Remix.run Logo
superkuh 4 hours ago

Watch out, I'm not sure about the SG108 but the SG108E has a known defect where it incorrectly broadcasts non-VLAN traffic across all ports, regardless of configured VLAN settings. https://community.tp-link.com/en/business/forum/topic/89181

I have confirmed this with my own version 1 SG108E (which additionally can't actually be managed without an ancient version of java and iptables /proc/sys/net/ipv4/ip_forward forwarding tricks. https://shred.zone/en/dev/setting-up-tp-link-tl-sg108e-with-...)

I'd say stay far away from this hardware line unless you actually do just want a dumb switch. If you do buy make sure you know exactly what hardware revision you're getting. I've heard the version 5 fixes it.

toast0 2 hours ago | parent [-]

I had the 24 port version of these. They're fine for 'cooperative vlans' where you trust everything (enough), but want a little separation. But they're not sufficient if you don't trust the devices. You can't restrict management to specific vlans and iirc, there was a least one auth bypass.

At least for the version I had. I replaced it with some used smb stuff with a few 10g ports, cause unnecessary 10g is more fun.