Change from router to access point

How do I change the router to a wireless access point?


In LuCI, enable bridge for the wan interface. (Network -> Interfaces -> WAN -> Physical settings -> Bridge interfaces)

Then on Network -> Wireless -> your ssid -> change network from lan to wan.

Then your Wi-Fi card is directly bridged with the WAN port, just like in an Access point. You can then disable many services of the router, but they should not cause any harm.

1 Like

Thanks for the info Ondrej. After I do perform these steps, I cannot access the AP’s (Turris) web interface by typing in the IP I had assigned it previously while connected to the wireless network that was changed from lan to wan. When I try the second wireless network still set to lan, I can access the web interface and LuCI. I do not have a full understanding of how this works or what exactly I am doing, could you help inform me and tell me how do you know how I can access the AP’s web interface or LuCI from the wan wireless connection?

Of course you can’t, router management is by default not accessible from wan side, which is the side where your wireless clients are when you move them from lan to wan. You can solve it by putting in a firewall rule allowing TCP port 80/443 access from wan side.

What I don’t quite get is the changing of the wireless to WAN since it is still being used in my local network at home (LAN, right?)

Could you help me understand this further. I figured WAN was internet side, LAN in my internal network. I’m just trying to get my Turris to act as a wireless AP in my LAN network at home and play nice with my AirPort routers which the bridge and lan to wan change has done.

something like this - Turris as a second wifipoint ?

I just not sure if there are not any issues with updating the TO if WAN connection is not available and maybe that’s the reason why @Ondrej_Caletka suggested the lan to wan change.

There are two network pre-defined: WAN, which is supposed to be connected to an upstream, and LAN, which is supposed to go to the local network. If you want to degrade router function to a pure Access Point, you need only one of those networks. You can choose either, but since the LAN network also contains things like DHCP server, you certainly don’t want them to interfere with your current network setup. That is why I proposed simply changing the interface, to which the Wi-Fi is bridged to, to WAN. Router is still there, but there’s nothing connected behind it.

Because by default router management is allowed only from LAN side, you have to adjust firewall to be able to manage router from your home network, which is, from the router perspective, the WAN network.

1 Like

I have one TO with neither WiFi cards nor antennas acting as my router, firewall, DHCP server, etc. I have a number of full TOs that I would like to use as transparent LAN / WLAN switches. (Some might ask “why use such expensive boxes as transparent access points?” My hope is that this way I will have quicker access to the fruits of the make-wifi-fast effort.)

@Ondrej_Caletka, I have been trying to integrate your two bits of previous help but without success.

  • In LuCI does " (Network -> Interfaces -> WAN -> Physical settings -> Bridge interfaces)" mean checking only bridging box and not incorporating any additional interfaces?

  • How do I include all WiFi connections and all LAN ports into the WAN zone?

  • How do expunge all firewall rules so as to make the access point completely transparent?

This will create the bridge which will make it possible to attach a wireless interface to the bridge.

To include all LAN ports, simply add interfaces eth0 and eth2 to the wan interface (remove them from the lan interface beforehand).

You don’t have to. Firewall affects only routing, bridged interfaces are not affected by it. The only exception is the management of the router itself, which is by default only acessible from lan side. Just stopping firewall service would do the trick.

Alternative option can be found in OpenWRT wiki. Here, they recommend keeping the lan interface so you don’t have to create bridge nor move wireless interfaces to it. On the other hand, you have to disable intrusive services like dnsmasq or ohdcpd, set up gateway and DNS option for the lan interface (or even enable DHCP client on it) and you have to add eth1 from former wan interface to the bridge.

@Ondrej_Caletka, Thanks for the help. All is working now as intended. My prior crucial mistake was that I was failing to remove interfaces from LAN before adding them to WAN.

Hi folks,

Sorry, I am still having trouble following the instructions above, and would like to ask for more step-by-step guidance (or a pointer if it already exists somewhere else).

My goal is to configure the Omnia as an access point, using my ISP-supplied hub as the gateway to the WAN. So: Omnia with wireless enabled (using the same SSID as the current wireless setup I have), connected via an Ethernet cable to the ISP-supplied hub.

What would be most useful is a sequence of instructions I can go through step by step, based on the assumption that I am not a networking specialist, and that the router starts from a “factory reset” state.

A couple of specific questions to clarify the advice already given on this thread:

  • Ondrej mentions checking the “enable bridging” option in the WAN physical configuration screen; is it also necessary to uncheck the “enable bridging” option in the LAN physical config screen?

  • When disabling eth0 and eth2 in the LAN configure screen, is it necessary to “Save and Apply”, or should I just “Save”, and then hit “Save and Apply” once the WAN interface changes are applied?

  • When, in this sequence, do you advise changing the SSID to match the SSID of my existing wireless network?

  • Similarly, at what point should I change the Omnia’s IP address to one that is within the range allowed by my ISP-supplied hub?

  • And finally: I am doing all the Omnia configuration via an Ethernet cable plugged into one of the LAN ports; at what point in the sequence should I also attach the Omnia to my ISP-supplied hub by cable, and which port should I use for that cable if I am following the procedure suggested by Ondrej?

Apologies for the long list of questions, but I hope that if we get answers to these it will be useful for others trying to achieve an equivalent configuration.

Thanks in advance.