I'm helping my friend set up a hot spot at his restaurant. He had a
54g that he was using for his internal LAN. Any wireless clients are able to see computers on his LAN, which he doesn't want. I saw no way with the LInksys FW to prevent the wireless clients from accessing the LAN (AP Isolation only isolated wireless clients from each other).We bought a Linksys BEFSR41 router and put it in place of the 54G for his internal LAN locked away in his office. We then moved the 54G to a better place in the restaurant for reception. The 41 is the gateway and set to 192.168.0.1 on the LAN side. The 54G has a static IP of 192.168.0.10. Clients to the 54G get IPs in the range 192.168.1.100 and up. To them, the 54G is 192.168.1.1.
The problem is that the wireless clients can still see the LAN (for instance, 192.168.0.3.). I see that there is a static route on the 54G that configured itself for 192.168.0.0/255.255.255.0. If I could delete this route and add
192.168.0.1/255.255.255.255 instead, all would work perfectly. But the 54G won't let me delete that route, so wireless clients have a path to the entire 192.168.0.x network.I also tried to configure the wireless side into its own 192.168.0.x network. With this, the 54G was 192.168.0.10 on its WAN side and was a client on the 192.168.0.x network on the LAN. But its own wireless side was a different 192.168.0.x network. This way, it would be impossible for a wireless client to route up to the LAN side
192.168.0.x machines. For some reason unknown to me, the 54G wouldn't pass packets at all in this setup.The three solutions I can think of:
1) get another IP address from the ISP and have the two routers in parallell on a switch. I'd like to avoid this if possible.2) set up the 41 so that it only allows the 54G to go to the internet but not the LAN. This would be a static route from 192.168.0.10 to
0.0.0.0 excluding the rest of 192.168.0.x.3) setup the 54G so its clients are 192.168.1.x and to not route packets to 192.168.0.x at all.
The 54G and 41 are both set in gateway mode. Setting the 54G to router mode wouldn't route packets at all. The 54G and the 41 both have DHCP enabled.
Thanks for any help or feedback. Chris