I guess it ends up being 3 NAT ranges total but what you said makes sense. I don’t think I described it enough, but in my head it makes sense. 😉
In essence though I would have a 10.x.x.x network around the DSL modem, a 192.168.100.x network for behind the HotSpot and a 192.168.50.x network behind my firewall for the office equipment. However reading your comment makes me think that the 192.168.100.x network won’t be necessary with the wireless in AP mode. That would put the Hotspot connected devices into the 10.x.x.x network which ultimately should be fine as long as I have some separation in the DMZ.
I am way more familiar with DDWRT so I think I will stick with that. I believe DDWRT supports WDS but I think for now we are focused on just having one AP in main hall of the facility. It we feel like it is warranted we may add a 2nd AP over our outdoor pool in the future. I don’t want anyone using this AP to access our business network so I will just avoid the firewall port issue but that is good to know for the future.
I am going to work this up and give it a shot. Thanks.