Dell PowerConnect 5224 is my switch, which I believe is not fully Layer 3 capable. Just some Layer 3 functions.
Astaro UTM 9 (now known as Sophos UTM) is my firewall/router, which should be capable of Layer 3.
ESXi 5.5 is the host for Astaro.
I also have 2 Ubiquiti UniFi AC Lite AP (wifi access points) that can handle multiple VLANs via multiple SSIDs. The routing would still need to be handled on other network equipment.
The rest is mostly consumer hardware; cell phones, tablets, laptops, VoIP phone, etc, etc, most of which connects via WiFi to the network. My PC's and servers are what I want to keep separate from the rest, and it's only my PC's and server that are wired, though I also have a phone and tablet that would need WiFi access to my segment. Both segments would need access to a network printer. In the future though, I may finally setup a central media/TV server that both segments would also need access to, as well as a central NAS for backups and such for every PC in the home. Planning out how to setup the VLANs in such a setting is where I get confused.
I am not 100% sure how the VLAN setup on Astaro would go (
https://community.sophos.com/kb/en-us/118999), but I think it's dependent on the switch it's connected to. I do not believe the Dell switch can tag packets with the VLAN, which I think would mean I would need separate physical network connections for each VLAN? This is basically where I start to get confused, as I'm not sure where the routing would happen or how to properly setup my hardware to get it all working properly.
