Monday, July 20, 2026
The BLOCKCHAIN Page
No Result
View All Result
  • Home
  • Cryptocurrency
  • Blockchain
  • Bitcoin
  • Market & Analysis
  • Altcoins
  • DeFi
  • Ethereum
  • Dogecoin
  • XRP
  • Regulations
  • NFTs
The BLOCKCHAIN Page
No Result
View All Result
Home NFTs & Metaverse

How a virtual LAN can better protect your home network – and the best way to get started

by admin
July 19, 2026
in NFTs & Metaverse
0
How a virtual LAN can better protect your home network – and the best way to get started
0
SHARES
3
VIEWS
Share on FacebookShare on Twitter


Cat5 ethernet cable

Jack Wallen/ZDNET

Comply with ZDNET: Add us as a preferred source on Google.


ZDNET key takeaways

  • Digital LANs allow you to isolate gadgets in your community.
  • This step is essential as a result of some gadgets are much less safe.
  • Not all ISPs permit for the creation of VLANs.

Image this situation: You may have one local area network (LAN) at dwelling. On that community, you have got your desktops, laptops, tablets, telephones, and IoT devices, corresponding to thermostats, sensible TVs, audio system, and extra.

Your IoT gadgets can see different gadgets and vice versa. Though the IoT gadgets have significantly much less safety than your desktops and laptops, they’re allowed to hook up with the identical community.

Additionally: The best VPN routers: Expert tested and reviewed

Then, one fateful day, an IoT gadget is hacked. Malware is injected into the gadget, which then spreads to your desktops and laptops. Subsequent factor you recognize, a hacker has your checking account data and is stealing your cash.

All of this occurred as a result of an insecure thermostat had entry to your desktop PC.

However what in case you may keep away from that situation? You may, because of VLANs.

What’s a VLAN?

VLAN stands for digital native space community. With out getting too deep into the muck and mire of community terminology, a digital LAN is sort of a secondary community inside your LAN that is remoted from the remainder of your community. Your major LAN may need an deal with scheme like 192.168.1.x, and your VLAN may need an deal with scheme like 192.168.2.x.

The numerous factor about this setup is that, due to the deal with scheme, the VLAN can’t straight entry the LAN. That separation is necessary as a result of it isolates the gadgets.

Let’s use our instance above and title our networks LAN1 and LAN2 (LAN1 being the first LAN and LAN2 being the VLAN).

Additionally: What is MoCA 2.5? How this low-cost networking can replace Wi-Fi and fix dead zones

On LAN1, you join your desktops, laptops, tablets, and telephones. On LAN2, you join your entire IoT gadgets. If an IoT gadget is hacked, because it’s remoted on LAN2, the one gadgets it could possibly entry are these on the identical LAN, which suggests your desktops, laptops, tablets, and telephones are secure (extra on this separation later).

You possibly can take this strategy one step additional and create two VLANs — one for telephones and tablets and one for IoT gadgets, so your community construction can be:

  • LAN: Desktops and laptops (you may additionally add printers to this setup)
  • VLAN1: Telephones and tablets
  • VLAN2: IoT gadgets

You possibly can even configure the LAN to entry every part on its community, in addition to every part on VLAN1 and VLAN2, however VLAN1 and VLAN2 can’t entry gadgets on the LAN. In case you have the proper networking {hardware}, you may even arrange VLAN2 in order that no gadgets can talk with each other and have entry solely to the surface world (or the extensive space community, WAN). This step may very well be necessary as a result of it might forestall one IoT gadget from inflicting issues with one other.

An alternative choice can be to create a 3rd VLAN to your kids’s gadgets. You possibly can additionally create VLAN3, which incorporates added parental controls that may restrict the web sites your kids can attain, however would not have an effect on gadgets on the first LAN.

Additionally: Slow home internet? Here are 3 things I always check first to regain fast Wi-Fi speeds

In reality, you may take this strategy even additional by making a fourth VLAN for visitors and a fifth for working from dwelling (that community is likely to be routed by way of a VPN).

As you’ll be able to see, the variety of VLANs you create will increase the complexity. The necessary factor is understanding the gadgets in your community and the right way to isolate them.

create VLANs

That is the place issues get fairly difficult, as each networking router/modem/change is completely different. The way you create a VLAN is dependent upon your particular {hardware}. 

Additionally: Sick of online ads and trackers? How I block them across my entire home network

As an example, my community supplier (Spectrum) does not permit VLANs to be created by way of its {hardware}. In reality, most ISPs do not help VLANs on their very own {hardware}. 

That leaves me with two choices: 

  1.  Deploy a Linux distribution, corresponding to OPNsense or IPFire, that may act as a router. 
  2.  Buy a third-party router. 

Because the first choice can get a bit difficult for most individuals, I like to recommend buying a third-party router. Listed here are a number of fashions that help VLANs:

In case you do not buy one of many above routers, be certain the router you do select helps VLANs. Utilizing a third-party router helps you to arrange a number of VLANs, however you may need to learn the router’s documentation to learn the way, since every router’s setup will differ. 

In case you’re fortunate and your ISP’s router/modem helps VLANs (once more, most do not), chances are high they’re going to be pre-configured within the router/modem’s internet UI as visitor networks, cell gadgets, streaming gadgets, and so forth.

A bonus purpose to go along with a third-party router (particularly a wi-fi one) is which you can purchase one with a bigger vary than you have already got.

Naming your VLANs

Though I discussed creating VLAN1, VLAN2, VLAN3, and so forth., you may as a substitute create VLANs with a naming scheme, corresponding to IoT, Cellular, Youngsters, and Visitors — however I like to recommend in opposition to it. The issue with that naming conference is it makes every part a bit too apparent. If a nasty actor occurs to be wardriving round your neighborhood and spots a wi-fi VLAN named IoT (if it is seen to the WAN), they may join with an insecure gadget and (if they’ve the abilities) do unhealthy issues. Due to that threat, I like to recommend utilizing VLAN names that obfuscate their functions. 

Are VLANs foolproof?

No. As I’ve mentioned many occasions, if a device is connected to a network, it’s vulnerable. Nonetheless, establishing VLANs is safer than slapping every part on a single community.

Nevertheless, there is a factor referred to as VLAN hopping, which permits a hacker to use misconfigured change ports or VLAN-tagging mechanisms to hop from a VLAN to a major LAN (or from VLAN to VLAN). By taking that strategy, attackers may acquire unauthorized entry to any gadget in your community. 

Additionally: The best secure browsers for privacy: Expert tested

Due to this fact, it is necessary to make sure your VLANs are configured appropriately (in keeping with the {hardware} in use), that your router firmware is updated, and that the gadgets on each community have each up to date working techniques and software program.

Though VLANs aren’t an ideal resolution to safety challenges, they’re a good way to isolate {hardware} to stop much less safe gadgets, corresponding to IoT instruments, from accessing machines that include delicate data.





Source link

Tags: homeLANNetworkProtectstartedvirtual
admin

admin

Recommended

Berachain’s PoL and Honeypot’s FTO for Enhanced Liquidity

Berachain’s PoL and Honeypot’s FTO for Enhanced Liquidity

2 years ago
Optimism Welcomes Layer 3 (L3) Chain Builders on Superchain

Optimism Welcomes Layer 3 (L3) Chain Builders on Superchain

2 years ago

Popular News

  • Protocol-Owned Liquidity: A Sustainable Path for DeFi

    Protocol-Owned Liquidity: A Sustainable Path for DeFi

    0 shares
    Share 0 Tweet 0
  • Cryptocurrency for College: Exploring DeFi Scholarship Models

    0 shares
    Share 0 Tweet 0
  • What are rebase tokens, and how do they work?

    0 shares
    Share 0 Tweet 0
  • What is Velodrome Finance (VELO): why it’s a next-gen AMM

    0 shares
    Share 0 Tweet 0
  • $10 XRP Price Envisioned By Fund Manager As Ripple Mounts Trillion-Dollar Payment Markets ⋆ ZyCrypto

    0 shares
    Share 0 Tweet 0

Latest

I tested a 4TB quantum-resistant USB drive – but you don’t have to spend $3000 for this much security

I tested a 4TB quantum-resistant USB drive – but you don’t have to spend $3000 for this much security

July 20, 2026
The 5 laptop features worth paying extra for, plus 3 you can ignore

The 5 laptop features worth paying extra for, plus 3 you can ignore

July 20, 2026

Categories

  • Altcoins
  • Bitcoin
  • Blockchain
  • Cryptocurrency
  • DeFi
  • Dogecoin
  • Ethereum
  • Market & Analysis
  • NFTs & Metaverse
  • Regulations
  • XRP

Follow us

Recommended

  • I tested a 4TB quantum-resistant USB drive – but you don’t have to spend $3000 for this much security
  • The 5 laptop features worth paying extra for, plus 3 you can ignore
  • How a virtual LAN can better protect your home network – and the best way to get started
  • I’ve been a Google phone diehard for 10 years – here’s my 5-part wishlist for Pixel 11
  • The iPad mini’s biggest update in 5 years is expected this fall – here’s what we know
  • About us
  • Privacy Policy
  • Terms & Conditions

© 2023 TheBlockchainPage | All Rights Reserved

No Result
View All Result
  • Home
  • Cryptocurrency
  • Blockchain
  • Bitcoin
  • Market & Analysis
  • Altcoins
  • DeFi
  • Ethereum
  • Dogecoin
  • XRP
  • Regulations
  • NFTs

© 2023 TheBlockchainPage | All Rights Reserved