For mobile users i have set up another hAP ac lite which is connected to the same switch for WiFi only with different range of IP 192.168.10.0/24. This is a neighbor router i mean. I would highly appreciate any suggested opinion
![Smile :)](./images/smilies/icon_smile.gif)
Yeah i have a gigabit switch with 24ports thats correct. Im not so clear because on ethernet1 is WAN with its public IP!! Currently just one connection is made from my edge router hAP to the gigabit switch. Want to mention that my gigabit switch is unmanaged and beside this im using 5 TP-Links Plug and Play, because there are several small offices and in wall arent enough ethernet ports to fit all devices, i dont know if im clearHI,
use the default settings (ie Quickset).
This should give you internet on ether1 and a Bridge with HWoffload and Wlan together.
Since you have 32 users I hope you have a Gigabit 24port Switch or two
So all your clients are directly attached to GigaSiwtch (or whatever switch you got) and only one connection from switch to hAP-lite is made (ie. port24 swicth goes to port ether2 on hAPLite).
Now all communication bettwen clients will happen just on Switche(s) and only internet traffic and Wireless clients will traverse hAP-lite.
If you do not need to isolate adiotonal hAP you can connect it to switch if you have to you have to put one of the lan ports on hap-lite out of bridge and set it up for a different subnet and apply firewall rules to deny traffic from one subnet to another..
On the second router there are no devices connected is used only for WiFi, mobile users only. I thought it is better as it is, doesn't it cause more traffic on my LAN if i set it as acesspoint? Or should i set a different subnet if i set it as acesspoint?What is 'Best performance' for you?
Besides above reply, please configure your second hAP as accesspoint (create one bridge with all interfaces connected to it). It makes no sense to have double NAT.
It is worse and you only created an additional network within a network. If you don't want to have mobile devices access to your network, please use vlan.On the second router there are no devices connected is used only for WiFi, mobile users only. I thought it is better as it is, doesn't it cause more traffic on my LAN if i set it as acesspoint? Or should i set a different subnet if i set it as acesspoint?