Configuration of VLAN Switch SF302 - 08 p

I have the following Setup using two switches PoE SF302 - 08 p:

1st floor

=========

SWITCH1 # <------->private network

<------->public network

2nd floor

=========

Switch #2 <------->private network

... public network (visible, but devices can't connect)

I tried to do the config in the identical to the #1 switch #2 switch, but something still does not work.

This is probably a configuration issue VLAN, or what?

Thank you.

Ken Watkins

Hi Ken, the interfaces between switches must both vlan of the port.

example of

VLAN 1

VLAN 2

port 1 connects to port 1 of the second switch

config t

interface gi01

switchport mode trunk

switchport trunk allowed vlan add 2

The ports between switches must be vlan unidentified native, all other VLAN Tag. In my example, 1u, 2 t.

-Tom
Please mark replied messages useful

Tags: Cisco Support

Similar Questions

  • Cisco asa active multiple interfaces on a single switch without configuration of vlan switch.

    I was wondering if there is a work around on cisco asa to have 2 interfaces vlan on a switch. The reason I ask I have a cisco asa 5505 and a dell switch that does not support the configuration of VLANs. I set up 2 interface vlan on a cisco asa and when two interfaces are active my internet drops frequently. I was wondering if there is nothing to configure the asa cisco to make this thing work. Thanks in advance...

    Assuming that Dell switch at least linking several interfaces of the ASA to the Dell should translate all media spanning tree protocols, but a bet covering the tree blocking State to avoid a tree covering loop.

    If the Dell does not support tree covering weight then you would be in very bad shape each broadcast packet would be will loop indefinitely and cause what we call a 'broadcast storm. "

    One way is not good and the other real harm.

  • Configuration of VLAN Switch Distributed

    Hello

    This a configuration problem and I'm not really sure how to set it up.

    I created a distributed switch, and ESXi1 and ESXi2 are members. I created a comeback portgroup named A_01 and is a member of the VLAN 101.

    I created a virtual XP1 machine in ESXi1 located in A_01 and I created a VM XP2 on ESXi2 located in A_01.

    They do not communicate.

    I have a switch between them and the uplink for the distributed switch of ESXi1 is connected to port1 and ESXi2 uplink is connected to port2

    I have 'tag' port1 and port2 in vlan 101.

    They do not communicate.

    I have both change the network of the VM XP1 and XP2 VM a portgroup with no VLAN they communicate.

    What I am doing wrong.

    Thank you!

    "I have both change the XP1 XP2 VM VM network in a portgroup with no VLAN they communicate."

    --> its because your physical switch is configured as port access . Marking is done at the level of the physical switch. This is the expected behavior.

    If you want to tag the VLAN level vSwitch, then you must put the physical switch as a trunk port and VLAN 101.

  • What configuration of VLAN requires a switch connectivity defined as an access port?

    What configuration of VLAN requires a switch connectivity defined as an access port?

    By external switch tagging

  • Configuration of vlan based SG200-8

    Hello world

    First of all, I m new to the company VLAN, but have some understanding of the general network configuration.

    I ve recently bought an SG 200-08 switch to separate traffic network (my home from the kids pc office)

    As seen by 'layout.png' I have an ASUS router which is connected to the switch on port 8. In addition I have desktop pc at home on the 7 port and the pc for children on port 2 (currently, this pc has a static IP address). Port 7 and 8 are on (default) vlan1 and port 2 is on vlan2 (test) - see 'vlans_one_and_two.png '.

    So my hypothesis is this: all the ports of the pc (1-7) are set up as 'Access' (for non - vlan hardware Manager) and the port of my router is "Trunk" (see interface.png) - in order for port8 in order to be member of vlan1 and vlan2 (but is my router able to identify communication trunk or forge would put in general?).

    If I move to vlan2 port2 all connections to the connected computer on which the port is lost. Even the switch is unable to ping.

    Maybe I ve got it all wrong - my installation requires a router connected between port 2 and the pc connected to the 2 port so that the installer to work? Or did I miss something in the configuration of the switch?

    Suggestions or comments are greatly appreciated.

    Kind regards.

    Kaare

    Hello

    First of all, thank you very much for all the information, it was very useful.

    Regarding your question, the problem is your router. I looked at the model number that you mentioned on the ASUS RT-AC68U schema, and although this seems to be a very capable router for functions more House, it is not capable of VLANS.

    The main component that you are missing is a router capable of VLANS, because it will perform the following functions:

    1. provide not only the default value (office) IP addresses VLAN, but also of the guess Vlan (Kids).

    2. it will take all the traffic of these two local area networks VIRTUAL on the Internet.

    The problem you are having now is that the switch is isolate children PC in a second VIRTUAL LAN, but once you do that, they even do not get IP addresses that the router knows nothing about the 2 VLANS.

    I recommend the RV130W router as close substitute of your Asus router. It is a small business router, which is capable of VLANS.

    I must say that your configuration of the switch is on site.

    I hope that this information has been useful.

  • Configuration of the switch of the NAC

    Hello!!

    I bought a NAC server and a manager of the NAC, to centrally manage the vlan where users connect to based on authentication.

    I have several sites, but the NAC server will be at Headquarters.

    When a remote user authenticates, NAC must configure the user switch port for the vlan right.

    What is an out-of-band solution?

    Do need me a specific license for out-of-band?

    Best of look,

    Miguel Amaral

    Hello

    It's the same pattern: Yo uneed 2 licenses, one for the CAM and the other for CAs.

    One cam sets the number of cases you can add.

    That case defines how many users is supported.

    So either the CASE PAK has been lost, or never bought.

    In both cases, you will need to contact the entitiy that sold devices and demand for the PAK CASE.

    HTH,

    Tiago

    --

    If this helps you or answers to your question if it you please mark it as 'responded' or write it down, if other users can easily find it.

  • Configure the VLAN SG-200-26 2 p using WRVS4400N

    I would like to configure two VLANS on my SG-200-26 p switch. Using port 25 for VLAN 1 and port 26 for VLAN 2 from my WRVS4400N. Then assign each port (1-24) to one or the other VLAN.

    My router has 2 VLAN private Public (1) (2). Private is conifured wireless 1, 3 & 4 and private ports. Configured public port 2 and public wireless.

    Each work fine with different IP on each VLAN.

    Can I configure the switch as described above by using port 25 and 26? Y at - it instructions somewhere?

    PEOPLEVISON,

    Under the terms of a Port VLAN membership, you may need to select a port before joining VLAN...

    You can also us Port to VLAN if you wish. Just the VLAN at the top and click on Go. Then check the radio button for Untagged for the ports you want to in this VLAN.

    I have no problem with what you're trying to do. Please keep us updated.

    -Marty

  • Configuration of vlan SG 300 - 28 p

    Hello

    I tried to Setup VLAN on a SG300 - 28 p, but they do not work.

    This is my setup:

    I want to Switch1 to have 1-10 ports to access the area demilitarized and 11-24 the LAN.

    Then I wan to add switch2-4 to expand access to the local network.

    Is this possible?

    I tested with cisco 2960 switches by saying just what ports forge have access to

    DMZ and LAN, but small business switches are different...

    I really appreciate the help!

    Hi Francisco, assuming that the 2960 worked and there was no difference in configuration then the problem would be that you have not added the VLAN to the trunk.  On a catalyst you do not configure the VLANS on a trunk, since all VLAN pass them. On SB switches, that you need to configure the VLANS on the trunk, otherwise only the VLANs native / default works.

    -Tom
    Please mark replied messages useful

  • Configuration of the switch SGE2010P

    I am facing a problem during the installation of the switch SGE2010P with UC560. There are two switches in a SF300 and SGE2010P site. The SF300 works very well. But the SGE2010P switch is a problem. I connected the UC560 to the SF300 directly and connected SGE2010P to the SF300. In the two switches, all ports are trunk, not tagged vlan data and tag vlan voice. Switch SGE2010P is offline. Unfortunately, the phones don't work switch not which are connected to SGE2010P. Then I started shooting poorly, not marked all ports which phones are connected only to the voice vlan (vlan data excluded) and set the same ports to be the access port. Set the STP priority to zero. Now some phones work some are not. Can someone suggest what to do to fix this?

    Hi sham, by default the EMS classic switch short tree covering weight. This switch to RSTP. Secondly, you may need to manually set the fast port on all ports. Spanning interfaces of the tree then set the edge port on instead of auto.

    You said that all ports are given vlan not identified, voice vlan tagged, if that's the case, that your configuration of vlan is made. Assuming that the SF300 wearing exactly what you did on the EMS.

    In addition, you mentioned that the EMS is autonomous, check again please. If you use port 24 or 48 so that in the stacking mode, these ports do not work.

    -Tom
    Please mark replied messages useful

  • Configure the vlan with SG 300 - 10 p and 520 SA

    Hi all

    Forgive my ignorance, but I need help with the basic configuration.

    For a small office, I bought an appliance of security SA520 (for future VPN with another remote desktop) and a switch of SG 300 - 10 p to connect 3 PCs and 3 IP PHONE. The SA 520 is the router. I have to configure 2 VLANS on the switch:

    VLAN2: DATA (for PC)

    VLAN3: VOICE (for IP PHONE)

    VLAN1: BY DEFAULT.

    How can I configure simply all ports?

    I would like to configure ports 1-4 on 5 to 8 ports and VLAN2, VLAN3 and G10 port is reserved for the SA520 router.

    I want to split VOICE and DATA network.

    I think I need to create a trunk on G10 to SA520...

    Can someone help me?

    Hi Julien,

    OK sounds like you use it vlan by default for network management and the vlan 2 for vlan3 for voice and data.

    I use a calculator for this, my SA520 is ready at the present time.

    Step 1   On the SA520 add vlan 2 and vlan 3 and label them voice and data respectively.

    Step 2. Allows you to use the switch port 4 on the SA520 as a port to shared resources to the SG-300.

    (my intent is to use vlan1 not tagged vlan tagged 2 and vlan tagged 3 on the uplink of the switch and the SA500.)

    To do this, I have to say the SA520 port 4 of the switch will be in trunking and not access mode.

    You will need to check the membership of vlan 2 and vlan 3 on switch port 4.

    Step 3.  Now add a few IPS to VLAN2 and VLAN3

    Step 4.  Create DHCP scopes if that is what is needed on the SA520

    So now I hope that we have the SA520 with the associated IPS VLAN1, VLAN2 and VLAN3

    We also have the switch port 4 as a network interface

    We are vlan1 reproducing unidentified and vlan2 tag and tag to the SG-300 switch vlan3.

    We do the opposite on the SG-300 switch.

    If you use G10 as the uplink to the SA520 you'll notice of default port 10 must already be in trunk mode.

    Switch ports G10 should be marked for vlan 2 and labelled for vlan3.  It will be, default Gi10 untagged for vlan1.

    Make sure you keep ports switch is correctly set up.

    Best regards, Dave

  • Configuration of VLAN 'Wi - Fi comments' on ASA 5512

    I'm trying to configure a new vlan on my Cisco ASA 5512 running version 8.6 (1) 2.  This vlan will give access to AP Wireless 'invited' into my network.  I have the configuration of vlan comments through my switches, I am able to devote a switch port to 40 VLANS and acquire an IP address in the network 10.40.10.0/24.  Below is an extract from what I think is relevent to the config information.  I try to carry the traffic of comments on my ' outside' interface.

    Obvious to me miss me another command here.  Any help would be appreciated to greatling. If more running-config is required please advise.  Thanks in advance!

    _________________________________________________________

    interface GigabitEthernet0/1.40

    Description comments Wireless Network

    VLAN 40

    nameif guestwireless

    security-level 50

    IP 10.40.10.5 255.255.255.0

    Route outside 0.0.0.0 0.0.0.0 X.X.X.X 1 (public IP address to X.X.X.X)

    access extensive list ip 10.40.10.0 guestwireless_access_in allow 255.255.255.0 interface outside

    guestwireless MTU 1500

    Access-group guestwireless_access_in in the guestwireless interface

    dhcpd address 10.40.10.50 - 10.40.10.250 guestwireless

    dhcpd dns 8.8.8.8 interface guestwireless

    guestwireless enable dhcpd

    ________________________________________________________

    Here is the part of the killing

    interface GigabitEthernet0/0

    ISP Interface Description

    nameif outside

    security-level 100

    To take

    interface GigabitEthernet0/0

    security level 0

    You do not want the more precarious with the higher level hehe safety interface

    Looking for a Networking Assistance?
    Contact me directly to [email protected] / * /

    I will fix your problem as soon as POSSIBLE.

    See you soon,.

    Julio Segura Carvajal
    http://laguiadelnetworking.com

  • Ill at 5.5 VLAN switch distributed

    Begging for a little help. It's my first knife to set up a VLAN on an ESXi 5.5 Distributed Switch. I'm used to the physical switches... Dell & Cisco...

    Installation program:

    Firewall

    > > WAN1 [5 x static IP] > > WAN to the firewall

    > > WAN2 [1 x, DHCP] > > WAN to the firewall

    > > LAN1 "VMnet" 10.x.1.x/24 > > Firewall > Port1 on Dell PowerConnect 2748 (switch is not compatible trunking)

    > > LAN2 "WiFi" 10.x.2.x/24 [adapter Wireless Firewall]

    > > VLAN1 Switch1 Port1 'tag 'ESXiNet' [VMkernel + vMotion] 10.x.3.x/24' > > Switch1, Port 14 "Untagged."

    > > Port 14 on Switch1 attends Port2 on Switch3 [Dell PowerConnect 2716]

    > > Port 2 on Switch3 is 'tag', 3-16 Ports are not all "marked" and all go direct to VMkernel NIC card pairs for redundancy.

    > > VLAN2 "OfficeNET' 10.x.4.x/24 Switch1 Port1 to Switch1 LAG1 [Ports Switch1 15 & 16] > > Switch2 Ports 1 and 2 as"Gal1"[Dell PowerConnect 2724]

    > > VLAN3 'AdminNet' 10.x.5.x/24 Switch1 Port1 to Switch1 Ports 40-48

    Problem is that I have a VLAN that comes out of my Dell PowerConnect 2748 switch and enter an ESXi host. VLAN is #99. If I connect a laptop directly into the switch I get an IP DHCP correctly of the switch address on this VLAN. If I plug this LAG (or individual port if I break upwards the LAG) in my ESXi hosts can't pass the VIRTUAL local area network via the distributed switch.

    You are looking for assistance. Hope that the above explanation makes sense. Just trying to get one VLAN through a switch distributed to a virtual machine.

    Sorry for the bug to the community with this configuration. It seems that it was my fault... or my mistake. I got it setup properly from the start... For all those who in the future that concludes this thread...

    Firewall VLAN # 100 > Switch Port 01 (tag) > Group GAL 1 [15 & 16 switch ports] (unidentified) > ESXi host LAG (default configuration for VLAN Trunking 0 - 4094) > Distributed port group nec VLAN #100.

    The problem is that I have restart the physical switch and Firewall [Physics] but not the host ESXi, DS or virtual machines. Because the VMs system had been on before configuration changes their network cards were shooting a null IP and without release and renew their, they have been stuck without the IP DHCP VLAN address. I didn't enter the VMs (2012r2 server operating system) system and disable the network adapters and then enable them. They then shot the IP address of the subnet assigned to the VLAN.

    Stupid mistake but at least it is resolved.

  • Issue of configuration of VLAN

    We have ESX Server 3.5.0 110181 and VIC version 2.5.0. Each of our ESX host has 4 NICs for use in our LANs, 2 more for each Port of the Console of Service VMKernel Port. Physical network adapters to connect to a stack of 5500 Nortel ethernet Routing switches.

    I am trying configure 4 NICs in each ESX host to be able to view the two VLANS separated. I am trying to configure these VLANS on the Nortel switches. The problem is I'm new on the VLAN and can't do network cards in the ESX host to always see the two VLANS. Right now I have an ESX host with two network cards that see both VLAN and two network cards who don't see a VLAN. I'm pulling my hair out trying to figure out what I did wrong.

    First and I realize maybe this isn't the best place to ask this question, but in the Nortel VLAN config, there are four choices of marking and I have not been able to understand that it is appropriate to use for the ESX host. The choices are; Removes all brand, removes the brand only PVID, Tag all or only Tag PVID.  Can someone help me with this?

    Also should I do at VIC or on the ESX host to see systematically the VLAN? The NICs appear to periodically just drag one of VLAN, generally the VLAN the DMZ.

    Any help much appreciated. This VLAN is new to me and I could not find very clear or basic info. on the configuration of VLANS.

    Thank you.

    Hi danzbassman, the best would be to put each of the 4 corresponding ports on your Nortel 'Tag All' or "UNTAG PVID." switch only

    If you use 'UNTAG PVID Only' on the switch, this means that all executives EXCEPT those on the VLAN "primary" assigned to the port should have tags on them. Then, on the side of ESX vSwitch, you want to create your virtual machine with the many groups entered the VLAN ID field for each VLAN "secondary" on the ports of Nortel and the VLAN ID field blank for the VLAN "primary". For example, suppose that your four NICs (attributed to vSwitch1) were connected to ports 1, 2, 3 and 4 on the side of Nortel and you had three VLANS, 100, 200, and 300, with VLAN 100 defined as the PVID on each of the four ports. If you want your virtual machines to be able to properly access to all three of these VLANs, to put in place three groups of virtual computer on vSwitch1 ports, one with the VLAN ID set to nothing (for VLAN 100 traffic, because it is not marked), one with the VLAN ID value of 200 and another with the VLAN ID value 300.

    If you use 'Tag All', then you would follow the same procedure, except your first port group (one for traffic VLAN 100) should also have its VLAN ID set to 100.

    Please, help me by awarding points for a 'useful' or 'proper' response if you think it is useful!

    -Amit

  • Update the Configuration of the switch switch 2.1 Executive to 3.5

    Hello world

    I tried the switch 2.1 update Executive to 3.5 and have known, that my configurations have stoppped working. To me, it looks like 3.5 dislikes my IVI configuration for switching modules.

    The function check in MAX tells me that the PXI cards are not available. The first page of the configuration of the switch shows no configuration / terminal blocks.

    Because the configuration consists of nine matrix with lots of report cards, I would really appreciate a way to properly import the old configurations (xml files are available)

    Any ideas?

    See you soon

    Oli

    Hi Oli,

    Yes, there was a major change in the Switch Executive 3.5 - it now uses for switching NI DAQmx calls material. There is a KB document the upgrade process a simulated configuration from an earlier version, but of course, you can try the steps that make sense, too:

    Import of NI Switch Executive 3.0 and previous virtual devices in OR Switch Executive 3.5 and later versions

    http://digital.NI.com/public.nsf/allkb/1D1099A85B156FA68625778500787444

    However, I have noticed that the KB Editor uses a configuration file to .txt instead of the .xml you have. I see two options here: first of all, if you have even an operating system with Switch Executive 2.1, you could probably export settings in the form of text or you can try to modify the .xml file manually to resemble the layout of the text (probably a lot of work, you would have to learn the structure of the text by trial and error using newly created Switch E.g. 3.5 configurations...)

    Best regards

    Sebastian

  • Need help setting up a configuration of VLAN special using WRVS4400N

    Hi guys,.

     

    I need your help on how to implement a configuration of VLAN somehow non-standard.

    The situation is the following:

    The customer wants a WLAN set up for the company and the other for guests. Now, wouldn't that be not so difficult if we'd be using the internal internet connection. But the WRVS4400N will be used to implement wireless LANs / VLAN only.

    The company uses the DHCP protocol on both of their subnets, provided by a Watchguard Firebox XTM510.

    Now, what we would do is set up the back door #1 for the connection to the subnet of the client and the #2 for the connection to the optional subnet for the guests. The first problem is that we were not able to configure DHCP forwards to the VLAN2. It works very well on the 1st but the 2nd doesn't allow that either ENabled or disabled, grayed out DHCP.

    To work around the problem that he would be allowed to set up DHCP WRVS4400N providing in itself for the subnet invited, but try that didn't work at all.

    Is it possible? Thanks in advance!

    Best,

    Ralph.


Maybe you are looking for