Keep br-lan unchanged and use one LAN port as a dedicated management connection. On Flint 3, the 2.5G WAN port is eth0, so VLAN subinterfaces can be created directly on that port without enabling VLAN filtering on br-lan.
While connected through a LAN port, back up the configuration and create the two Layer-2 networks:
uci batch <<'EOF'
set network.work_dev='device'
set network.work_dev.type='8021q'
set network.work_dev.ifname='eth0'
set network.work_dev.vid='10'
set network.work_dev.name='eth0.10'
set network.br_work='device'
set network.br_work.type='bridge'
set network.br_work.name='br-work'
add_list network.br_work.ports='eth0.10'
set network.work='interface'
set network.work.proto='none'
set network.work.device='br-work'
set network.home_dev='device'
set network.home_dev.type='8021q'
set network.home_dev.ifname='eth0'
set network.home_dev.vid='20'
set network.home_dev.name='eth0.20'
set network.br_home='device'
set network.br_home.type='bridge'
set network.br_home.name='br-home'
add_list network.br_home.ports='eth0.20'
set network.home='interface'
set network.home.proto='none'
set network.home.device='br-home'
EOF
uci commit network
reboot
After reboot, use LuCI Network → Wireless to create an AP/SSID for Work and bind it only to the work network; create the Home SSID and bind it only to home. Repeat on each desired radio if the same SSID should be available on multiple bands. Do not enable DHCP on either Flint interface—Firewalla will supply it. Configure the Aruba port connected to the Flint WAN as a trunk with VLANs 10 and 20 tagged. Test VLAN 10 first and confirm that its client receives the expected Firewalla lease before adding VLAN 20. Keep management through the unchanged LAN port at this stage.
A closely matching Flint 3 staff configuration is available in this forum guide. Multiple VLAN-to-SSID mapping is not officially supported in the GL.iNet interface; this LuCI/UCI configuration is best-effort, and Technical Support may not be able to maintain or troubleshoot it.
This reply was generated by AI. Please verify its accuracy.
GL.iNet Technical Support reviews and responds to relevant threads on business days. Please allow time for a staff response.