem, and my pfSense box, which are across the room from each other. Now, I have 1 less 30 foot cable in the mix. Great idea!!!
@Daniel-od5zm
@Daniel-od5zm 3 жыл бұрын
Thank you! This video was tremendously helpful and understandable. This explains how you can route 2 ISPs through your network to the edge router for testing Starlink. I would love a video comparing "VLAN Only" to "Corporate LAN" with VLAN ID and how to segment or wall off each or perhaps allow cross-talk. (IOW: a use case where there's only one ISP but you want a certain VLAN not to be visible to the rest of the network and vice-versa, perhaps only accessible through VPN)
@5280Woodworking
@5280Woodworking 3 жыл бұрын
I actually don't think it was that complicated the way you explained it. Very helpful and informative.
@tomvassie
@tomvassie Жыл бұрын
Chris, thank you… I’ve always only half ‘got’ VLANs but this has just made the other ‘half’ make more sense!!
@tjs4689
@tjs4689 3 жыл бұрын
Will definitely have to watch this several times to gain full benefit from it! Thanks...
@heli051
@heli051 3 жыл бұрын
Now I finally understand the difference between tagged and untagged VLANs - thanks Chris
@webluke
@webluke 3 жыл бұрын
I was working at a local WISP and we had an Unifi city-wide network with private fiber links to towers and we used something similar. There was a Mikrotik router and a set of VLANs that were set for different IP blocks and we would set ports of Unifi switches to connect customers in office buildings, and CPE radios we would just set the VLAN for the customer side Ethernet port to give them internet. This setup was really easy to work on because it was an Unifi network underneath and I could pull up a phone or tablet and make changes, the IPs for the Internet were controlled by the Mikrotik and Sonar. VLANs are hard at first to get your head around butt once you realize they are just virtual network cables from one thing to another its not bad.
@xrekonx
@xrekonx 3 жыл бұрын
Great explanation and breakdown. Wish I had the patience to sit down and write up how my network is setup. I work in IT so I try to replicate what I have to work with day in and out. Ended up setting up an external PfSense firewall, and then an internal one. Took some time to do so I could get VLANs, static routes, and DNS to work how I wanted but it's videos like this that either sparks someone's interest to give it a shot, or are an Ah Ha! moment for someone that's been hitting road blocks. Great video.
@xrekonx
@xrekonx 3 жыл бұрын
For what it's worth, for any untrusted devices that are hardwired, such as IDIoT devices, I recommend putting them on access ports and not trunked ports. Wireless would be isolated to the VLAN specifically assigned to that SSID if they are setup properly. This would prevent them from being compromised by modifying the VLAN tags to hop VLANs in the event they are exploited.
@xrekonx
@xrekonx 3 жыл бұрын
Then I watched the rest of the video and my foot was put in my mouth.. :D
@winchy1995
@winchy1995 3 жыл бұрын
Well from watching this video I was able to get my WAN connection over a Vlan. Works lovely now I have a switch next to my ISP modem. Looks funny having a short cable coming from my UDM Pro switch into its own WAN Port.
@mytime34
@mytime34 3 жыл бұрын
I followed your video and I was able to mount my Starlink on my pole barn, connect to the US-8 (Starlink VLAN Port 5) to my UDM Pro (Port 5) to the Peplink Router. Thank you
@pitsnipe5559
@pitsnipe5559 3 жыл бұрын
As always, thank you, Chris.
@jamesmonks
@jamesmonks 3 жыл бұрын
I have been thinking about doing this for a long time thanks for the video on how you would do it
@TheNokista
@TheNokista Жыл бұрын
I confess that I choose Unifi because of you. What you teach here is very well paid in other places. I have 2 UAP6 and 1 UDR, and I configured everything without any major problems.
@lucasr5995
@lucasr5995 3 жыл бұрын
I finally understand tagged vs untagged, 👍
@jeffreymiller4702
@jeffreymiller4702 3 жыл бұрын
Chris, since the UDM Pro still doesn't implement IGMP-Proxy I had to do this same setup on my AT&T fiber with U-Verse TV in our Unifi environment. I have 2 uplinks coming out of AT&T's Arris BGW210-700 gateway: one in IP-Passthrough mode to the UDMP, and the other to SFP25 on the USW-24-POE switch. That port is setup as VLAN-Only VLAN10. From the USW I have "All" uplinks to the 2 devices that need it: a US-8 in the media room for the DVR (the DVR's port profile is set to that VLAN10 which feeds a set-top box), and a UAP-AC-IW in the in-law apartment, with one of the uplink ports on that AP profiled to VLAN10. The AT&T gateway does all the DHCP, routing and IGMP spoofing for that VLAN10 so the DVR and set-top box get IPs and clean, uninterrupted signal on AT&T's bizarre unicast to multicast IPTV implementation. I have no IGMP snooping on any of my LAN (VLAN1) or IoT VLANs, and the rest of the uplink trunk profiles are set to only deliver those 2 VLANs.
@MrSensat78
@MrSensat78 3 жыл бұрын
perfect explanation of vlans
@elminster8149
@elminster8149 3 жыл бұрын
This is a neat way of routing WAN traffic through an internal network, while still keeping separation. In principle you could even replace SL with a competitor product down the road (if one ever materialises) with minimum effort.
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
Yes - absolutely...this would work for any Internet provider. For instance, if where they put their equipment isn't close to where you need it to be.
@markrichter7504
@markrichter7504 3 жыл бұрын
Nice explanation Chris!
@edwardbullman4598
@edwardbullman4598 3 жыл бұрын
Hi Chris I did a similar set up to what you did a few years ago using unifi switches. passing an ISP modem ethernet connection through on a separate VLan to the wan port of my router to a different part of the building.I found that if you click on clients in the unifi controller you could see devises on the ISP network that were not on the site where I was located at the time.
@DarrenRipley
@DarrenRipley 3 жыл бұрын
Love your vids~! Also, where did you get that T568B wall art? That thing is awesome~!
@TomJones-uf5sl
@TomJones-uf5sl Жыл бұрын
You made it seem easy! Thank you!
@tmillerau
@tmillerau 3 жыл бұрын
Fantastic video update... thank you 🇭🇲
@JohnWizz
@JohnWizz 3 жыл бұрын
Great explanation! Well done!
@landonnoll440
@landonnoll440 3 жыл бұрын
Question: Consider the case for a UniFi camera / UNVR setup where you don't want someone to be able to disconnect an outside camera and "jack into your network" and see internal traffic. You still want to be able to access the UNVR, suitably authenticated, even when you are offsite. How would VLAN's play a role in protecting your LAN from a potential intrusion should someone "jack into a camera ethernet plug"? Perhaps you might even consider making a video on how to secure/isolate a camera network while still allowing the UNVR content to be accessed.
@deesmith4266
@deesmith4266 3 жыл бұрын
Very timely video! When I get my Starlink system (sometime this year I hope -- I live in southeast Texas), I will have to mount the dish on my barn to get a clear sky view. I was thinking about using a new Nanostation AC bridge from my barn to my house to use as the separate internet source as WAN 2 on my USG. Maybe that isn't necessary if I interpret your information correctly! I already have a NS5 AC Loco RF bridge from the barn to support a couple of switches, an AP, and some security cameras out there with the cameras all on their own VLAN. Do you think I can piggyback on that system to bring my Starlink source back to my USG basically as you described?
@ChazLakinger
@ChazLakinger 3 жыл бұрын
I do something similar. I have my WAN coming in on a VLAN, but my firewall is a VM in a vSphere cluster. I can migrate the VM to any host server in the cluster, and if the host running the VM fails, it automatically starts up the VM on another host. Pretty overkill for a homelab, but I make a point to have redundancy in everything I do.
@TrulsZK
@TrulsZK 3 жыл бұрын
Reminds me on how I use pfSense with a single NIC laptop and a Managed Switch. WAN on separate VLAN and that VLAN untagged as Access port on the Managed Switch.
@nicksvids21
@nicksvids21 2 жыл бұрын
I do the excat same thing from my Barn that has a clear view of the sky. Then I run that VLAN.574 via the Uniifi trunk into my office and then tag it into my PFSense. I created a tagged VLAN.574 in PFSense and set it up as a backup internet connection so if/when my primary fails, it automaticaly switches over to Starlink.
@mytime34
@mytime34 3 жыл бұрын
Will you be making a video, where you combine Comcast and Starlink together via Pfsense or even with a USG/USG-Pro/UDM/UDM-Pro? I currently am using Comcast (PTP Nanobeam) into my USG-Pro WAN 1. WAN2 is coming from a Peplink Max HD2 (with Comcast WIFI WAN, Starlink and Cellular). Because I am in a rural location my options are limited, unless I want to spend a fortune for Comcast directly to my home. Thank you for the videos
@kevinhughes9801
@kevinhughes9801 3 жыл бұрын
Excellent video great explanation thanks
@GunMD
@GunMD 3 жыл бұрын
Great explanation. Thanks
@johnheller2311
@johnheller2311 2 жыл бұрын
With other manufacturers, the default VLAN is say VLAN 1. All ports are set to this by default, and it is not trunked to other switches. You then create VLANS for specific purposes, and set ports for client devices to one specific VLAN port. The only normal exception I see to this is if you want to use a single port port for a VOIP phone with a pass through port to connect your computer. This normally limits the connection speed of the PC to 100 megs, so its not the best. Hopefully these days in any business, you will have 2-3 Cat 6 sockets at each desk.
@coltimm
@coltimm 3 жыл бұрын
Great video Chris, a little off topic but, a few videos ago you said you might cover an upgrade from Cloud Key Gen2 to UDMpro, this is something I am about to do and your help and knowledge would be great?
@brokensysadmin
@brokensysadmin 3 жыл бұрын
Man, I've been doing the same thing with both Starlink AND T-Mobile ISP. I just thought it was more convenient to run the WAN through the switch first in case I ever needed to bypass my firewall with my computer.
@madychan3164
@madychan3164 9 ай бұрын
Thank you so much!! It really made things easier for me. How'd you recommend getting rid of all the unknown devices within the segregated Vlan? I have made sure to block all internal Vlans on Vlan only ports
@BrandonMcBain
@BrandonMcBain 3 жыл бұрын
I'm not too familiar with vlans (as I haven't been in the field with hands on experience) but everything made sense except for the last part but, I'm only on 3 hours of sleep right now
@CaptainLeo
@CaptainLeo 2 жыл бұрын
Given the two ISP's, is it possible to avoid load balancing and create a seperae WiFi network for each indivuadal ISP?
@softwarephil1709
@softwarephil1709 11 ай бұрын
Good video! Question: Did you have to put Starlink in bypass mode to turn off its DHCP?
@chrisroose
@chrisroose 3 жыл бұрын
One note for people new to VLANs that wasn't explicitly called out in the video: never expose tagged frames to end-user devices. In other words, all trunk traffic should be at the infrastructure level, between switches or APs, not on any access ports on your switches. Also, Chris -- I assume there is a physical limitation that prevents you from doing this, but it seems you could benefit from a hierarchical architecture by running your USW-24-PoE as a distribution switch and trunking to your garage. That way all inter-switch traffic would pass through the USW-24-PoE and you can centralize inspection and services there.
@ckfritts
@ckfritts 3 жыл бұрын
I work for an AV company in the mountains of Idaho and just setup StarLink into a ubiquiti USGPro and a NanoBeam PTP shooting to a barn over 500’ away. The barn was getting 300gbps down 🤯
@johnheller2311
@johnheller2311 2 жыл бұрын
I need to set up a unifi test lab at home. I've tried several times, but I keep on selling the hardware I've put aside to clients. There are often supply issues with Ubiquiti products, and having some pieces on hand has helped a lot. I've sold the G3 Domes I bought for my house at least 4 times. By the time I actually get to pull some cable through the roof and install them, they will have paid for themselves
@looseycanon
@looseycanon 3 жыл бұрын
Man, last time I was this early, I still had a job!
@deiwar2994
@deiwar2994 3 жыл бұрын
Excellent explanation on VLANs! Still confused but getting closer to understanding fully? By the way it seems you need atleast 3 switches to implement VLANs properly?
@wiel-spin
@wiel-spin 3 жыл бұрын
No, has nothing to do with the amount of switches. You obviously do need a switch that supports vlan tagging and untagging.
@MactelecomNetworks
@MactelecomNetworks 3 жыл бұрын
Great video Chris
@firworks
@firworks 3 жыл бұрын
Does running it this way with the untagged port connecting to the Starlink WAN leave you open to a VLAN Hopping attack allowing access to the rest of your network VLANs? Do you have to do any additional configuration inside the switch to mitigate the risk? Also what's the reason you didn't put the edge router with the PoE injector and then trunk the Starlink LAN back down to your office?
@myrthjt
@myrthjt 3 жыл бұрын
Yes.
@AndrewJamison79
@AndrewJamison79 3 жыл бұрын
It makes perfect sense to me
@allegrosoftware6329
@allegrosoftware6329 3 жыл бұрын
QUESTION: I have a printer on VLAN 10 that I want to share with Guest network that is on VLAN 120. I want Guest clients to discover and utilize printer but nothing else on the VLAN 10 network. What is best way to do this - reserve printer address in DHCP and write rules for firewall to only pass traffic to reserved IP address across VLANs?
@danlarson5730
@danlarson5730 2 жыл бұрын
I just did the same thing but 1st try was in the new user interface. I didn't see a way to do VLAN only so had to switch to classic view. Is there a way to do VLAN only in the new user interface?
@joelrggizmo1373
@joelrggizmo1373 Жыл бұрын
I've had my sterling for over 2 1/2 years with no issues. I have first generation. I have set up the second generation for a neighbor but everything is working but when you connect the mess units sometimes they like to drop off and lose connection they each have their own ethernet adapter can I plug-in a switch run an ethernet cable between each mesh unit to keep them from dropping off. Will that cause a conflict.
@EternalHumanoid
@EternalHumanoid Жыл бұрын
Hello, question, did you manage to make a Site-2-Site VPN connection with this Starlink setup? Thx.
@samhickman3813
@samhickman3813 3 жыл бұрын
Why did you choose to set up Starlink as it’s own LAN? Couldn’t you use a Starlink1 VLAN to ‘trunk’ to your USG/UDM and connect a Starlink port to the WAN 2 port? Does UniFi allow for load balancing to assign the a WAN connection to a specific VLAN? In that case a Starlink2. VLAN would have firewall rules applied. It would require two VLANs, if it is even possible with UniFi gateways, but would allow access to Starlink using your existing network. It could also serve as a failover in the case of a Comcast outage.
@ulrikhede
@ulrikhede 3 жыл бұрын
How come you use the seperate er-x for starlink and not to a wan2 interface on the sg-1100?
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
For testing and videos on KZfaq.
@davedavenport8673
@davedavenport8673 2 жыл бұрын
I like my current wifi router, Synology RT2600ac, and its software and location in my house, is it possible to setup Starlink>managed switch>Synology Router and be able to retain all the functionality of my Synology router as a router instead of making it an AP? Is that where I setup a VLAN in some way. I realize this question probably makes it clear I should not do this, but I want to learn and figure out if I can use my current router as a replacement for the Starlink router, but run through a managed switch first before getting to the router due to wifi placement for the router in the house.
@yvongionet98
@yvongionet98 Жыл бұрын
I just order today Starling and i got a Smart tv. I like to know what i need for register m'y best program on tv like i use to Do with m'y explonet box.thank you.
@TonnyCassidy
@TonnyCassidy 3 жыл бұрын
I do the same thing on my unifi network as VLAN only so i can carry wan and lan traffic with single airMax link
@nightdesigns395
@nightdesigns395 3 жыл бұрын
Any worries about having essentially public internet touching your switches? (Yes I know it's a completely isolated vLAN)? However it still resides on a Unifi switch and I've had experience with Unifi and traffic affecting separate, and completely isolated vLANs, but living on the same switch (absolutely no routing between vLANs, no router setup on either vLAN) Edit to add: I know you say that the devices shouldn't know anything about the other vLANS, but as I mentioned, I've found this not to be the case in Unifi. I've shown Unifi the issues and they've confirmed, but didn't have a resolution.
@MariuszChr
@MariuszChr 3 жыл бұрын
VLANs need separate IP subnets, right? Do we need routing between them, like let say I have a camera and want to connect to it from my phone which is in different VLAN (camera port would have untagged VLAN)?
@pico_the_1st
@pico_the_1st 3 жыл бұрын
Hey Chris, just a question: is there any special reason to have a LAN dedicated to Starlink with the Edgerouter (or another one) and everything? Or is it just to have a separate infrastructure for the secondary WAN? And do I understand correctly that you are bypassing the firewall?
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
What I have configured is essentially a completely separate WAN infrastructure - but the connection from the Starlink dish to the WAN port of my EdgeRouter X runs through my existing LAN as a VLAN.
@mikesamyn7054
@mikesamyn7054 2 жыл бұрын
I’ll review this and others again. Still confused but I’m new at all this.
@CGrantL
@CGrantL 2 жыл бұрын
This is a neat idea, but it results in additional traffic on your trunk lines
@sevyn13
@sevyn13 5 ай бұрын
I have kinda the same setup minus the Starlink. But as soon as I add the first VLAN to pfSense my 1000mbit symmetrical fiber internet speed drops to about 250/50mbit. Any ideas?
@pschofie
@pschofie 3 жыл бұрын
Hi Chris quick question do you know if there is any way to configure the UDM Pro to have load balancing of the two WAN connections rather than failover. I want to be able to have both Starlink and my other connection both active at the same time. The only option I have now is failover. Thanks Regards Paul
@softwarephil1709
@softwarephil1709 11 ай бұрын
Latest UDM firmware allows that.
@tylerbaker1531
@tylerbaker1531 3 жыл бұрын
PVID VLAN does all this but easier also mstp does a similar thing but don't know if it's avealible on unifi products
@Iran_media
@Iran_media 3 жыл бұрын
How many meters is the stretch of Starlink modem?
@thehawkinator449
@thehawkinator449 2 жыл бұрын
What is the software that you use to create system diagrams?
@IPD2001
@IPD2001 3 жыл бұрын
You are using a edge router on the end of the line. Is it possible to just use a (standard) switch instead to connect to the dish or do you explicit need to use a router (Starlinks or own router)? Have you tried it or can give it a try? Would be happy to hear from you.
@wiel-spin
@wiel-spin 3 жыл бұрын
I imagine you only get one IP, which is usual with ISPs. Thats why you need a router.
@IPD2001
@IPD2001 3 жыл бұрын
@@wiel-spin Ok. Sounds reasonable to me. Has somebody tried it - just for a test to proof it? It's new tech, so nobody knows. But as some found out the dish can do much more as expected earlier. So maybe it also has DHCP for multiple clients or more "hidden" features. ;)
@chrisschiffmacher
@chrisschiffmacher Жыл бұрын
Hi Chris, did you test Starlink with VoIP already?
@user-Millionaire-s4n
@user-Millionaire-s4n 3 жыл бұрын
Hello sir, what if I buy starlink for a US address through a collecting company and then export it via DHL to my country, knowing that my country is not supported by astarlink company, will there be problems? I hope I didn't bother you and that there are no spelling mistakes I use Google Translate.
@wiel-spin
@wiel-spin 3 жыл бұрын
Yes you will have problems because the used address during ordering will be used as your coverage area. Booting the dish somewhere else will not get you online untill Starlink unlocks roaming.
@user-Millionaire-s4n
@user-Millionaire-s4n 3 жыл бұрын
@@wiel-spin Thank you sir, useful information.
@j.casshoworth9127
@j.casshoworth9127 3 жыл бұрын
Thanks & Well done. What is the benefit of segregating it on VLAN 574 other than security? Honestly I don't understand what the benefit would be in home environment?
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
It's essentially a completely separate WAN connection, so you can't exactly route it through your LAN traffic, which is why it has to be its own VLAN.
@j.casshoworth9127
@j.casshoworth9127 3 жыл бұрын
@@CrosstalkSolutions That's why I watched your vid, VLANs are very confusing - still. LOL THANKS AGAIN
@elminster8149
@elminster8149 3 жыл бұрын
@@j.casshoworth9127 Actually, in principle, VLAN's are a simple concept, but like most things in IT when they expand, they get complicated! :)
@jonpinkley2844
@jonpinkley2844 3 жыл бұрын
Each vlan is a separate broadcast domain, so things like dhcp will work correctly and get to the same dhcp server each time. That's the main non-security reason for vlans.
@j.casshoworth9127
@j.casshoworth9127 3 жыл бұрын
@@jonpinkley2844 excellent! A practical example. Now it clicks. Cheers!
@minigpracing3068
@minigpracing3068 3 жыл бұрын
I grew up a few miles from where you got that shirt.
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
My wife has family in that area - we visit every year or two.
@brunosalezze
@brunosalezze 3 жыл бұрын
Unifi helps a lot by not usung taged/untaged/trunck nomeclature
@wiel-spin
@wiel-spin 3 жыл бұрын
Yeah it helps but also makes it harder when you start using other manufacturers network equipment after using Unifi. Luckily i learned it the hard way before i started to use Unifi.
@bgreene65g
@bgreene65g 3 жыл бұрын
¿Why not use the pfsence for the starlink and use it as a back up for the whole house, or testing on a vlan back to the us24 to play with? Not sure why the two routers
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
Mostly just for testing and video. If I was using Starlink as a backup and/or load balanced secondary ISP, I would put it in the pfSense. That's just not how I'm using it.
@bgreene65g
@bgreene65g 3 жыл бұрын
@@CrosstalkSolutions i understand. Ty for the insight. Great video
@ikkuranus
@ikkuranus 3 жыл бұрын
Any reason the pfsense firewall isn't handling both ISPs? I'm aware there are some port forwarding issues with multi wan with 2.5.x but that really shouldn't be an issue long as Starlink isn't the primary.
@elminster8149
@elminster8149 3 жыл бұрын
He'd need an extra VLAN to route SL Lan traffic back out of pfSense up to wherever his SL Lan equipment is setup. The way he's done it keeps it simple.
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
I could run the Starlink connection into the pfSense if I wanted to...that's definitely an option. In my case though, I have it kept separate for testing/videos.
@maplefoxx6285
@maplefoxx6285 2 жыл бұрын
I am trying to set up starlink without using their modem, can I just plug the white ethernet cable into a tp link switch because I tried that and reset the switch by unplugging it and plugging it back in and i'm getting nothing.. do i have to wait like 5 to ten minutes maybe? Or do i need to buy a tp link router er605? i've asked a few youtubers, i've emailed starlink. no one will help me.. pls help. i'm sure this is a simple answer for a tech. i'm not good with network stuff. IT looks like you are plugging direct into your switch at the first of the video?
@chriswatkins77
@chriswatkins77 3 жыл бұрын
Hey Chris - Why didn't you just present Vlan 574 to PfSense as an additional WAN, and create a gateway group for automatic failover incase your primary comcast link dies. You could create another Starlink LAN, and use policy based routing to ensure that network uses the Starlink WAN as the default egress point. More importantly, you could have put the Unifi Edge router on ebay and make it somebody else's problem :-)
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
I wasn’t trying to run the Starlink service into the pfSense.
@CJones-ic9tc
@CJones-ic9tc 3 жыл бұрын
Since the StarLink dish is plugged into a POE switch, can you eliminate the POE injector (i.e. power the dish from the switch)?
@tofudimsum8072
@tofudimsum8072 3 жыл бұрын
As far as I know, starlink dish use proprietary PoE spec. So you can't.
@CJones-ic9tc
@CJones-ic9tc 3 жыл бұрын
@@tofudimsum8072 So, if it is sold in the US, it has to have a UL listing, and the power requirements will be stamped on the unit. Anyone have a photo of the specs?
@tofudimsum8072
@tofudimsum8072 3 жыл бұрын
@@CJones-ic9tc I don't live in NA. But the dish use non standard PoE. You still have to use the injector included with the dish.
@CJones-ic9tc
@CJones-ic9tc 3 жыл бұрын
@@tofudimsum8072 So, no pic of the specs?
@raymondrae7085
@raymondrae7085 Жыл бұрын
Great detail and explanation.👍👍 BUT, this solution doesn't seem to help me with my problem. I have a remote location that is connected by StarLink which has a LAN of IoT devices (home automation, solar power system, generator etc.) and I need to remotely monitor and reset system setpoints etc. In essence, I have a remote StarLink LAN that I want to connect to from my home network/pc or my smartphone to make these changes. I believe I will need to establish a VPN connection but there's not enough geek in me to design the solution. Help required.
@lukey3030
@lukey3030 Жыл бұрын
Right so that Netgate firewall is doing naff all in this scenario
@Zoneoffulbe
@Zoneoffulbe 2 жыл бұрын
It’s working all over the the world or it’s s US Only ? Am interested but i am in South Sudan.
@vltek
@vltek 3 жыл бұрын
Funny I did the same thing, but it’s vlan5 for me.
@Zoneoffulbe
@Zoneoffulbe 2 жыл бұрын
It’s working all over the world or it’s only US region ?
@maxbroomfield5392
@maxbroomfield5392 3 жыл бұрын
I would love a run-through if your pfSense setup/how to setup a pfSense network like yours. Or since I heard you arn’t %100 confident on pfSense yourself, a video from one of your pfSense guys would be greatly appreciated!
@gregm.6945
@gregm.6945 3 жыл бұрын
there's plenty here: kzfaq.infosearch?query=pfsense
@bentheguru4986
@bentheguru4986 3 жыл бұрын
LOL, No USG/UDM..... Need to be mindful of UniFi that will bridge VLAN's at the USG's by default, pretty certain the same on UDM. Chris, your description for tagging is confusing, the port on the switch when assigned will Tag/Untag, the rm untagged is incorrect. On managed switches, All inbound traffic will be tagged, all outbound will have tags removed. You did touch on this but for others, If you leave a port as default on UniFi, all tags will be intact and presented to every device on the network. This means you have to set ALL ports on the network switches to the correct VLAN or VLAN's (switch-port profiles) of switches as all are "Trunk" as default.
@victorrojas3992
@victorrojas3992 3 жыл бұрын
I have a small project do you think you can guide me pls ?
@victorrojas3992
@victorrojas3992 3 жыл бұрын
I've been following you guys on your channel. I'm planning a project and want to use ubiquity products. I'd like to get your opinion on and suggestions for it.
@victorrojas3992
@victorrojas3992 3 жыл бұрын
The requirements are to set up wireless access to a ranch that will have small metal container homes, so each one will need wireless within as well as a way to connect to a wire. Also, wireless is needed for common areas such as pool area.
@mrmotofy
@mrmotofy 3 жыл бұрын
NOT for free...that's just 1 way he makes his money. Who will support it in the future if you don't know what you're doing? He can be contacted for consulting work
@Tim-Shows
@Tim-Shows 3 жыл бұрын
What diagram software is that?
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
app.diagrams.net
@Tim-Shows
@Tim-Shows 3 жыл бұрын
@@CrosstalkSolutions Thanks. I am going to try that because Visio is so difficult to work with and keep updated.
@Tim-Shows
@Tim-Shows 3 жыл бұрын
How did you get Netgate and Ubiquiti stencils? Or did you import images?
@Iran_media
@Iran_media 3 жыл бұрын
Please answer my question as soon as possible❤️
@Brozizz
@Brozizz 3 жыл бұрын
can i use starlink in Ghana ?
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
You can check their website to see if it's available in your area!
@d00dEEE
@d00dEEE 3 жыл бұрын
Out of curiosity, I tried to order Starlink for a couple random locations in Ghana, and they all said, "planned availability in 2022." From what I can glean from press reports, it sounds like they are only doing beta installations in US, Canada and UK due to satellite coverage from the partial network (and possibly to minimize support hours and/or language issues???).
@myrthjt
@myrthjt 3 жыл бұрын
Carrying any traffic on the Native VLAN of a trunk is a security issue. Do not do this. Also, bringing "outside" traffic into your interior network equipment is also not a good idea. Lot's of bad information here. Yes... It might work, but you're doing this wrong and suggesting other people do the same. Stop it.
@narkeddiver7325
@narkeddiver7325 3 жыл бұрын
How would you recommend setting up the network in this case?
@myrthjt
@myrthjt 3 жыл бұрын
@@narkeddiver7325 use VLANs properly, don't put traffic on the Native VLAN of a trunk especially untrusted "outside" traffic coming from the internet. Put a small firewall at that edge between Starlink and the rest of the network. An old ASA or even an old ISR would be fine. Use encapsulation for separation if you must use the same wire at least use GRE.
@myrthjt
@myrthjt 3 жыл бұрын
Routing and zones.
@narkeddiver7325
@narkeddiver7325 3 жыл бұрын
@@myrthjt thanks for your explanation :)
@myrthjt
@myrthjt 3 жыл бұрын
@@narkeddiver7325 very welcome.
@dereksimenac8844
@dereksimenac8844 Жыл бұрын
Unless your first switch is a layer 3 switch it is not the best setup. The first switch should be a layer 3 then you should use lay 2 switches behind it
@stevec2196
@stevec2196 3 жыл бұрын
How are oddball KZfaq reviewers able to get it when they are now saying availability is not until LATE 2022?
@CrosstalkSolutions
@CrosstalkSolutions 3 жыл бұрын
If you go to the Starlink website and sign up, pay the deposit, and then they send you one. That's how I got mine. No mystery.
@stevec2196
@stevec2196 3 жыл бұрын
@@CrosstalkSolutions Quit lying! The website says either Not Available or Late 2022!
@pepeshopping
@pepeshopping 3 жыл бұрын
VLANS are far from “complicated”. But anything can be complicated when you lack the basic understanding of things.
04 - Network Switches & Ethernet - Home Networking 101
22:21
Crosstalk Solutions
Рет қаралды 154 М.
VLANs Made Easy: Learn This Today!
41:08
Crosstalk Solutions
Рет қаралды 230 М.
Heartwarming moment as priest rescues ceremony with kindness #shorts
00:33
Fabiosa Best Lifehacks
Рет қаралды 38 МЛН
Looks realistic #tiktok
00:22
Анастасия Тарасова
Рет қаралды 105 МЛН
Starlink Gen3 In-Depth Setup and Review
18:03
Crosstalk Solutions
Рет қаралды 1 МЛН
Starlink Vulnerability Uncovered Ethernet Adapter Teardown
22:25
Starlink + UniFi - Does it work??
19:37
Crosstalk Solutions
Рет қаралды 191 М.
UniFi Basics: Initial Setup Made Easy
28:27
Crosstalk Solutions
Рет қаралды 42 М.
DO NOT design your network like this!! // FREE CCNA // EP 6
19:36
NetworkChuck
Рет қаралды 3,2 МЛН
How To Setup Your Own SpaceX Starlink Link Router Alternative
19:42
99% of STARLINK owners don't know how to BOOST their SPEED
11:46
Silver Cymbal
Рет қаралды 385 М.
UniFi Basics: Start the Right Way Without Breaking the Bank!
14:52
Crosstalk Solutions
Рет қаралды 130 М.
Starlink Update and Home WiFi DIY Fix
23:30
Charlie DIYte
Рет қаралды 69 М.
Это - iPhone 16 и вот что надо знать...
17:20
Overtake lab
Рет қаралды 124 М.
АЙФОН 20 С ФУНКЦИЕЙ ВИДЕНИЯ ОГНЯ
0:59
КиноХост
Рет қаралды 1,1 МЛН
Как бесплатно замутить iphone 15 pro max
0:59
ЖЕЛЕЗНЫЙ КОРОЛЬ
Рет қаралды 4 МЛН
Rate This Smartphone Cooler Set-up ⭐
0:10
Shakeuptech
Рет қаралды 2,7 МЛН
Battery  low 🔋 🪫
0:10
dednahype
Рет қаралды 13 МЛН