Community discussions

MikroTik App
 
fellipeh
newbie
Topic Author
Posts: 26
Joined: Wed Apr 17, 2013 4:52 pm

hEX with CapAC only for router and pfSense, works?

Fri Jun 30, 2023 3:36 pm

Hey y'all!!

I'm a newbie on network design.. so, today on my small company, I have one hEX (which connect to internet via pppoe) and 2 CapsAC connected on my hEX using CAPSMAN.. I have 3 networks: Principal, Guests and Sales and 2 VLANs Guests and Sales.... each of one of these network has and IP addressed provided by DHCP server on hEX..
#   ADDRESS            NETWORK         INTERFACE       
0   10.0.0.1/24        10.0.0.0        bridge          
1   192.168.1.1/24     192.168.1.0     vlan-guests
2   192.168.2.1/24     192.168.2.0     vlan-sales
3 D 1xx.1xx.5xx.1xx/32  1xx.1xx.5xx.2xx  pppoe
Basically I have cable network using Principal... and 3 Wifi SSID... Principal, Guest and Sales, which connect using their network.

What I asked to do is: keep the hEX+CAPSMAN only for router and internet connection.. and put everything else on a pfSense server (DNS, DHCP server, DCHPv6 Server etc..)

So, my question is: is this possible? how can I make my hEX to get the IP Address from my pfSense instead of the hEX itself ? since each vlan uses a different addresses?

Other question is: Makes sense to have this design, in terms of backup, stability and processor?

Thanks
 
User avatar
Hominidae
Member
Member
Posts: 316
Joined: Thu Oct 19, 2017 12:50 am

Re: hEX with CapAC only for router and pfSense, works?

Fri Jun 30, 2023 3:48 pm

...doesn't make much sense to me, the way you are going to split services.

When deploying a sense (why would you do that at all, when intentionally only going for DHCP, DNS?) use it as router/firewall + internet (+ vlans, DNS, DHCP, ...) and convert the hex to a simple switch/bridge setup, including vlans and Capsman.
What exactly are you missing in the hex, where you want to trade it for a sense?
 
fellipeh
newbie
Topic Author
Posts: 26
Joined: Wed Apr 17, 2013 4:52 pm

Re: hEX with CapAC only for router and pfSense, works?

Fri Jun 30, 2023 6:04 pm

There's one thing I couldn't make works on my hEX.. getting the IPv6 work with DHCPv6. And I'll need it in near future.

My ISP provide ipv6. If I use "normal" router like D-link, Huaweii etc.. I could grab IPv6... on my MK I can't.. I already tried, set the DHCPv6 client, and nothing.. stay always in "searching" no matter what I do.. I think using pfSense, I'll get this work.