Hmm. I thought this would be pretty simple. And maybe it is. But all the information is cloudy and unclear.

My home network is set up as my "main LAN" is VLAN 100. These are real routed IPs, and on some physical ports are untagged/retagged at the port (so the device connected is not VLAN aware). Then I have an IOT VLAN on 107 and a Guest VLAN on 666.

My "infrastructure" is VLAN 1 and/or untagged? Is that a sensible thing to say?

@bloor vlan 1 is not untagged vlan; it really depends on the switch implementation and most get it wrong.

If you want to use vlans, ensure you don’t try to use vlan1 anywhere; either use tagged traffic for all vlans or untagged traffic and mark the port as “native” to whatever vlan you need (eg 100)