I want to setup 3 networks, with three different subnets for different purposes (guest, home, and a lan only no internet network)
And I want everything separated completely, but access to a single IP (dns server, pihole)
1. I saw the guide suggested in here, that suggests creating vlan interface in a new bridge, so this means having 3 bridges.
2. To my understanding, although I didnt try to implement it yet, I can also follow the newer approach, of applying a single bridge with multiple vlans or interfaces with tagged fields, and using VLAN filtering, as suggested here
3. And I can also just have three bridges, and setup a firewall that doesnt allow any bridge to communicate with others bridge as I want. that seems to provide granular separation as well.
Can you please explain to me which approach should I use, and why?
Right now I followed the first one. but to my understanding it is a little redundant given the newer approach (which Im not fully familiar with just yet)
My setup is a hap ac router with a wAP using capsman