Question of VLAN voice SG300 - 28 p

Hello

I was running firmware 1.1.2.0 and everything worked well on 2 of these switches, connected by fiber.  I tried upgrading to the latest firmware (1.3.5.58) and had no luck.  Our phones which are combined Avaya 9650 VoIP has not found the router, would find no DHCP and waited for LLDP.  The update has been applied only on the switch away from the PBX, and yet he still messed up the other switch.  I put the firmware to the original active version, and everything started working again.

Nothing changed except when I rolled back the version of the firmware, he left all the phones connected to the ports, it changed their marking to not signposted.  I put this back and everything worked fine.

Y at - it an inconsistency with this firmware with my phones, or what else could be the problem?

Hi Chris, I think the problem is, the 1.1.2.0 is very different from every version after. When the 1.2.7.76 firmware was introduced it changed the XML code in the switch. If you jump to the top of the 1.1.2.0 to release it later you really should delete your config switch and not reload a configuration file.

-Tom
Please mark replied messages useful

Tags: Cisco Support

Similar Questions

  • Need help to set up voice VLAN in SG300

    Hello

    I spent too much time on it now and need help. I'm trying to set up a voice switch VLAN on a SG300 - 28 p. I need to charge a phone Cisco 7965 connected to a port on SG300 - 28 p to use VLAN 100, and a workstation connected to the phone to use Cisco 7965 on VLAN 101 by SG300 - 28 p. In the common Cisco IOS switches, this task is configured as follows:

    interface gi25

    switchport mode access

    switchport access vlan 101

    switchport voice vlan 100

    Trying to achieve this scenario with a Cisco SG300 switch turns into a nightmare. You will have to deal with a Dynamic of VLAN voice Auto Voice VLAN mode. Then, you must have a configured trigger and activated Automatic Smartport . I tried to do this in CLI nothing helps. Cisco 7965 receives an IP address of the access VLAN on Gi15 interface, which is 101 VLAN. I need to receive an address IP of the VLAN 100.

    The current configuration under Gi15 interface is as follows:

    interface gigabitethernet15

    activate the storm control

    broadcast storm control level kbit/s 10

    Storm-control include multicast

    port security throw trap 60

    maximum port security by 10 points

    port security mode max-addresses

    spanning tree portfast

    LLDP-med disable

    switchport mode access

    switchport access vlan 101

    ! next order is internal

    macro auto smartport dynamic_type unknown $native_vlan 101 $voice_vlan 100

    Now, I don't know how the macro auto smartport dynamic_type unknown $native_vlan 101 $voice_vlan 100 command in the config, and I do not know how to remove it.

    When I try to enter the command macro auto smartport type ip_phone_desktop under Gi15 interface, I get the following error message:

    The $voice_vlan macro setting is not configurable by the user

    It seems that the auto attendant smartport macro ip_phone_desktop can not apply the setting $voice_vlan with a value of 100. In fact, I explicitly does not use this parameter to everything in the order of macro auto smartport type ip_phone_desktop ; However, the SG300 switch knows that the voice VLAN VLAN 100, and he's trying to use this VLAN ID as the value of the $voice_vlan parameter, the macro fails.

    I tried statically configure the voice VLAN on the switch SG300 using the command id of the vlan 100 voice , but I couldn't get the ip_phone_desktop macro to configure interface Gi15 correctly. Then, I removed the command id of the vlan 100 voice and obtained SG300 to learn his voice VLAN ID of UC560 connected to the SG300 through a trunk port based on the port configuration (connected to SG300) for the trunk of the next UC560:

    switchport trunk vlan 101 native

    switchport mode trunk

    switchport voice vlan 100

    Cisco-switch macro description

    This is the command switchport voice vlan 100 who announces to SG300 via CDP VLAN 100 is a voice VLAN. When I run the command show vlan local VoIP on the SG300, I get the following result:

    VLAN ID - VPT DSCP Source MAC address Interface

    1                    5          46       default           ----                    ---

    * 100 CDP e0:5f:b9:xx:yy:zz gi28

    Thus, it is clear that the SG300 receives information from UC560 via CDP in port Gi28 VLAN 100 is the voice VLAN. However, I can not always apply the ip_phone_desktop macro to SG300 Gi15 interface.

    Also, I tried to set up vState ofoithis vlan auto-déclenché as well as the commands in global configuration State vlan automatic voice activated mode. Or setting changes anything view voice VLAN announced at Cisco 7965 where Cisco 7965 continues to use VLAN101 (access the VLAN assigned to the interface Gi15).

    Hello telecastle,

    The Macro just get in the way most of the time. A default state on the switch a user will set the id of the vlan voice with orders

    (config) #voice vlan id 100

    * This will create the vlan 100

    VLAN, VoIP? * You can use to change your defaults for dscp and cos a long with all the other settings.

    State of vlan (config) enabled automatic #voice

    (config) #interface rank fa1-24

    (config-if-range) #switchport trunk vlan 101 native

    trunk (config-if-range) #switchport allowed vlan add 100

    * This function will define the vlan native on the trunk to 101 for the data port and vlan tagged will be 101 for the voice.

    CDP is enabled automatically and should learn the features of the phone and get on the phone to the vlan 101 on this port.

    CDP of the UC should automatically fill in the switch of the SG. You may need to upgrade the switch to the latest firmware however. Also make sure that the DHCP server for the voice if the CPU must be configured accordingly.

    Let me know if this helps.

    Cisco Small Business Support Center

    Randy Manthey

    CCNA, CCNA - security

  • VLAN voice N3048P and DHCP issues

    Hello

    I just received several switches for our N3048P and 2 x 4048 access layer - WE for our base layer. Are the N3048P VLT'd between two of 4048. There are 4 x N3048P of one on the other. The 4048 possess all gateways via VRRP.

    I have 802. 1 x works with my Windows client test, and I can get the phone (Cisco 7941) to acquire a DHCP address if I put it on a port "switchport mode access. However, if I change the port to a general port with vlan enabled voice and 802. 1 x, the phone does not have a DHCP address, but the PC attached to the phone Gets a DHCP address in the VLAN correct.

    I see CDP and LLDP messages exchanged via Wireshark, and it seems that the phone and the switch are to exchange the VLAN voice correctly.

    My question is, why the phone can't one address DHCP?

    Here's the relevant config of switch below. I know that some of the config can be duplicated for troubleshooting steps:

    VLAN 75
    the name 'Test '.
    output
    VLAN 76
    name "Test_Phones".
    output

    IP helper-address 1.1.1.3 dhcp
    IP helper-address 1.1.1.4 dhcp

    interface vlan 75
    IP 172.16.75.4 255.255.255.0
    IP helper 1.1.1.3
    IP helper 1.1.1.4
    output
    interface vlan 76
    IP 172.16.76.4 255.255.255.0
    IP helper 1.1.1.3
    IP helper 1.1.1.4

    AAA authentication local connection to "defaultList".
    radius of start-stop AAA accounting dot1x default
    control-dot1x system-auth
    radius AAA dot1x default authentication service
    AAA authorization network default RADIUS

    VLAN, VoIP

    source-ip 172.16.75.4 RADIUS server
    Server RADIUS 'key' key
    RADIUS-server host 1.1.1.1 auth
    primary
    name "rad1.
    use of 802. 1 x
    key 'key '.
    output
    RADIUS-server host 1.1.1.2 auth
    name "rad2.
    use of 802. 1 x
    key 'key '.
    output
    Server RADIUS acct 1.1.1.1 host
    name "rad1.
    output
    host server RADIUS acct 1.1.1.2
    name "rad2.
    output

    Gi2/0/1 interface

    Description '802. 1 x client port.
    spanning tree portfast
    spanning tree guard root
    switchport mode general
    switchport general allowed vlan add 75-76 the tag
    dot1x re-authentication
    dot1x quiet-period 5
    dot1x tx-period 5
    dot1x comments - vlan 20
    dot1x Informati-vlan 20
    LLDP transmit tlv ESCR-sys sys - cap
    LLDP transmit-mgmt
    notification of LLDP
    LLDP-med confignotification
    VLAN voice 76
    disable voice vlan auth
    output

    Thanks for any input you may have. I would like to know if there is any other information, I can provide.

    -Jason

    That ends up being the correct port configuration:

    Gi2/0/1 interface

    Description '802. 1 x client port.

    spanning tree portfast

    switchport mode general

    switchport General pvid 75

    VLAN allowed switchport General add 75

    switchport general allowed vlan add 76 tag

    dot1x port-control on mac

    dot1x re-authentication

    dot1x quiet-period 5

    dot1x timeout supp-timeout 15

    dot1x tx-period 5

    dot1x comments-vlan-deadline 15

    dot1x comments - vlan 20

    dot1x Informati-vlan 20

    VLAN voice 76

    disable voice vlan auth

    The most important line here is «the dot1x port-control on mac» I got 'auto control by port dot1x' configured, but it does not work as expected. In addition, defining the comments-vlan-period and supp-timeout were necessary. If the port was shot, the switch would not necessarily reauth port.

  • VLAN voice ISE with MAB

    Hi all

    I just configured the ISE and the switch to make authentication for my phones of vlan voice.

    Authentication and authorization works well with ISE.

    #show TEST-CONTACT authentication sessions

    Interface MAC address method field status Fg Session ID
    Item in gi1/0/1 001a.e867.4c1a mab VOICE Auth 0A0B1050000000250136CED3

    But, I've only one ip phone connected to the switchport mode multi-domain, I don't have any pc connected to the phone yet, but the command 'show mac - add table int xx' show me the telephone ip and two local area networks virtual, 316(voice vlan) mac and vlan 1.

    The question is, why vlan 1? is it good?

    I have only the VLANs voice 316 configured policy result with the VLAN TAG = 316 and permission of field voice check box selected.

    SWITCH-TEST mac address-table interface gigabitEthernet 0/1/1 #show

    Mac address table
    -------------------------------------------

    VLAN Mac Address Type Ports
    ----    -----------       --------    -----
    316 001a.e867.4c1a STATIC item in gi1/0/1
    1 001a.e867.4c1a STATIC item in gi1/0/1

    Thank you

    Rafael

    I would recommend that you keep the command ' switchport voice vlan "because it is what allows the port to be a port" multi - vlan "without set it up as a trunk. If you remove this command and you always want to spend two VLANS (one per voice) and other data, then you will need to configure the port as 'trunk '. Unfortunately, it won't only 802. 1 x is not supported on the trunk ports :)

    I hope this helps!

    Thank you for evaluating useful messages!

  • Assignment of the ACS 5.2 VLAN dynamic - problem of vlan voice

    Hello

    When I want to configure the VoIP VLAN through ACS, I go to elements of strategy > permissions and permissions > network profiles and then on the common task page select Voice VLAN > static according to the picture below

    Configure then configure the VLAN ID > static > VLAN_number

    But this only allows the VLAN voice and set it to VLAN_number, the VLAN DATABASE will remain unchanged and not configured.

    So my question is, is there a way to configure both the voice (and him) AND the VLAN DATABASE?

    I tried to manually add RADIUS attributes to a second VIRTUAL LAN, but it is not allowed.

    Any idea?

    Kind regards

    Thibault.

    Hi Thibault,

    Why you want to configure the voice and data on the same permission profile?

    If this configuration should be used for an MDA (multi-domain) config on the switch, then take account of the fact that the IP phone and the customer of data must go through separate authentication sessions.

    This being said, you should instead set up two profiles different autz and configure different rules in the authorization policy that apply "voice" for IP phones profile and the profile of 'data' for data clients.

    I hope that answers your question.

    Kind regards

    Federico

    --

    If this answers your question please mark the question as "answered" and write it down, so other users can easily find it.

  • HP Procurve vlan voice with trunks

    Hi all

    I am a trained guy cisco, so I try to transfer my knowledge to the HP Procurve switches but it takes a little help to obtain VLAN etc set up.

    What I have is 4 switches, 3 at the access layer to the and 1 to the base and distribution.

    I want that switches to a trunk of the base and distribution layer 2 interfaces access layer allows to increase the speed of 2 instead of 1 gigabit uplink. Also, I want is that 2 VLANS is set up for separate voice and data. I want that all ports to be able to take in charge a PC or a VOIP phone. I put the phones to automatically tag the tag of vlan for the vlan voice, but I want all traffic to forward the link to resources shared at the base and distribution layer.

    From what I understand, so I need to:

    Configure a network interface on the access and use of basic/distribution layer switches: b1 - b2 trk1 lacp trunk

    Add VLAN for voice and data and assign vlan voice.

    The problem I have is the tag-no identified parameters.

    I tag vlan trk1 voice and set the priority of the qos to 6 and then comes to create the vlan data not marked on trk1?

    the config I've written so far is:

    b1 - b2 trk1 lacp trunk
    show trunks
    spanning tree
    spanning tree force version rstp operation
    voice VLAN 100 name
    voice
    Tagged trk1
    QoS priority 6
    data name VLAN 200
    not tagged trk1

    is this correct or am I missing something here?

    Thanks in advance!

    Hello:

    You can also copy and paste your message into the HP Business Support Forum - section Procurve switches.

    http://h30499.www3.HP.com/T5/ProCurve-provision-based/BD-p/switching-e-series-Forum

  • Get some VLAN voice to work on 5548P

    Hello

    I was wondering if there is a way to accomplish the following. I want the passage to the tag the traffic on its own based on the YES Table and pass it up to the Sonicwall (DHCP server/router) without going through the phone itself do the marking. Is this possible? Currently, the installation so I put manually the VLAN ID on the phone itself, but these phones can work anywhere there is a sense of internet connection if I manually add the tag VLAN, the phone will not work outside of the corporate network.

    Thank you

    If your phone supports LLDP-MED, you can install the switch with a VLAN voice. This wiki covers the implementation of the VLAN voice.

    http://en.community.Dell.com/TechCenter/networking/w/wiki/configuring-Dell-PowerConnect-55xx-series-switch-voice-VLAN.aspx

    Do not have to configure phones that you configure LLDP-MED. The VLAN ID information are passed with LLDP-MED configured on the VoIP phone using the LLDP-MED mechanism. By this method, the voice from the VoIP phone data are tagged with the VLAN ID exchanged and the usual traffic would go to the PVID.

    Here is the link to the user guide. LLDP-MED configuration begins at page 540.

    FTP://FTP.Dell.com/ Manuals /Cccomplis /powerconnect-5524_User%27s%20Guide_en-us.pdf

    Once the phone is in the voice VLAN it can still receive an IP address by the DHCP server using the DHCP relay. The switch acts as a DHCP relay agent that listens for DHCP messages,

    and passes between DHCP servers and clients, residing in IP or VLAN different subnets.

    Relay DHCP and espionage begins on page 563 of the user guide.

    I hope this helps.

  • Subject of the vlan voice SRW224G4P

    Hello

    I have configured the SRW as vlan, use vlan for voice 212, 348 for data and communicate with cisco IP Phone.

    database of VLAN
    VLAN, 210-216 345-348
    output
    ID of the vlan voice 212

    !

    !
    interface fastethernet1
    activate the storm control
    Storm-control broadcast level 10
    Storm-control include multicast
    maximum port security by 10 points
    port security mode max-addresses
    port security throw trap 60
    spanning tree portfast
    switchport trunk allowed vlan add 212
    switchport trunk vlan native 348
    macro description ip_phone_desktop
    ! next order is internal.
    macro auto smartport dynamic_type ip_phone_desktop
    !

    but when I show vlan voice,.

    It shows:

    =====================================

    1ASW01 #show voice vlan
    Manage the VLAN voice State is automatically triggered
    Operational status of VoIP VLAN is enabled in auto
    Best Local Voice VLAN ID is 212
    Best Local VPT is 5 (default)
    Best Local DSCP is (by default) 46
    Concerted VLAN voice is received from the 34:62:88:73:05:c9 switch
    Concerted VLAN voice priority is 0 (static source active)
    Concerted Voice VLAN ID is 216
    Agreed VPT is 5
    Agreed DSCP is 46
    Voice VLAN agreed last change is 3 May 13 05:06:31

    =====================================

    I don't know why the vlan 216 became the vlan voice?

    I tried changed the build-in macro settings,

    auto macro of the built-in parameters ip_phone $native_vlan 348
    auto macro of the built-in parameters ip_phone_desktop $native_vlan 348

    but the system could not change the value of $voice_vlan.

    How to fix?

    Hi Skywings,

    So I think the above output is after the change, right? If this is true, it seems that something was wrong during the configuration process. Process of VLAN automatic voice has two main phases where one is related to communication between the switches and other Cisco infrastructure devices and synchronization of voice VLAN ID. The second phase is related to the identification of the end device as phone. What I see in your case that the first phase has failed somehow the voice VLAN ID is different from locally configured. Can you share with me your race and also start-up config more CDP neighbors? You can use private message.

    Kind regards

    Aleksandra

  • Configure the VLAN voice and data in CISCO SF 300 8 P

    I have a couple of Cisco SF 300 8 P and P 24 switches. I have voice and data VLANS configured as:

    Data VLAN: default 145.17.59.0/24

    Voice VLANS: VLAN 20 172.22.20.0/24

    I have different DHCP servers regarding the data VLAN, we have a physical server that is configured for 145.17.59 * extended IP and Voice VLAN DHCP Server is configured as a router gateway with option 150.

    This configuration works very well with other cisco 2960 switches and 3750 etc. except CISCO SF 300 8 P and 24 p. I tried to set up the voice and data VLAN in these CISCO switches so that phone CISCO (model 6941) should get IP of the VLAN voice and PC should get the IP address of the DHCP server on the data VLAN. I tried several techniques such as LLDP, Port-to-VLAN Config etc.

    Can anyone please guide me / help on this.

    Kind regards
    A K.M.Sayeed

    Hi A.K.M., with Cisco phones you should be able to define simply automatic voice VLAN to be VLAN20.

    ID of the vlan 20 voices

    You must ensure CDP or LLDP is enabled as well. I would check in the web GUI. DHCP for phones can come from a DHCP server on a port access VLAN20 switch, or you can use dhcp for assistance to redirect DHCP server elsewhere.

    If you prefer or you have problems with the CDP or LLDP, you can also program the ports as trunks and add the tag VLAN 20 for them.  In this scenario, you need to ensure inter - vlan routing works and phones that download the file config with corrrect VLAN config.

    These switches do not run ios, so they are similar, but different from the catalyst switches that you mentioned.

    -remember messages useful rate.

  • Question of VLAN by default and best practices

    Hi all

    I recently read on VMwares ESX Server 802. 1 q-paper Solutions of VLAN and came across the following article:

    Question of VLAN native (aka "VLAN1 Issues")

    "VLAN native is used to switch protocol management and control.  Native frames of VLAN is not VLAN ID tag in many types of switches, and in which case the trunk ports implicitly treat all frames not marked as frame VLAN native.

    VLAN 1 is the native VLAN ID by default for most Cisco switches.  However, in many enterprise networks, the VLAN is the VLAN 1 or 100, it could be any number depending on your configuration of switch type and running.

    It is common recommended to avoid using some VLAN native (often the VLAN 1) for any regular data traffic.  VMware recommends that you not associate any group native virutal server ESX VLAN VLAN ID switch port.  Also, so that you avoid them VLAN native for your groups of ports VLAN, no native VLAN related configuration is required on ESX Server systems. »

    That being said, I know a lot of people and more small to medium-sized networks leave light network VLAN by default.  If this is the case it would be better to change the entire network switching to one VLAN different and then put groups of ports on the same VLAN?  Or is the problem with the default VLAN really does not impact?

    Hello

    You have quite a few involved networks when you use virtualization and some I would classify as a virtualization host networks: the Service Console, VMotion, storage over IP.  They are more likely on separate networks of your VM network traffic... At least use VLAN to do this.

    See http://kensvirtualreality.wordpress.org for a good series of articles on virtual networks.

    Best regards
    Edward L. Haletky
    VMware communities user moderator, VMware vExpert 2009, Analyst of DABCC
    ====
    Now available on Rough Cuts: ' VMware vSphere (TM) and Virtual Infrastructure Security: ESX security and virtual environment '
    Also available "VMWare ESX Server in the enterprise"
    SearchVMware Pro| Blue gears. Top virtualization security links| Security Round Table Podcast virtualization

  • Question SG500 auto voice VLAN VLAN native

    I have install SG300 and SG500 switches and using the function of vlan automatic voice by simply changing vlan 100 and using voice of vlan 1 for data and the default value.  I normally put the L3 switch and make a porteach access for my IP PBX (vlan 100) and the other to connect to the existing data network (vlan 1). Then I do a static route in default gateway customers to route to vlan 100 and everything works well for most facilities.

    On my last install, I decided to try to change the vlan 1 default vlan 10 and go with 10 for data and 100 for the voice.  The problem that I ran was that the auto generated on my phone switchports config still serve of vlan 1 vlan native.  I am trying to find a way to always use auto vlan and get the vlan native desired without having to make manual configuration changes.

    Would this be possible?

    Thanks in advance.

    Hi Brandon, you must edit the macro of vlan native 1 to vlan 10.

    Check out this topic How change the macro

    https://supportforums.Cisco.com/thread/2177613

    -Tom
    Please mark replied messages useful

  • VLAN voice and data on a single port

    Hello

    I have some 5548 P Dell switches, but I just Cisco environment.

    I find a lot of information on this but most of it relevant to the VLAN marked and unmarked on a port in general. Some articles suggest to put the port in trunk mode...

    anyway (without taking into account the QoS) how you would accomplish this example Cisco on a Dell switch:

    Switch (config) #interface g0/1

    Switch(Config-if) #switchport mode access

    Switch(Config-if) #Switchport access vlan 50

    Switch(Config-if) #voice switchport vlan 10

    Thank you!

    For general mode, commands would be present as follows.

    Console (config) # interface gigabitethernet 0/1/1

    Console # switchport mode general

    Console # switchport general allowed vlan remove 10

    Console # switchport General allowed vlan add 2,3,4,50 tag

    Activate console # vlan VoIP

    Trunk mode:

    Console (config) # interface gigabitethernet 0/1/1

    Console # switchport mode Trunk

    Console # switchport Trunk allowed to remove vlan 10

    Console # switchport Trunk allowed vlan add 2,3,4,50

    Activate console # vlan VoIP

  • Question of vlan Cisco 7600 PFD

    Hello!

    Please help with a question.

    In our network, we have 7600 and I need to create a service of vpls with two different VLAN associated with a PFD:

    L2 PFD manual test
    VPN id 100
    neighbor 1.1.1.1 mpls encapsulation

    interface Vlan120
    no ip address
    Shutdown
    PFD xconnect tests
    !
    interface Vlan121
    no ip address

    And when I try to reach "xconnect PFD testing:

    Incompatible with the PFD configured setting.
    Check the interface MTU, VLAN ID size
    Or try to configure BPDU PW on routed SVI, which is not allowed

    Is it possible to do or not? No mapping VLANs etc.

    Thank you all!

    Hi Dimitri, you can do it, but the link is made to port vlan does not level level IVR.

    Here is a configuration snippet:

    the GigabitEthernet4/1/0 interface

    101 ethernet service instance

    encapsulation dot1q 101 second 10

    rewrite the penetration pop tag 2 symmetrical

    interface GigabitEthernet4/1/1

    ethernet 100 service instance

    encapsulation dot1q 100

    rewrite tag pop 1 symmetrical penetration

    connect GigabitEthernet4/1/0 eline-101 101 100 GigabitEthernet4/1/1

    Xander

  • Questions of VLAN and configuration for Cisco AIR-CT2504-25-K9 Controller

    Hello

    It's my first time thanks to the Cisco wireless solutions, so I was hopping someone could help me with the following:

    We just bought the AIR-CT2504-25-K9 controller with some points of access for the AIR-CAP1702I-E-K9.

    The network is as follows:

    Peripheral layer 3 (managed by third parties): it's on the domain network. (VLAN by default, 1 - unidentified)

    ADSL router - it's the network without comment thread. (Default Vlan 4 - tagged).

    VOIP: VLAN 5.

    Both fittings go into a switch Cisco SG500 52 (Layer 2). There is a port to shared resources on the switch SG500 with VLAN 1 (Tagged) and VLAN 4 (with tag). The WLAN controller is plugged into this port trunking.

    The data and management network are in the same subnet and on the same VLAN (1).

    I used the wizard on the controller setup.

    There are three interfaces:

    management VLAN ID 1 IP 192.168.1.2 Port 1 (configured with a gateway domain network, DHCP, etc.).

    VLAN wireless identifier 4 IP 192.168.5.1 Port 1 comments (configured with modem router ADSL, DHCP, etc.).

    Virtual IP 192.0.2.1

    Proxy DHCP active overall.

    There are two wlan networks:

    (1) area - management Interface - SSID abc.

    (2) comments - comments Wireless Interface - SSID xyz (the wizard put to management, but I changed it to the wireless).

    Are the AP connected to another SG500 switch which is shared resources to the switch with the controller.

    Ports of the APs are connected to have only 1 VLAN unidentified. They don't have 4 VLAN Tag or not identified. However, everything seems to work as expected.

    When I join the guest network (SSID xyz), I get an IP address from the router ADSL and all Internet traffic goes through him. When I connect to the domain network (SSID abc), I get an IP address from the DHCP in Windows Server and all traffic goes through the device of layer 3 (I checked the public IP address in my browser). I can't ping anything from one network to the other.

    My questions are the following:

    (1) how the guest network traffic (VLAN 4) headed the APs controller when they are connected to the ports on VLAN1? Is it because the traffic is encapsulated?

    (2) is set up correctly? After you configure the controller, I saw a note in the forums, this State I can simply enter 0 for the management of VLANS to let it not identified. However, in my case, I kept it as 1, which is the same as the switches and then the tag VLAN on the switch. In addition, the set Wizard wlan of comments to use the management interface but I changed it to use the comments interface.

    (3) when I connect to the APs of the controller, I see several options that can be configured manually. Is it necessary for this? For example, there is an option of data encryption.

    Thank you

    A

    Hello

    (1) how the guest network traffic (VLAN 4) headed the APs controller when they are connected to the ports on VLAN1? Is it because the traffic is encapsulated?

    Yes, I'm with CAPWAP:

    More information: http://lets-start-to-learn.blogspot.de/2014/08/cisco-wireless-understand...

    (2) is set up correctly? After you configure the controller, I saw a note in the forums, this State I can simply enter 0 for the management of VLANS to let it not identified. However, in my case, I kept it as 1, which is the same as the switches and then the tag VLAN on the switch. In addition, the set Wizard wlan of comments to use the management interface but I changed it to use the comments interface.

    If you want that mgmt interface must be unmarked and then put 0 otherwise you can use vlan 1.

    I do not have what is configured under mgmt and comments interface, but according to the name I'll say yes, you must set the comments under comments wlan interface.

    (3) when I connect to the APs of the controller, I see several options that can be configured manually. Is it necessary for this? For example, there is an option of data encryption.

    Yes, there are many things that you can configure, but I'll leave most of the default of things unless you really need to change!

    The following best practices: http://www.borderlessccie.net/?p=270

    Concerning

    Remember messages useful rates

  • Not able to communicate between the VLANS on SG300-10

    Please take a look at my crude drawing of how I want my network to work:

    SG300-10
    __________________________________________
    | 1. 2. 3. 4. 5. 6. 7. 8. 9. 10.
    |_|___|__________________________________|
    |   |_________________________________
    |_________________                   |
    __________________  _______|_________  _______|_________
    |-VLAN 1-|  | - VLAN 10-|  | - VLAN 20-|
    |   Management |  | 192.168.10.1 |  | 192.168.20.1.
    | 192.168.1.250 |  |               |  |               |
    |________________|  | Internet router |  |   Devices.
    | 192.168.10.2.  | Box of physics |
    |_______________|  | 192.168.20.2 |
    | Server 2008R2.
    | DNS, DHCP, AD DC |
    |               |
    | Physical boxes |
    | 192.168.20.x |
    | W7 Workstations |
    |_______________|

    I put a static IP address on the server 2008R2 host and Internet router.  I have configured my VLAN and I put each VLAN IP (as shown above), I put a 0.0.0.0 route to the Internet router, but also routes for each range of IP VLAN x.x.x.0 and I put the gateway on all host on VLAN 20 to be 192.168.20.1.

    I'm unable to access the Internet, ping the router or access the webpage switch management of any host on VLAN 20 unless I manually set the IP address on the host VLAN 20 on the same IP range as the machine I'm trying to get. As such:

    If I manually set the IP host address to 192.168.1.50, I can access the administration of the switch, but then not RDP in or ping any host on VLAN 20 or ping the router Internet on VLAN 10.

    If I manually set the IP host address to 192.168.10.50, I can ping the router Internet but cannot RDP into or ping any device on VLAN 20, nor can I access the Switch Management page.

    If I let DHCP assign the IP 192.168.20.5, I can RDP in and ping all devices VLAN 20, but I can't ping all devices on VLAN 10 or access the administration of the switch to VLAN 1.

    I know I'm missing something simple, and I worked on it for about 30 hours now but can't seem to get this to work. Someone could possibly help?  Thanks in advance.

    Just to be sure, is the SG300 mode switching L3 / L2 switching?

Maybe you are looking for

  • I can't make new tabs. When I click on the sign +, nothing happens.

    I've had this problem for a few weeks now. I was hoping maybe after updating to Windows 7 I find the use of tabs, but it didn't. When I try to open a new tab in Firefox, nothing happens. Even if I right click and click 'New tab', nothing happens. I t

  • Printer HP 2060

    Just change a new cartridge alignment page. Cannot print even if the printer printing situation. another remark showed the user intervention required?

  • Call Skype buttons are green light

    I loaded successfully Skype on phone my wife (W XP) old, but on my PC (with Vista), the call of buttons on my contacts stay clear green (inactive), so I can't use the program.

  • NMS Windows agent not default mark

    New to NMS so not too well why the windows agent is not voting? Someone here has guidelines to help out me?

  • Autoconfiguration WLAN Service has stopped successfully.

    Original title: Autoconfiguration WLAN Service Hello Whenever I have shut down my computer, I get this error in the event viewer: Autoconfiguration WLAN Service has stopped successfully. Thank you.