Hmm. I thought this would be pretty simple. And maybe it is. But all the information is cloudy and unclear.

My home network is set up as my "main LAN" is VLAN 100. These are real routed IPs, and on some physical ports are untagged/retagged at the port (so the device connected is not VLAN aware). Then I have an IOT VLAN on 107 and a Guest VLAN on 666.

My "infrastructure" is VLAN 1 and/or untagged? Is that a sensible thing to say?

My plan was to have my proxmox's web UI on the infrastructure VLAN only, then use VLAN bridging to point (where needed) individual VLANs to specific VMs on the box. And probably to add another VLAN (maybe 123) for "hosting", which is publicly accessible ingress [w/firewalling naturally).

But I cannot get the proxmox to "sit" on VLAN 1 for its admin UI, with VLAN bridging on.

And all the docs just cloudily say "avoid VLAN 1". No further explanation.

@bloor Oh! The “avoid VLAN 1” had me scratching my head, too.

The best explanation I could come to is that it's the default that unconfigured devices will use.

Meaning that any new device you (or anyone) add to your network will be... in your management VLAN?