Hacker News new | ask | show | jobs
by scottyah 897 days ago
So do you have to switch the wifi on your phone to access the IoT stuff?
2 comments

No -- not the GP, but I have a separate IoT SSID and VLAN with a distinct subnet.

I run an mDNS repeater (or rather, my Unifi controller runs it for me) to allow discoverability across subnets. The benefit, such as it might be, is in the ability to use a stateful firewall between the subnets and that I can have a relatively secure PSK that I don't need to rotate when I rotate any of my other SSID PSKs.

Relevant to the article, I also have a WPA-3 Enterprise SSID, a WPA-3 PSK SSID and a WPA-2/3 PSK guest/children's SSID. The different subnets have different sets of rules for what they may access and which DNS settings are applied by default.

I'm guessing it's the same wifi network, just on a different vlan