Issue of QoS SG300 - 28 p

Hello, I have SG300-28Ps as of the PSE for my IP phone system.  Phones are marking their voice packets as DSCP 46 according to the directives of vlan auto voice. The QoS settings on the switch are by default - base, Trust DSCP, strict priority Mode, etc.

On the PBX itself, Programming DB allows me to schedule the 'Type of Service' for voice packets. The value recommended in the manual was 184 which makes sense, because this decimal value of ToS match the 46 DSCP, CoS 5, etc.

The question arises, however, I have to change the trust on the switch mode? I'm not real clear on the differences between them.

Kind regards

-Brayton

Hi, Brayton, the trust mode didn't need to be changed. 802.1 p specifies a 3 bit field called a PCP in etherner frame header when using frames of vlan tagged. This will contain a priority class of service.

The CoS is able to map DSCP values. The DSCP has a 6-bit field called diffserv (differentiated service). CoS values can be mapped to DSCP values. The video is usually CoS 4 while voice is usually CoS 5. Within the SX300, you are able to manually set the mapping to any value you want. With the trust mode, the switch basically accept and agree with whatever the labeled ethernet frame contains. Without trust mode, the switch will be note the package based on the value of PCP and DiffServ to fit in different categories.

-Tom
Please mark replied messages useful

Tags: Cisco Support

Similar Questions

  • Setup QOS SG300 - 28 p

    Hi all.  I tried to configure my SG300 - 28 p for my 2960S, but using the following commands:

    conf t

    int row item in gi1-28

    Auto qos voip cisco-phone

    But there is no other command I can find on the SG300.  Did someone familiar with a similar command?  Or is a completely manual process on the SG300-QOS?

    I'm on the 1.3.7.18 firmware version

    Hi Ksuchewie,

    There is no auto qos in Cisco small business switches.  This feature of routers, catalyst and enterpirce.  Cisco small business voice switch vlan by default use DSCP 46 and CoS 5

    This average DSCP EF 46 mode

    My adivce replace DSCP 26 so it will match AF31 drops low.  Also I'll leave CoS in 5 locations.

    I'll give you an example how config qos voice vlan siwtch small business

    my example is DATA vlan 1 and vlan VoIP is 100

    quick order

    config t

    ID of the vlan 100 voices

    Voice vlan cos 5

    Voice vlan dscp 26

    WR mem

    Thank you

    Ministry of health

  • Issue of QoS Catalyst 3750

    Hello

    I have a scan server (IP = 1.2.3.4 for this example) who wreaks havoc when it works, which is evident in the number of drops of output I see.  I thought the police thing, but it is a production environment and 3750-G switch does not support Netflow or any other tool that would provide accurate estimates of flow to work from.

    So, my thoughts are rather to implement queuing for the scan server and limit his access to common buffers, etc..  I would like to have some feedback on the config.  (I've included notes in an attempt to illustrate my thought.)

    !**| Catalyst 3750-G | **
    !
    ! * Activate QoS
    !
    MLS qos
    !
    ! * Create custom queue-set
    ! * increase buffer 1 and disable the stamp 4
    !
    MLS qos all the output queue 2 buffers 50 25 25 0
    !
    ! * To queue 1, make available to the threshold of 1 full buffer,
    ! * reserve full buffer for the local queue only, enable
    ! * queue to borrow 3 x more common pool pads.
    !
    MLS qos all the queue of output 2 1 100 100 100 400 threshold
    !
    ! * To queue 3, make available to the threshold of 1 full buffer,
    ! * reserve 30% of buffer for the local queue only, enable
    ! * queue to borrow 4 x more common pool pads.
    !
    MLS qos all the queue of output 2 3 100 100 33 165 threshold
    !
    ! * Assign values DSCP 16, 18, 20, 22 & to queue 1;
    ! * assign values DSCP 8, 10, 12, 14 & the queue of 3
    !
    queue threshold 1 dscp-map of MLS qos srr-queue output 1 16 18 20 22
    queue threshold 3 dscp-map of MLS qos srr-queue output 1 8 10 12 14
    !
    ! * To be complete, assign COS values associated with the same queues.
    !
    queue threshold cos 1-map of MLS qos srr-queue output 1 2
    queue threshold cos 3-map of MLS qos srr-queue output 1 1
    !
    ! * Access-list 130 identifies (bidirectional) scan traffic.
    !
    IP access-list 130 allow any host 1.2.3.4
    access-list 130 allow the host ip 1.2.3.4 everything
    !
    ! * Create a class map to match previously configured access group.
    !
    class-map correspondence-any CM-SCANS
    Description * no critical analysis traffic
    game group-access 130
    output
    !
    ! * Create policy-map to assign a DSCP values to analyze default traffic.
    !
    Policy-map PM-QOS-IN
    Description * Ingress QoS strategy
    class of CM-SCANS
    set ip dscp af11
    output
    !
    class class by default
    set ip dscp af21
    output
    output
    !
    ! * Assign the queue-series 2 and/or service-policy (single entry) if required.
    !
    gix/x/x interface
    queue-series 2
    entry of service-politics-PM-QOS-IN
    output
    !

    PS - There is no voice that cross this switch, so I don't see it had to book the queue 1 for voice or turn on the priority queue, etc..

    Any help is appreciated.  Thank you in advance.

    Disclaimer

    The author of this announcement offers the information in this publication without compensation and with the understanding of the reader that there is no implicit or explicit adequacy or adaptation to any purpose. Information provided is for information purposes only and should not be interpreted as making the professional advice of any kind. Use information from this announcement is only at risk of the reader.

    RESPONSIBILITY

    Any author will be responsible for any wha2tsoever of damage and interest (including, without limitation, damages for loss of use, data or profits) arising out of the use or inability to use the information in the view even if author has been advised of the possibility of such damages.

    Poster

    Well, then you're a little stuck trying to manage the flow of this server.  Unless you want to look at the penetration of the port police server and/or to "shape" the output port.  The idea being, if you can slow down the movement of this server, you might avoid configuration QoS requirements.

    Otherwise, you're on the right track, in what you're trying to do.

    You may want to traffic of tag to this server as 'trap' (CS1).  Ideally, you may be able to distinguish the traffic 'scan' of other traffic to and from this server.

    On treatment of output of your QoS policy, rather than create a 'special' configuration to handle this traffic, you should consider having a policy that has a low priority class (scavenger), which is where direct you this traffic.  That is a policy of 4 class that takes in charge in time real (PQ), foreground (twice in 10 x % of the default value), by default and the background (1%), planning priorities.

    3750 of buffer management, I found the setting of thresholds all up and moving more if not all buffers to the pool, usually works quite well.

  • Issue of QoS

    I don't know if this can be done without a lot of manual configuration.

    I have a router (a SRI 2921 15.4 (3) M3) which is connected to the other ISR routers running (running 2921 s 15.4 (3) M3 and 4451-Xs running using DMVPNs 15.4 (3) S3).  DMVPN tunnel could be on several transport different speed of satellite links with bandwidth of 0, 5Mbps to Web links operating at a much higher speed.  I am trying to run QoS between two routers - right now, the problem I face is that I can apply only a service-policy output interface - so if I have several different speed links, I do only traffic QoS shaping for the slower speed.  I want to do is to have the value QoS using a different strategy based on the subnet - I think that I would need to have a single policy-map with a whole lot of access-group match in her statements and corresponding to ACL based on the subnet of each device.  Just to complicate this, there are several tunnels inside the router.

    Thanks in advance for any ideas!

    Quick drawing:

    Disclaimer

    The author of this announcement offers the information in this publication without compensation and with the understanding of the reader that there is no implicit or explicit adequacy or adaptation to any purpose. Information provided is for information purposes only and should not be interpreted as making the professional advice of any kind. Use information from this announcement is only at risk of the reader.

    RESPONSIBILITY

    Any author will be responsible for any wha2tsoever of damage and interest (including, without limitation, damages for loss of use, data or profits) arising out of the use or inability to use the information in the view even if author has been advised of the possibility of such damages.

    Poster

    I don't remember the actual command, although probably it is one of the commands of the PNDH.

    No, the policy does apply to the traffic on the hub is going we talked specific.

    To speak to the traffic of the hub, you can QoS manage 'normally '.

    BTW, in one of the later versions of IOS, DMVPN also supports the dynamic formatting (that is, it responds to the end to end congestion), which could work in either sense.

  • Cisco SG300 - 28 p - Port security issue.

    Hi, I would like to activate the port security on a Cisco SG300 PoE 28 p Switch. I would like to know how this can be done in cases where port is more connected to desktop switches 8 ports and in cases where computers are connected directly to the switch.

    Thanking you in advance,

    Parth.

    This is described in detail in the section 'Configuration of Port Security' on page 326 to 329 of the document Cisco Small Business 300 Series Managed Switch Administration Guide.

    The difference between a port serving a desktop switch and the other directly serving endpoint is just the number of MAC addresses that you want to leave.

    You have any specific questions?

  • Another issue of queues DSCP/QoS/CoS of 6500/7600

    OK... a little confused, thinking, that I know what needs to happen, and what is happening now, but it is true UN-certainty with that I hope that people can help.  Here are the basic configuration:

    A---|6500|--10G--|7604|---10G---|7604|---10G---|6500|---B

    You get the point.  Traffic crossing A-> B or vica versa.

    All the links of the kernel are L3/Routed, not L2/Vlan/.1q/ISL

    Traffic is marked on the Board with a political map of penetration.

    Traffic is confirmed through DURATION that it contains both CoS and DSCP/ToS, leaving the 6500 s two-way headed the core of 7600

    Traffic is ALSO confirmed through extending classes * receipt * on the other side by the 6500, that DSCP is maintained but CoS is gone/0.

    Considering that only 6708 - 10G modules allow apparently dscp values mapped to the queues/thresholds, which leaves me with the research of the queue on the penetration (for VoIP traffic priority) with cos-of-queue / beat mapping as well as output with cos to queue mappings.  Of course, this is not possible (at least on the penetration) if the 7600 are not preserving the CoS on the output of the port.

    This leaves wondering if the 7600 are same queue evacuation traffic based on internal mapping supposed DSCP-to-CoS that is supposed to happen before the queue/Scheduler.  Interfaces are all set up as "trust dscp" right now.  So the CISCO docs should be rewriting CoS to 0 on the penetration and using reliable dscp values to determine internal DSCP, which in turn should be used with DSCP-CoS map appropriate queue on exit... I am a sceptic, what happens really... and unfortunately, have really no way to verify (that I know) because the show on the 6500/7600 commands are fairly primitive about QoS stats...

    Then, we have been re - think about it and thought that maybe the thing to do to solve this problem is to:

    -Trust cos instead of dscp

    -enable transparency dscp (no rewriting dscp) so it is kept on the side of the switch output

    And so by doing this it would be:

    -use CoS to tail of penetration

    -use CoS to output queues

    - And to preserve the original CoS and DSCP/ToS values

    Would that be correct?

    Two other config options I thought were:

    -queue only mode

    -mpls cos spread (although I don't think that would do what I want, but rather simply spread non-existent MPLS EXP bits)

    Any help would be greatly appreciated... I read so many different docs now, my head is swimming

    Couple of caveats-

    (1) all the below apply to pre IOS 15, as I have no experience with which it may be different

    (2) I have not used a 7600, but I used the 6500 much but both share a large number of the linecards and I suspect you're referring to this kind of linecards.

    The main problem is that the CoS value is contained in the 802. 1 q non-native added tag VLANs on a trunk link. But your links are L3 if there is no value CoS to preserve.

    This creates two problems for you-

    (1) input queues. On penetration, the queues are CoS based which means you need to a CoS value to assign packets into queues. On the 7600 s you're obviously not see a CoS value for the reason explained. Now, you can use a political map and a service policy to classify and mark inbound traffic. But, as far as I know, you can set the IP precedence or DSCP marking in a map policy on traffic of the penetration. Some cards like cards ARE for the 7600 support defining a CoS value but I think they are the exception rather than the norm.

    (2) output queues. You are right in what you say, IE. You can trust the DSCP/IPP incoming value and then, assuming that the line card doesn't support based DSCP output queue, the 7600 may derive a value based on the internal DSCP value CoS and then put in the correct output queue.

    Yet once, however, without a trunk there no value written in the packet CoS.

    I entirely agree that it can be very difficult to tell exactly what the 6500 in terms of marking internal etc. This is one of the great frustrations with the 6500.

    Hope some of that helped.

    Edit - the only way that you can trust CoS on penetration as far as I can see is to make the trunk links IE. you use a vlan dedicated for each interconnection and allow only that vlan on the link. Then you simply transfer the IP addresses assigned to the physical ports for the SVI to the new VLAN on each switch. You should make sure that the vlan that you authorized through the link was not the vlan native because you need a tag to add.

    Jon

  • SG300 Issue of Vlanning

    Hi guys

    I was hoping someone could give me a pointer on a configuration problem of Vlan I have.

    Environment

    Cisco S300-10 switch (set to the L3 Mode)

    I downloaded a newb drawing my config switch in the hope that this can help

    Of my Office Pc I see the following symptoms

    (1) I CAN ping to the interface Vlan 2 (which is 192.168.1.1)

    (2) I can NOT however ping all machines within Vlan 2 (for example 192.168.1.2)

    (3) I can't ping interface Vlan 3 (which is 10.0.0.1)

    Worth Mentioning as it isn't the drawing that I did, but the desktop pc has additional 192.168.1.200 & 10.0.0.200 ip addresses

    From Vlan 2 I see the following symptoms

    (1) I CAN ping all other interfaces (for example, 10.0.0.1 & 192.168.0.102) virtual LAN

    (2) I CAN ping all machines within Vlan 2

    VLAN 2 Machines with an interface Vlan defined as their gateway (192.168.1.1 for example) I read that link for what I

    https://supportforums.Cisco.com/disc...r-VLAN-routing

    Any help would be greatly appreciated.

    Thank you

    Martyn

    On the router do you have routes to networks on the switch?

    For example:

    IP 10.0.0.0 sm 255.255.255.0 gw 192.168.0.102

    SM IP 192.168.1.0 255.255.255.0 gw 192.168.0.102

    And I will assume that you have a default route on the switch to the router?

    For example:

    SM IP 0.0.0.0 0.0.0.0 gw 192.168.0.1

  • Ask for advice on configuring QoS on WAG160N

    I just bought a WAG160N and trying to Setup QoS in the effort to allow the game smoothly to my favorite game even when my roommate decides that it will download a load of shit porn.

    I tried using the auto and setting my game port bandwidth functioin (7777) to the "absolute priority" and it works fine for me and play my game, but absolutely kills bandwidth for other applications on the local network, I think that's the issue, as described in http://forums.linksysbycisco.com/linksys/board/message?board.id=DSL&message.id=6055&query.id=55801#M... who While in doesn't bother me the least of the world presents a foreseeable problems (mainly his sneak in and murder me in my sleep). In order to save my life and probably save some jail time could offer if some adivce please on what settings do I enter so I can have the game smoothly and it can download its dwarf weird porn/stuff.

    My internet connection is (please don't laugh) ADSL 1. with a connection of 1536 kbps down and 256 Kbps upwards. In the linked thread the person said it took its bandwidth to 1000 Kbps above his actual connection speed, but in my case, it would be almost double what I really have.

    Thanks for any help.

    Kris

    If you have configured automatically under Internet bandwidth, then the QoS service uses the highest level of the bandwidth of this application or Port. To make QoS and other computer work, instituted smoothly bandwidth Internet manually and the size 900 Kbps. Your internet download speed is 1536 kbps, so you can set the size to 900 Kbps.

    I think with these settings your game and the other computer will be able to go online and can download files from the internet smoothly.

  • Issue with Vista wireless

    Computing:   I have a Dell XPS 420 Desktop Computer with wireless capability with a Broadcom 802.11 network adapter g. operating system is Windows Vista Home Premium 32-bit with Service Pack 1

    History: I had my computer since December 2007 and used to access wireless internet with Bellsouth DSL and a Linksys router, and then for the past year, I got paired with a Linksys WRT150N router comcast. I have had no problems to connect to the internet until Verizon Fios has been installed on the Sunday, August 30, 2009.
    That said, I tried with a Dell laptop in windows XP and it is connected. I also tried with a mini computer dell laptop running XP and it is also connected. Yet once again, I say that all three of these computers connected to the internet using Linksys and two different ISPS, it was with the switch to verizon that it has lost its ability to connect.

    Verizon has installed a router wireless Actiontec MI424WR Rev E.
    Firmware version: 20.9.0 (this is the most to date version)

    I can't connect my Dell XPS 420 desktop using a wired LAN connection to the router and establish an internet connection. I'm not able to establish a wireless internet connection. When I try to go wireless, it is said:
    Public Network - unidentified network - Local access only.
    IPv4 connectivity: Local
    IPv6 connectivity: Local
    Media state: enabled
    SSID: FWLK5
    Speed: 54 Mbps
    Number of employees: (all 5 bars)
    Bytes received is always 0

    On the connection tab:
    Name and SSID: FWLK5
    Network type: Access Point
    Network availability: all users
    The checkmarks are: connect automatically in case of beach, connect to a more preferred network if available.

    On the Security tab:
    Security type: no authentication (Open)
    Encryption type: WEP
    Password: (wrong password is in the box)
    Key index: 1

    The properties of the wireless connection:
    Networking
    Connect with: map of network Broadcom 802.11 g
    This connection uses the following items:
    Client for Microsoft networks
    QoS Packet Scheduler
    File and sharing printers for microsoft networks
    IP version 6
    Internet version 4 Protocol
    Link layer topology discovery map i/o driver
    Link Layer topology discovery responder

    Sharing:
    The two boxes are checked:
    Allow other users to connect through this computer network
    Allow the other network users to control or disable the shared connection

    What I've tried so far based on reading previous forums discussing this issue.

    1. completely uninstalled Norton 360, including using the Norton removal tool and by calling the customer service of Norton who has accessed the computer and verified the complete removal.

    2 turned off the windows firewall.

    3 make sure the Broadcom network adapter driver has been the most up to date.

    4. people with disabilities and reinstalled the card network Broadcom.

    5 update Windows Vista Service Pack 1 and all other updates installed today.

    6 call Verizon Online support - they reset the modem and tried several things like change the "channel". Nothing has worked. They said to contact the computer manufacturer. They have pointed the finger to be a problem with Vista from the computers Windows XP work.

    7. called Dell: they tried several things with access to remote and says that it is the problem of the router/ISP.

    8. unplug the router several times, waited 5 minutes and plugged in. Has made several rounds of power on the computer as well.

    9. changing a registry key according to Microsoft technical support to disable the DHCP Broadcast flag in windows vista (I'm not entirely sure I did correct it because I didn't know what was the GUID) http://support.microsoft.com/kb/928233

    10 disabling IPv6 (by unchecking it)

    11 disabling IPv4 (by unchecking it)

    12 Ran IPConfig to confirm I have a valid IP address (starts with 192 and is valid I don't know if I should post the full address)

    13 fact MSCONFIG with reset winsock

    14 changed the settings TCP/IP by netsh int ip reset at the command prompt, and out, and then uupon done restart ncpa.cpl in the start menu and unchecked the tcp/ip v6 Protocol restarted the computer.

    15. don't attempt to ping a website - no Exchange packets, error message cannot find the Web site. I tried www.google.com and www.verizon.com

    I am at a loss of what I can do to get my computer back operational wireless. Due to the entire office to the top of our House, I would really like this computer on another level and the only way to accomplish that without drilling the holes through the walls that it it works wireless.

    Any other advice would be greatly appreciated, thank you.

    Here are my stats from config IP:
    Microsoft Windows [Version 6.0.6001]
    Copyright (c) 2006 Microsoft Corporation.  All rights reserved.

    C:\Users\Summer>ipconfig

    Windows IP configuration

    Ethernet connection to the Local network card:

    State of the media...: Media disconnected
    The connection-specific DNS suffix. : Home

    Wireless network connection Wireless LAN adapter:

    The connection-specific DNS suffix. : Home
    Link-local IPv6 Address...: fe80::ad73:7 has 47: 8938:68e7% 12
    IPv4 address...: 192.168.1.5.
    ... Subnet mask: 255.255.255.0.
    ... Default gateway. : fe80::7d25:2521:81 d 1: c3ca % 12

    192.168.1.1

    Bluetooth network connection Ethernet card:

    State of the media...: Media disconnected
    The connection-specific DNS suffix. :

    Card tunnel Local Area Connection * 6:

    State of the media...: Media disconnected
    The connection-specific DNS suffix. :

    Card tunnel Local Area Connection * 9:

    State of the media...: Media disconnected
    The connection-specific DNS suffix. :

    Card tunnel Local Area Connection * 10:

    State of the media...: Media disconnected
    The connection-specific DNS suffix. :

    Card tunnel Local Area Connection * 11:

    State of the media...: Media disconnected
    The connection-specific DNS suffix. :

    Card tunnel Local Area Connection * 15:

    State of the media...: Media disconnected
    The connection-specific DNS suffix. : Home

    PING data:
    Microsoft Windows [Version 6.0.6001]
    Copyright (c) 2006 Microsoft Corporation.  All rights reserved.

    C:\Users\Summer>ping www.google.com
    Ping request could not find host www.google.com . Please check the name and try one
    gain.

    UPDATE:   I rented the "Geek Squad" to come look at my system. The poor guy spent 3 hours going through all stages. Finally a last ditch effort he has installed a new NIC card. Bingo that fixed for some reason any. Apparently, the old NIC card was bad, even if the system was saying that it was good. The old NIC card was allowing him to connect to the router but no internet. He said it was weird, but the problem is SOLVED!

  • Limit my bandwidth downloading the applications using the API to control traffic and QoS

    I used QoS and Traffic Control API as TcAddFlow and TcAddFilter to control my bandwidth usage download applications.

    We manipulate TC_GEN_FLOW, to send and receive FLOWSPEC parameters.

    Now, I want to set the exact limit to 5 Mbps, what are the value that I need to set for TokenBucketSize and TokenRate to limit bandwidth to 5 Mbps FLOWSPEC structure?

    Code snippet:

    newFlow-> ReceivingFlowspec.DelayVariation = QOS_NOT_SPECIFIED;
    newFlow-> ReceivingFlowspec.Latency = QOS_NOT_SPECIFIED;
    newFlow-> ReceivingFlowspec.MaxSduSize = QOS_NOT_SPECIFIED;
    newFlow-> ReceivingFlowspec.MinimumPolicedSize = QOS_NOT_SPECIFIED;
    newFlow-> ReceivingFlowspec.PeakBandwidth = POSITIVE_INFINITY_RATE;
    newFlow-> ReceivingFlowspec.ServiceType = SERVICETYPE_NETWORK_CONTROL;
    newFlow-> ReceivingFlowspec.TokenBucketSize = ?;
    newFlow-> ReceivingFlowspec.TokenRate =?;

    newFlow-> SendingFlowspec.DelayVariation = QOS_NOT_SPECIFIED;
    newFlow-> SendingFlowspec.Latency = QOS_NOT_SPECIFIED;
    newFlow-> SendingFlowspec.MaxSduSize = QOS_NOT_SPECIFIED;
    newFlow-> SendingFlowspec.MinimumPolicedSize = QOS_NOT_SPECIFIED;
    newFlow-> SendingFlowspec.PeakBandwidth = POSITIVE_INFINITY_RATE;
    newFlow-> SendingFlowspec.ServiceType = SERVICETYPE_NETWORK_CONTROL;
    newFlow-> SendingFlowspec.TokenBucketSize =?;
    newFlow-> SendingFlowspec.TokenRate =?;

    Thank you & best regards

    This issue is beyond the scope of this site (for consumers) and to be sure, you get the best (and fastest) reply, we have to ask either on Technet (for IT Pro) or MSDN (for developers)

    If you give us a link to the new thread we can point to some resources it
  • Connection Cisco SG300-10-Core Cisco 6513 for ShoreTel phones

    I have a new ShoreTel phone system will soon.  Configure a dhcp, including option 156 scope which is required for ShoreTel to obtain the configuration on ShoreTel phones and in order to get on the vlan correct voice on the phone.  I also created a new vlan 112 for the vlan voice.  When I plug directly into the Cisco 6513 Core switch, the phone starts fine, it gets its configuration and on the VLAN correct 112.

    We have a training room in which there will be a lot of users.  I ordered 6 Cisco small business 10port SG-300 POE switches for this training room.  I plugged the switch in a cable coming off the 6513 which is just an access port and in the vlan voice I created for phones shoretel VOIP:

    interface FastEthernet10/11
    switchport
    switchport mode access
    switchport voice vlan 112
    priority queue queue-limit 20
    WRR-queue random - detect min-threshold 1 30 40 50 60 70 80 90 100
    WRR-queue random - detect min-threshold 2 30 40 50 60 70 80 90 100
    WRR-queue random detection threshold min 3 30 40 50 60 70 80 90 100
    WRR-queue random detection max-threshold 1 70 80 90 100 100 100 100 100
    WRR-queue random detection max-threshold 2 70 80 90 100 100 100 100 100
    WRR-queue random detection threshold 3 70 80 90 100 100 100 100 100 max
    WRR-queue cos-map 1-3-1
    WRR-queue cos-1 6 4 map
    WRR-queue cos-map 2 6 0
    WRR-queue cos-map 2 8 2
    WRR-queue cos-map 3 1 7
    WRR-queue cos-map 3 8 3 6
    MLS qos trust dscp
    Storm-control broadcasts 20 h 00
    spanning tree portfast

    When I plug a phone directly into this cable the phone works very well.  When I plug a cheap cisco POE switch in I can get 3 phones works very well, but due to the amount of energy needed for this cheap a cisco switch it will give only 3 phones power.

    The real problem here is plug into small business cisco SG300-10port POE managed switch.  I thought I could just connect the switch to the port configured above right out of the box and plug in phones without a problem.  When I plug the switch and start plugging in ShoreTel phones, they do not start coming in and upward and actually had a few phones upward but then finally there is no tone and also later, they appear on the screen as a service not available.

    I have to configure a trunk port on a port on the SG300 and the Cisco 6513 for this to work?  Also I will need to VLAN configuration manually on the SG300.  Looks like that when I just plugged it in to the above configured the port on the SG300 it automatically create the vlan 112.

    Any help would be appreciated

    Thank you

    Dave

    Deleted

  • No SG300-52 routing inter - VLAN

    Hello

    I have a base on this SG300-52 configuration:

    • L3 is enabled
    • Latest Firmware is installed (1.4.0.88)
    • Vlan1 IP is 10.0.0.1/24
    • A PC is connected to port 1 (with IP 10.0.0.3)
    • VLAN99 IP is 192.168.0.2/29
    • A router is connected to the 49 port (with the 192.168.0.1 IP address and Internet access to the router is OK)
    • On SG300-52 default gateway is 192.168.0.1

    The SG-300:

    • I can ping the default gateway (192.168.0.1) and any Internet address, using 192.168.0.2 as address IP Source
    • I can't ping the default gateway (192.168.0.1) or any Internet address, using 10.0.0.1 as address IP Source
    • I can ping my PC (10.0.0.3), using 10.0.0.1 as the IP Source address
    • I can't ping my PC (10.0.0.3), using 192.168.0.2 as address IP Source

    There is no routing inter - VLAN, but I can't find how to activate...

    The complete configuration is the following:

    #show run SG300-52
    config-file-header
    SG300-52
    v1.4.0.88 / R800_NIK_1_4_194_194
    CLI v1.0
    router adjustment system mode

    SSD of encrypted file indicator
    @
    SSD-control-start
    config of SSD
    control of password file unrestricted SSD
    no control of the integrity of the file ssd
    SSD-control-end cb0a3fdb1f3a1af4e4430033719968c0
    !
    database of VLAN
    VLAN 99
    output
    Add a voice vlan Yes-table 0001e3 Siemens_AG_phone___
    Add a voice vlan Yes-table 00036 b Cisco_phone___
    Add a voice vlan Yes-table 00096e Avaya___
    Add a voice vlan Yes-table 000fe2 H3C_Aolynk___
    Add a voice vlan Yes-table 0060 b 9 Philips_and_NEC_AG_phone
    Add a voice vlan Yes-table 00d01e Pingtel_phone___
    VLAN voice Yes-table add Polycom/Veritel_phone___ 00e075
    Add a voice vlan Yes-table 00e0bb 3Com_phone___
    Hello interface range vlan 1
    hostname SG300-52
    username privilege 15 c464af817287343305cbd6493c593885695df531 encrypted password cisco
    property intellectual ssh server
    Server SNMP Server
    The telnet server IP
    !
    interface vlan 1
    the IP 10.0.0.1 255.255.255.0
    no ip address dhcp
    !
    interface vlan 99
    name WAN
    IP 192.168.0.2 255.255.255.248
    !
    interface gigabitethernet49
    switchport mode general
    VLAN allowed switchport General add 99 unidentified
    switchport General pvid 99
    !
    output
    Default IP gateway 192.168.0.1

    You have an idea on the issue?

    Thanks in advance for your help.

    Hi Anthena1390

    My email is [email protected] / * /. When you reply to the email can let me know which devices need to communicate on VLAN 99. Is there a major reason for SG300 happen DHCP assumes that your router? Well I would like to add a few screenshots, they will show you how to properly set up a P2p link, assign DHCP pools, how to correctly add default routes. Send an email and lets get your problem is resolved.

  • SG300-10 & routing InterVLAN Actiontec M1424WR (Rev E) problem

    I know that many of the similar issues were invited on this topic, but following the guidelines had no success for me.

    I created VLANs with the SG300-10 L3 mode, but in each VLAN, clients are not able to ping each other. Each VLAN can ping the router, switch, and has internet access

    Here is my configuration info.

    config-file-header
    v1.4.0.88 / R800_NIK_1_4_194_194
    CLI v1.0
    router adjustment system mode

    indicator SSD of excluded files
    @
    Jumbo-frame of port
    database of VLAN
    VLAN 2-4
    output
    Add a voice vlan Yes-table 0001e3 Siemens_AG_phone___
    Add a voice vlan Yes-table 00036 b Cisco_phone___
    Add a voice vlan Yes-table 00096e Avaya___
    Add a voice vlan Yes-table 000fe2 H3C_Aolynk___
    Add a voice vlan Yes-table 0060 b 9 Philips_and_NEC_AG_phone
    Add a voice vlan Yes-table 00d01e Pingtel_phone___
    VLAN voice Yes-table add Polycom/Veritel_phone___ 00e075
    Add a voice vlan Yes-table 00e0bb 3Com_phone___
    The dhcp server IP
    network IP dhcp pool 2 VLANs
    address 192.168.2.2 low high 192.168.2.254 255.255.255.0
    Infinite rental
    default router 192.168.2.1
    Server DNS 8.8.8.8
    output
    network IP dhcp pool VLan 3
    address 192.168.3.2 low high 192.168.3.254 255.255.255.0
    Infinite rental
    default router 192.168.3.1
    Server DNS 8.8.8.8
    output
    network IP dhcp pool VLan 4
    address 192.168.4.2 low high 192.168.4.254 255.255.255.0
    Infinite rental
    default router 192.168.4.1
    Server DNS 8.8.8.8
    output
    Hello interface range vlan 1
    output
    privilege of encrypted password username cisco 15
    IP http timeout policy 1800 HttpOnly
    clock timezone ""-4
    clock source browser
    The telnet server IP
    !
    interface vlan 1
    192.168.1.20 IP address 255.255.255.0
    no ip address dhcp
    !
    interface vlan 2
    Name
    IP 192.168.2.1 255.255.255.0
    !
    interface vlan 3
    name B
    address 192.168.3.1 IP 255.255.255.0
    !
    interface vlan 4
    name C
    192.168.4.1 IP address 255.255.255.0
    !
    interface gigabitethernet1
    switchport mode access
    !
    interface gigabitethernet2
    switchport mode access
    !
    interface gigabitethernet3
    switchport mode access
    !
    interface gigabitethernet4
    switchport mode access
    switchport access vlan 3
    !
    interface gigabitethernet5
    switchport mode access
    switchport access vlan 4
    !
    interface gigabitethernet6
    switchport mode access
    switchport access vlan 4
    !
    interface gigabitethernet7
    switchport mode access
    !
    interface gigabitethernet8
    switchport mode access
    !
    interface gigabitethernet9
    switchport mode access
    !
    interface gigabitethernet10
    switchport mode access
    !
    output
    Default IP gateway 192.168.1.1

    My router is Actiontec M1424WR (Rev E) with the following configuration in the routing table:

    So my questions/challenges are:

    (1) customer in VLAN 3, (192.168.3.2/24) can ping (192.168.1.20/24) Switch and router (192.168.1.1/24) and VLAN 4 (192.168.4.1/24)

    , but NO client in VLAN 4 (192.168.4.2/24)

    (2) this point is common to all the VLANS

    (3) the installation of the final network is below, but in testing phase at the moment. VLAN 5 has not yet been configuration.

    The final installation would enable the VLAN 2 and VLAN 5 to communicate in order to access the NAS.

    Any help will be greatly appreciated, thanks!

    Hello

    To me, it looks like customers used for testing such as PC Windows Firewall blocks the request to the other subnet. Try to disable the windows firewall and to test the ping.

    Kind regards

    Aleksandra

  • SG200 - 50 p, SG300 - 28 p phone YES Voice VLAN

    Hey guys,.

    I'm having a problem with the YES voice of VLANS on SG200 - 50 p, SG300 - 28 p, layer 2 Mode. Firmware 1.3.7.18.

    Enabled on a port all the ports PVID unlabeled said no marked traffic is blocked.

    Example:

    Data VLAN 10 - 192.168.10.0/24

    Voice VLAN 100 - 192.168.100.0/24

    Configuration of Vlan voice and YES added and enabled on ports.

    All Ports configured as trunk Type.

    Example 1:

    Members Table shows that:

    Port 1 - 10UP

    2 port - 10UP

    YES disabled: 2 laptops connected to ports 1, 2, traffic passes.

    YES Enabled: 2 laptops connected to ports 1, 2, traffic blocked on VLAN10.

    Example 2:

    1 - 10UP, 100 tons of port

    2 port - 10UP

    Port 3 - 10UP

    YES Enabled: 2 laptops connected to the ports 2,3, blocked traffic on VLAN10.

    1 phone connected to channel 1, the phone connects.

    So it's using, but for some reason any the vlan untagged on that port is blocked when the YES is enabled.

    I have installation this scenario on many switches cisco small business before and it works very well, so I wonder is this a firmware issue? or am I just being stupid and something wrong?

    Thanks for any help you can provide! :)

    Hi Vladimir,.

    It's something about Cisco still working. You are more than welcome to open the ticket with us and contribute actively. At this point, the only solution is to sue 1.3.5 firmware which does not show this problem.

    http://www.Cisco.com/c/en/us/support/Web/TSD-Cisco-small-business-suppor...

    Kind regards

    Aleksandra

  • SG300 10 p - disconnects after trying to apply the ip to the VLAN

    Its really my first foray into a Cisco SMB device - have tried to configure the SG300 10 p for a few days, but nothing helped. I also upgraded to the latest firmware 1.3.5.58 and now downgraded to 1.3.0.62 and the problem is.

    I am trying to create a vlan and assign an IP address (I am using the L3) - However, whenever I apply intellectual property - I lose connection and then I have to unplug the device again to connect to the rear. For example, if I try to implement the low - courtesy of Tom Watts to the point where I'm creating vlan 200 and assigning the Ip address once I press on enter – it will lose connection. The same phenomenon occurs in the graphical interface. Any ideas where I'm wrong.

    config t

    database of VLAN

    VLAN 200

    output

    interface vlan 1

    IP 192.168.100.137 255.255.255.0

    no ip address dhcp

    output

    interface vlan 200

    192.168.99.1 IP address 255.255.255.0

    output

    The dhcp server IP

    network IP dhcp pool test

    address 192.168.99.1 low high 192.168.99.254 255.255.255.0

    router by default - 192.168.99.1

    Server DNS 8.8.8.8

    Also separately, I can not the DHCP server to issue all of the Ip addresses to the clients, so I'm going to manually assign addresses to client machines.

    Hi Adam,.

    If the switch is by default tries to do this

    config t

    int vlan 1

    192.168.100.137/24 IP address

    ---> Reconnect the switch to the IP address of management

    config t

    database of VLAN 200

    192.168.99.1/24 IP address

    -Tom
    Please mark replied messages useful

Maybe you are looking for