Communication of VLAN different using UME.

Hi all

I am a beginner engineer, so I have a bit of knowledge.

I tried to configure it by myself, but something bothers me...

I want you guys to help me!

In fact, I configured BPMH using the switches (CISCO & DELL) 4.

Please provide the attachment on the photo and the configuration of file (.txt) (I draw and scanned..)

As you can see the picture, you will know what I want to configure.

The point I want follows content.

(855) 935-7526 *. I want to communicate with switches together.

-online but, Dell 7024P communicates any other switches... I think awarding IP is 30 (192,168.10.91) vlan... others have

VLAN 10 (192.168.10.x)

In fact, he was very big problem.

2. only Dell 7024P does not communicate with the Internet.

Then, I set up static routing set of switches (ip route 0.0.0.0 0.0.0.0 192.168.10.94)

But only 7024 P does not...

To connect to the other, what can I do in 7024 P Dell switch.

Thank you, Daniel C.

See the CISCO3560, executed, stp.txt

See the CISCO3750, executed, stp.txt

See the DELL7024P, executed, stp.txt

See the DELL8024F, executed, stp.txt

The first thing that comes out of me, is that on the P 7024 30 VLAN IP address is in the same subnet as the IP addresses of 10 VLAN on the other switches. This creates a scenario on the Cisco and 8024 switches, where you cannot assign an IP address 192.168.10.x 30 VLAN. Because VLAN 30 does not have an IP address, it cannot be routed. The resulting transmission 7024 30 VLAN Tag traffic on port gi1/0/12 article. The CISCO_3750G receives traffic labeled for 30 VLAN, but then cannot do something with it.

There are two approaches to solve this. You can assign a different subnet to the VLAN 30. Then on each switch assign an IP address to VLAN 30. Configure the switch for VIRTUAL LAN routing on your CISCO_3750G.

http://bit.LY/1nECOCq

Another option would be to not use 30 VLAN. Instead use 10 VLANS on the 7024 and VLAN 10 IP address assignment the 192.168.10.91.

Once you have the IP gene outside model, then I do it with fine adjustment covering tree instances.  Here is a white paper with some useful practices and examples of UME use.

http://Dell.to/1MrDPx4

See you soon

Tags: Dell Switches

Similar Questions

  • P2V on servers by omitting of VLAN different

    We've been migrating servers to our new VMware guests, and so far the P2V conversions are continuing smoothly.  Recenly tried to migrate servers and they were all fail.  The only difference I see is that they are in one VLAN different than others.

    The hosts have a vSwitch supporting VLAN multipul, and I was able to move a virtual server in this VLAN and work with it, so everything seems to be fine up to now.

    I am using vCenter Converter 5.0.1 build-875114.

    Don't know what I'm missing.

    Double please make sure that the source computer is able to resolve the DNS name of the host target ESXi (see http://kb.vmware.com/kb/1034292)

    André

  • Force 10 GbE 10/40 MXL: one port can be marked and not identified to any VLAN different at the same time?

    Dear all,

    I have to configure a 10/40 GbE switch MXL. In my scenario, each port 0/1-12 has access to 3 different networks.

    1. Management (VLAN: 10)

    2 storage (VLAN: 11)

    3. Admin (not identified)

    I can assign ports to access many VLANs. (labeled tengigabitethernet 0/1 - 12). But what happens if I have to pass the traffic which is not marked as well?

    Kind regards

    A trunk connection has a vlan native who is used for untagged traffic. Take a look at this document, he detailed step by step for a network connection.

    http://bit.LY/1EaIQW8

    See you soon

  • RV180W ping hostname between VLAN & different subnets

    Hello

    I had a RV180w with 1.0.3.10 closes. According to the name of position, I'm not able to resolve host names between different VLANS which affected to different subnets, for example, allows said I have the following hosts:

    CASA:

    192.168.241.100/25 (wired - VLAN 1)

    Router: 192.168.241.1

    DNS: 192.168.241.1

    XBMC: 192.168.242.100/25 (Wi - FI - VLAN 2)

    Router: 192.168.242.1

    DNS: 192.168.242.1

    If I try to ping from two sources to one of the two destinations, the only one I get is a message 'impossible '.

    Authorized additional information routing between vlans & proxy DNS and if I try to look at the hostname under the 'nslookup' command, I could not resolve the host name, but if I do a "ping - a 192.168.241.100 ' it is said ' response from CASA (192.168.241.100) blah blah blah."

    So what I'm missing here?

    Hi Bruno, you can usually solve different subnet host name because the host does not know the subnet that treats it as a security measure.

    Disable the firewall feature on your computers and which must fix, otherwise you will probably have to change the lmhost files.

    -Tom
    Please mark replied messages useful

  • vMotion - another subnet, VLAN different

    I'm under ESXi 4.1. I have two hosts. Currently, the management network of my hosts are on the 192.168.5.x subnet and this subnet exists in its own VIRTUAL LAN. My vMotion Setup is also included in this subnet and VLAN. What I want to do is move my vMotion for a different subnet configuration and VLAN.

    How would I go to do this? Every time I change the IP address of the vSwitch vMotion, I lose connectivity him given that I should change the gateway by default as well. When I update the default gateway, the default gateway of the management gateway is updated as well. I have to have management and vMotion on the same subnet network?

    As long as the vmkernel ports used for vmotion are on the same subenet there is no need to configure a gateway on that subnet as the traffic will never leave the subnet-

  • Need help setting up a configuration of VLAN special using WRVS4400N

    Hi guys,.

     

    I need your help on how to implement a configuration of VLAN somehow non-standard.

    The situation is the following:

    The customer wants a WLAN set up for the company and the other for guests. Now, wouldn't that be not so difficult if we'd be using the internal internet connection. But the WRVS4400N will be used to implement wireless LANs / VLAN only.

    The company uses the DHCP protocol on both of their subnets, provided by a Watchguard Firebox XTM510.

    Now, what we would do is set up the back door #1 for the connection to the subnet of the client and the #2 for the connection to the optional subnet for the guests. The first problem is that we were not able to configure DHCP forwards to the VLAN2. It works very well on the 1st but the 2nd doesn't allow that either ENabled or disabled, grayed out DHCP.

    To work around the problem that he would be allowed to set up DHCP WRVS4400N providing in itself for the subnet invited, but try that didn't work at all.

    Is it possible? Thanks in advance!

    Best,

    Ralph.


  • Upgrade to Windows Mobile 8.1 different using

    I have two laptops, one with windows 8.1 and an old one with windows 7. Can I use version 8.1 to change or update the one with windows 7 so it compatible?

    [Original title: software update]

    You will need to purchase a new license for the older laptop.

    You can buy a new license for Windows 8.1 to http://www.windows.com/buy

    Does not support license or recovery created from the new laptop to old day.

    This is because the new laptop has what is called an OEM license.

    OEM of Windows versions are identical to the versions commercial full license with the following exception:

    -OEM versions don't offer any free direct support from Microsoft technical support Microsoft

    -OEM Licenses are tied to the computer first you install and activate it on

    -OEM versions allow all hardware upgrades except for an upgrade to a different model motherboard

    -OEM versions does not move directly from an older Windows operating system

    Make sure that you back up your system before the upgrade to Windows 7:

    http://www.notebooks.com/2009/10/24/how-to-backup-your-installation-of-Windows-7/

  • WAP321 - captive portal in 2 VLAN different

    Hello

    I have a Wap321 installed in my network.  IP: 192.168.0.36 - VLAN 1

    If I'm in the local network, I don't have any problem to use the wireless.

    I just added a guest VLAN for people who need to connect Internet, without access to the network. So I install a second SSID and label with vlan 50. I can access the Internet.  But if I want to active the captive portal, I can't access it because the address is in the VLAN 1 (or 192.168.0.36).

    How can I configure my Wap321 having the captive portal in the VLAN 50, and not in the VLAN 1?

    Thank you

    Alex

    Hi Alexander,.

    For interVlan on ISA5510 setting, yes the same security settings is the first step to enable this function runs. This article will help you configure InterVlan routing.

    https://supportforums.Cisco.com/thread/2035882

  • Dynamic assignment of VLANS / SSID using the IAS 4402/MS

    Greetings,

    In short, we have a WLC4402 (50 AP license) and about 30 1252 s towers in place. At the moment we have three VLANS / SSID in place - one for admin, to teachers and students. The WLC uses a server for MS Windows 2003 running IAS for PEAP authentication. Windows XP, the SSID clients entered manually based on "prior designation" 'type' laptop (admin, teacher or student).

    It works very well. However more frequently our users were 'sharing' portable computers so a student can need to use his laptop computer and vice versa. In short, we would like to use the dynamic assignment of VLANS / SSID as well as if a student has the teacher, 'students' laptop VLAN / SSID would receive them when connect (and apply the appropriate ACL, QoS policies, etc.)

    We have found the documents on how to do that with a CBS, but is there something available for this configuration with a MS IAS server.

    All entry information would be greatly appreciated.

    Joe

    The installer works fine with the Server IAS Ms. You must set the options for RADIUS (3 of them) which are documented in the ACS similar article of the same ilk. You can have one SSID, using RADIUS authentication and have the Active Directory to determine the membership to a vlan based on the group.

    The RADIUS attribute parameters are

    Tunnel-Type = Vlan

    Tunnel-Pvt-Group-ID = vlanid

    Tunnel-Medium-Type = 802

    I also like to set

    Ignore-User-Dialin-Properties = True

    You must create some policies in IAS to match your windows groups and set the id vlan correct. A separate policy of IAS by vlan.

    Set the attributes RADIUS by political IAS and ad group or however you plan on the determination of the membership.

    If you want to use RADIUS for administration, you must also define a separate policy that defines the RADIUS of the Service Type administrative = attribute

    Jim

  • WLC SETUP VLAN DIFFERENT & SSID

    Hello world

    I have a scenario in which WLC 2504 is connected to access 4507R + E.and Core switch switches are connected to the switch of base as well. In these access toggle AIR-CAP702I-A-K9 access points.

    My question is this:

    I want to use vlan 104 for office with SSID OFFICE-EMPLOYEES

    I want to use vlan 103 for guest with SSID Office-guests

    Here's what I have set the main switch

    (config) #interface xx

    (config) #description xxx

    trunk mode (config) #switchport

    (config) #switchport trunk allowed vlan 103 104

    Here's what I have configured on the access switches

    (config) #interface xx

    access mode (config) #swithcport

    (config) #swithcport access vlan 104

    If I setup port trunk on access switches and access points allowing 103 & 104 both vlan are not joining controller.

    Right now, IP management is of vlan 104 and all access points and clients receive an ip of the vlan 104.

    What I will do in this scenario. I want to use separate traffic office employee and comments.

    It would be great if someone can help me.

    Hello

    I guess the AP management vlan is 104!

    Please check the latter:

    Config of switch Core for WLC:

    interface GigabitEthernet XX
    Description * Cisco WLC *.
    switchport trunk encapsulation dot1q
    switchport trunk allowed vlan 103 104
    switchport mode trunk
    no downtime
    !

    Access to AP light switch:

    interface GigabitEthernet1/0/22
    Description * AP *.
    switchport access vlan 104
    switchport mode access
    no downtime

    Switch to access switch uplink port and vice versa, must be configured as a trunk port.

    Concerning

    Remember messages useful rates

  • Mac OS 10.8 VM cannot reach subnet VLANS / different from the host with Fusion 5

    I have a server of Mac Mini significantly improved, high-top of the range, operating behind a firewall, Zyxel USG.  As the host, the Mac Mini runs a server OS X 10.8 virtualized with VMware Fusion 5 (mainly as an e-mail server).  To avoid opening the ports directly to the host-MacMini and LAN1 to better customize security and settings area, I want to put the virtual machine on VLAN1.

    However, no package VLAN is pass to the virtual machine.  I tried two configurations:

    Home > VLAN1 in Network preferences > VMware Fusion set to network via VLAN1 bridge > comments "Ethernet" connects effectively to the VLAN1

    Home > (LAN1) Ethernet in Network preferences > set VMware Fusion to bridge network through LAN1 > comments > add VLAN1 to guest network preferences

    In both situations, * zero packets * make out of the VM/comments on VLAN1.

    My suspicion is that VMware Fusion 5 does not support packages VLAN marked.

    Advice/suggestions for how to get the virtual machine to join VLAN1 or really, just a different subnet?  Are there drivers tagging VLAN for VMware Fusion 5?

    The FIXED - partially, at least.

    It had to do with the package being truncated by VMware.  After I have configured VLAN1 on the host, and then in the hardware parameters, chose 'Jumbo Packet Size'.  Then I jumpered the VM via connection host VLAN1.  ALTO!  This works.

    However, trying to connect to the virtual machine as a direct customer of VLAN1 is always unsuccessful. The virtual machine which truncates the packets when it sends them between the host and the guest (and vice versa).  However, if tagging VLAN is the host to level (as I have it configured), then the virtual machine can communicate successfully on the VIRTUAL LAN.

  • You can use cipher suites different use different SSL certificates?

    Using JSSE for SSL, so firstly do javax.net.ssl.SSLContext.init () where you specify as the [KeyManagers]. Here I specify an X509KeyManager where I specify the list of the X 509 certificates I would like to use all by SSL communication with a peer SSL. I'm then a SSLSocket context using SSLContext.getSocketFactory.createSocket () where the created SSL socket use the KeyManager created in the previous step.

    However, when I use this plug to negotiate SSL, I have not any control that cert is used with which cipher suite is chosen during the SSL handshake. For example, if I have two certificates in KeyManager, say A and B, I might want to use one during the continuation of encryption in SSL negotiation is TLS_DH_RSA_WITH_3DES_EDE_CBC_SHA although I could use B when the cipher suite TLS_RSA_WITH_AES_128_CBC_SHA (the cipher suites are according to RFC 5264 for TLS 1.2).

    Is it possible to have this kind of control while using the JSSE in Java?

    I might want to use A only when chosen to negotiate SSL encryption suite is...

    You can not. The encryption suite is chosen after the certificate.

    I don't really see what the choice of the certificate must make the choice of cipher suites. One is for authentication; the other is for encryption.

  • Gets the current Community ALUI name by using the public statement CDIP/IDK?

    I accidentally posted this in the wrong forum, so you can see this question duplicated in the forum WebCenter and Web 2.0 technology.

    ------------------------------------

    Hello

    I'm trying to find a way to get the name of the community for the community that you are currently using the EDK/IDK? I know that there is a custom tag that you can use (< pt:realmName xmlns:pt = "http://www.plumtree.com/xmlschemas/ptui/" / >), but I need to store them in a Java variable rather than the result of an evaluation of the custom tag. Any ideas or solutions would be greatly appreciated!

    Thank you

    The PRC to do a search for the ID of the community get its name. It uses the API server if you need to cache the result.

    IPortletContext.GetRemotePortalSession)
    IRemoteSession.GetCommunityManager)
    ICommunitymanager.QuerySingleObject (id)
    IObject.getName)

    I don't know if there is a way to get the portal to send you this information automatically.

  • Allow VPN users access a VLAN different

    I have an ASA 5505.  I have configured remote access VPN so that users can connect to the VPN and access my main VIRTUAL local network (inside).  I want to set so that when a user s in VPN, they are permitted access only to the CCV vlan (Vlan 2) as seen in my configuration.  Please note that there is also a VPN LAN LAN 2, which has been set up as well.

    What Miss me?

    !
    interface Ethernet0/0
    switchport access vlan 4
    !
    interface Ethernet0/1
    !
    interface Ethernet0/2
    !
    interface Ethernet0/3
    !
    interface Ethernet0/4
    !
    interface Ethernet0/5
    !
    interface Ethernet0/6
    switchport access vlan 2
    !
    interface Ethernet0/7
    switchport access vlan 2
    !
    interface Vlan1
    nameif inside
    security-level 100
    IP 10.240.0.1 255.255.0.0
    !
    interface Vlan2
    prior to interface Vlan1
    nameif HVAC
    security-level 100
    IP address 172.16.128.1 255.255.255.0
    !
    interface Vlan4
    nameif outside
    security-level 0
    IP address 12.x.x.x 255.255.255.0
    !
    passive FTP mode
    IP 10.240.0.0 allow Access - list extended CDEO 255.255.0.0 10.0.0.0 255.0.0.0
    IP 10.240.0.0 allow Access - list extended sheep 255.255.0.0 10.0.0.0 255.0.0.0
    IP 10.240.0.0 allow Access - list extended sheep 255.255.0.0 172.16.129.0 255.255
    . 255.0
    IP 10.102.229.0 allow Access - list extended sheep 255.255.255.0 172.16.129.0 255
    . 255.255.0
    IP 172.16.129.0 allow Access - list extended sheep 255.255.255.0 10.102.229.0 255
    . 255.255.0
    access-list sheep extended ip 172.16.128.0 allow 255.255.255.0 172.16.129.0 255
    . 255.255.0
    IP 172.16.129.0 allow Access - list extended sheep 255.255.255.0 172.16.128.0 255
    . 255.255.0
    list of inbound icmp permitted access extended throughout entire echo response
    list of extended inbound icmp permitted access any source-quench any
    list of extended all inbound icmp permitted access all inaccessible
    access list entering permit icmp any once extended beyond
    coming out to the one permitted all ip extended access list
    standard vpn access list allows 10.240.0.0 255.255.0.0
    standard vpn access list allows 10.102.229.0 255.255.255.0
    list of access allowed standard vpn 172.16.128.0 255.255.255.0
    pager lines 24
    asdm of logging of information
    Within 1500 MTU
    Outside 1500 MTU
    MTU 1500 HVAC
    IP local pool 172.16.129.1 - 172.16.129.5 mask 255.255.255.0 shhfvpnpool
    ICMP unreachable rate-limit 1 burst-size 1
    don't allow no asdm history
    ARP timeout 14400
    Global 1 interface (outside)
    NAT (inside) 0 access-list sheep
    NAT (inside) 1 0.0.0.0 0.0.0.0
    Access-group out on the interface inside
    Access-group interface incoming outside
    Route outside 0.0.0.0 0.0.0.0 12.x.x.x 1
    dynamic-access-policy-registration DfltAccessPolicy
    the ssh LOCAL console AAA authentication
    No snmp server location
    No snmp Server contact
    Server enable SNMP traps snmp authentication linkup, linkdown cold start
    Crypto ipsec transform-set esp - esp-sha-hmac hand
    Crypto ipsec transform-set esp - esp-md5-hmac RIGHT
    life crypto ipsec security association seconds 28800
    Crypto ipsec kilobytes of life - safety 4608000 association
    Crypto-map dynamic dynmap 10 transform-set RIGHT
    life together - the association of security crypto dynamic-map dynmap 10 28800 seconds
    Crypto-map dynamic dynmap 10 kilobytes of life together - the association of safety 4608000
    Crypto-map dynamic dynmap 10 the value reverse-road
    CDEOVPN 35 crypto card matches the address CDEO
    CDEOVPN 35 crypto map set peer 64.x.x.x
    card crypto CDEOVPN 35 the transform-set hand value
    map CDEOVPN 100-isakmp ipsec crypto dynamic dynmap
    CDEOVPN interface card crypto outside
    crypto isakmp identity address
    crypto ISAKMP allow outside
    crypto ISAKMP policy 20
    preshared authentication
    the Encryption
    sha hash
    Group 1
    life 86400
    crypto ISAKMP policy 30
    preshared authentication
    the Encryption
    md5 hash
    Group 2
    life 86400

    Console timeout 0
    management-access inside

    a basic threat threat detection
    Statistics-list of access threat detection
    no statistical threat detection tcp-interception
    attributes of Group Policy DfltGrpPolicy
    VPN-idle-timeout no
    internal group shhf strategy
    attributes of shhf group policy
    VPN-idle-timeout 30
    VPN-session-timeout 1440
    VPN-filter no
    Protocol-tunnel-VPN IPSec
    Split-tunnel-policy tunnelspecified
    Split-tunnel-network-list value vpn

    tunnel-group 64.x.x.x type ipsec-l2l
    64.x.x.x group tunnel ipsec-attributes
    pre-shared key *.
    tunnel-group shhf type remote access
    tunnel-group shhf General attributes
    address shhfvpnpool pool
    strategy-group-by default shhf
    shhf group tunnel ipsec-attributes
    pre-shared key *.
    tunnel-group vpnclient type remote access
    !
    class-map inspection_default
    match default-inspection-traffic
    !
    !
    type of policy-card inspect dns preset_dns_map
    parameters
    maximum message length automatic of customer
    message-length maximum 512
    Policy-map global_policy
    class inspection_default
    inspect the preset_dns_map dns
    inspect the ftp
    inspect h323 h225
    inspect the h323 ras
    inspect the rsh
    inspect the rtsp
    inspect esmtp
    inspect sqlnet
    inspect the skinny
    inspect sunrpc
    inspect xdmcp
    inspect the sip
    inspect the netbios
    inspect the tftp
    Review the ip options
    !
    global service-policy global_policy
    context of prompt hostname
    no remote anonymous reporting call
    Cryptochecksum:1cbd55e987f9b41cd2ebcb320fa2e3b2
    : end

    This route to be applied on the switch, if your port eth0/7 on SAA is connected to a switch of later3.

    "Route ip 172.16.129.0 255.255.255.0 172.16.128.1.

    So, don't worry on this route, if you can not apply on the SAA.

    So are you saying that a PC is directly connected to eth0/7 on the SAA.

    What is the IP address, mask and gateway address on the PC connected on eth0/7?

    The trace package seems good.

  • What are the different use of ACFS and DBFS files case?

    Hi gurus

    I heard the OCFS2 and ASM file system sharing.

    Is there anyone Live Production, usage case of ACF and DBFS shared file system provided by Oracle?

    Can we all ACFS OUC DBFS sharing file system in the deployment of their production for a use case.

    Grateful if someone shares his or her story experience as if someone had faced problems or stability associated with this file system during the test or production environment is ready.

    Concerning

    Hitgon

    I don't see any use for DBFS. Just a historical anomaly.

    ACFS has any number of use cases, not necessarily related to a database. Encryption, snapshots and replication are brilliant abilities. Use it to replace all your third-party file systems and file servers. I use a public Webinar on this topic next week if interested.

    ACFS is coming: resistance is futile

Maybe you are looking for

  • Messages deleted from my iPhone always appear on my Apple Watch

    If I delete messages from my iPhone why always appear on my Apple Watch?

  • Satellite L750D system stops unexpectedly

    My Satellite 750 D is about 1 1/2 years and for about two months, he has developed this habit simply turn off the entire system as if I pressed the power button or surprisingly cut energy.The sound he does is something like a whistle made his last.I

  • Improve SA540 site to site VPN perforamce

    Site has SA540: 50 M / 50 M DSL (country A) (15 users) Site B SA540: 2 M / 520KB ADSL (country B) (10 users) MTU: 1464 (Test on frame of ping) We custom applications and server work on port 80 of services, it comes to legacy applications and need to

  • Blu - ray player for lenovo x61s

    Hi I'm new to the forum of lenovo, I am looking if someone can help me my question is can I get a blue ray player or a blue ray for my lenovo x61s burner and if so someone can direct me correct one that would suit my model thank you...

  • How can I upgrade my old software of Microsoft Visual C++ for Windows 7?

    I have some old software I've written using Microsoft Visual C++ Standard Edition on my old DELL XPS M170 pc (which is almost dying now) and you want to migrate and update to run my most recent DEL pc running Windows 7 Any suggestions for the migrati