SG300-28 - Firmware 1.2.7.76 with the MAC: how to use the VLAN? (Bugs00131469)

Hallo,

can you please explain to me this problem more in detail, please:

##################################################################

Problem: When a port Transceiver allowed tent of to re-authenticate and RADIUS

attributes no longer target attributes VLAN, re-authentication breaks down and the

port must become unauthorized. This is not the case, and the port is not.

(Bugs00131469)

Solution: Do not delete attributes of VLANS on a RADIUS server or unplug

network cable and plug it in again to force the failure.

##################################################################

I use an assignment VLAN dynamic for my known hosts of the network (authentication MAC) based only. But there are people from other companies who use their own computer and this computer does not know on my RADIUS server. These people should use the VLAN comments. In general they disconnect the LAN cable from a host that is known on my SHELF and put the LAN cable into their laptop (which is not known by the RADIUS server).

Does this mean that this port will remain in the VLAN old or the switch will change the port the the guest VLAN?

And what happens if I reconnect the computer to know about this port?

This feature is very important to me, but I need the functionality of the new firmware RADIUS accounting. So please give me some advice!

Thank you very much!

Alexander Wilke

Hello, Alexander.

When connecting to an unknown host to the switch, it should go to a VLAN authenticated or if you use the VLAN comments, it must be created statically a VLAN on the switch. With the comments-VLAN-Enable, the switch automatically assigns a port as a member not marked. When the port is allowed, the switch will have to move the port to VLAN comments when the first applicant authorizes.

Basically, this bug listed above says not to make changes to your information RADIUS server of VLAN and if you do, unplug the network and reconnect it.

-Tom

Tags: Cisco Support

Similar Questions

  • Problem with the VLAN routing

    I try to put in place several VLAN on a Cisco 3560 switch. These new segments must be able to communicate with the VLAN 1 and even Internet access. I managed to add the VLAN and have network connectivity between the new VLAN.  However, these VIRTUAL to VLAN1 networks routing was not working properly.  Certainly something is missing or correct in this configuration. It would be much appreciated if someone can shed some light. Thanks in advance.

    Basic IP information:

    • Gateway 10.1.1.2
    • VLAN1: 10.1.1.1/24
    • VLAN2: 10.1.2.1/24
    • VLAN3: 10.1.3.1/24

    What works:

    • Hosts in VLAN 1 can ping the DG and access the internet
    • LAN 2 and 3 communicate with each other.  Hosts in VLAN2 (e.g. 10.1.2.2) can ping hosts in VLAN3 (e.g. 10.1.3.2) on the same switch
    • Hosts in VLAN 2 and 3 can ping to the IP of VLAN1 (10.1.1.1) interface

    What does not work:

    • Hosts in VLAN 2 and 3 cannot ping hosts in VLAN 1 on the same switch, or vice versa.
    • Hosts in VLAN 2 and 3 cannot even ping the DG.

    Yched blocks my post if I understand the config.  I'm sorry that I have to include it as an attachment.

    We have no information on the DG - what it is, how it is configured.  It is likely:

    1. unknown subnet vlan2 and vlan3 ranges.  Therefore can not to return packages for them.

    2. the default gateway for vlan1 customers is 10.1.1.2, so when customers vlan1 are trying to answer to vlan 2, 3, packets is directed to a DG, which probably ONLY has a default route to the Internet.

    3. once it is somehow solved (extra static on DG), Internet for vlan 2.3 will require same NAT rules with respect to the vlan 1.

  • Relay 2 4410ns with the VLAN

    Greetings,

    I recently bought 2 4410n APs with the hope to fill some buildings together.  Ive found that the APs have a limited support to connect a SSID to a VLAN and AP even accepts traffic marked side wired (obviously, for several virtual local area networks).  Howerver, it does not appear that fill 2 tagged APs traffic passes together on the bridge... Miss me something, or APs does not send tagged traffic in the wireless?

    Thank you

    I think I have it working.  on the wireless > VLAN & QoS tab, select "VLAN Tag on WDS.

  • SWITCH Cisco/Linksys SLM224G: Problem with the VLAN

    Hello!

    I'm trying to set up a VLAN in my baskets. I have some knowledge about VLANs, but I still can not configure in my path.

    My situation:

    I have PC that contains two virtual machines, which works as a router between three networks: LAN, WAN, LAN2. It's a bit complicated, but I'll try to draw:

                                                     |-------------||----------------------------|                   |           e1|-to-eth1-VM2-----WAN|VirtualMachine 1        eth0|---trunk-VLAN1&2---|g1         e2|-to-eth0-VM2-----LAN2|eth0=VLAN1 eth1=VLAN2       |                   |           e3|-to-eth0-VM2-----LAN2 etc.|                         PC |                   |   SWITCH  e4||VirtualMachine 2            |                   |           e5|-to-eth1-VM1---wire-to-LAN2|eth0=VLAN3 eth1=VLAN4   eth1|---trunk-VLAN3&4---|g2         e6|-to-eth0-VM1-----LAN1|----------------------------|                   |           e7|-to-eth0-VM1-----LAN1 etc.                                                 |-------------|
    
    gX = Gigabit portseX = 100Mbit portsVMX = Virtual machine numberwire-to = patch-cord connection between ports on the switch
    
    Schema of routing and logical visibility:
    
    LAN1---VM1-----VM2---WAN              |LAN2----------|
    

    Important note is that LAN1 and LAN2 must be separated (visible only through routers). WAN must be visible through VM2 to LAN2 and through by VM1 and VM2 to LAN1. It seems easy, but VLAN that I did on this passage seems doesn't work.

    I do it like this:

    Step 1: Management of VLANS / create a VLAN...

    Creation of VLANS 1, 2, 3, 4 (numbers meters right now - I have now this number 1 is restricted to the switch).

    Step 2: Management of VLAN / Port to VLAN...

    Setting up VLAN1 with ports g1, e5 (the two labelled or not identified?-I have not seen any difference)

    Implementation VLAN2 with ports g1, e6, e7, etc...

    Implementation VLAN3 with ports g2, e2, e3, etc...

    Setting up VLAN4 with g2, e1 ports

    Step 3: Management of VLAN / Port setting...

    Implementation of ports e1 to PVID4 (chassis type = all I guess, but with "capture filter"?)

    Setting up port e2 at PVID3

    Setting up port PVID3 e3

    etc...

    Setting up port e5 for PVID1

    Setting up port e6 at PVID2

    Setting up port e7 for PVID2

    etc...

    Thus, on this configuration and that the switch it does not work for me

    I know that the switch is to see Mac since VLAN which is carried out by PC, because when I arrive in "Admin / dynamic address" I see pimps on the correct ports, with good VLAN ID. So the problem is to transmit a VLAN for their ports, then clear frames of ID and let the packets to go (and return: clear packages, add the VLAN ID and send to their Gigabit ports).

    Show the configuration is one of the many I tried :/ but I think this one is the best.

    Or maybe I don't know VLAN as I think and this scheme is impossible? Please tell me.

    Concerning

    and waiting for any suggestions,

    READ

    Hello.

    These products are processed by the Cisco Small Business Support Community.

    * If my post answered your question, please mark it as "acceptable Solution".

    * Do not forget to give a 'congratulations '. Thank you!

  • Help with the VLAN and RVS4000

    I am trying to Setup VLAN on a RVS4000 to share our Internet connection with another office but do not allow access to our network of the other network. We have a BEFSX41 connected to Internet and also connected to our other site via a virtual private network to another BEFSX41. Port 1 on the BEFSX41 connects to Port 1 on an EZXS88W switch.

    The other company has provided the RVS4000 and also provides a WRT54GS router. I want to connect 2 ports on the BEFSX41 to Port 1 on the RVS4000 and 2 ports on the RVS4000 to track 1 on the WRT54GS.

    Port 1 on the RVS4000 is member of the default VLAN1 and Port 2 will be a member of VLAN2.

    Our IP network is 192.168.20.0/24

    BEFSX41 is 192.168.20.1

    The DHCP service is disabled

    The RVS4000 has a static IP address of 192.168.20.254 and is configured as a router

    DHCP is also disabled

    The wireless network is as follows:

    IP network is 192.168.21.0/24

    The address IP of WRT54GS is 192.168.21.254 and is static and also configured as a router.

    I don't know how to actually Setup the VLAN from here and the instructions are not useful. My questions are:

    1 port 1 on the RVS4000 must be safe, with label or Untagged?

    2 If the interval routing disabled?

    3. If so, how do I route between the RVS4000 and WRIGHT so the two networks have access to the Internet, but not to other networks?

    The befsx41 should be one that is connected to the internet so that your final point so that the vpn tunnel work. The wan port on the wrt54g must be connected to the lan of the befsx41 port.

    If your server is located behind the befsx41, you should be able to port forwarding. If your server is located behind the wrt54g you may experience the problem with the redirect because you need to forward ports on both routers and according to me, there are some applications that do not work on double NAT.

    If you want to have access to the internet on both VLAN of the rvs4000, it should work as a router so its internet port must be connected to the port the befsx41 lan.

  • Help with the VLAN routing

    I'm pretty green when I just went and routing configurations please bear with me.  I'm available what I want to achieve and what I could do until now (although it may be completely wrong).

    I have an office where we run low on IP addresses for our local network, the obvious answer is to get VOIP phones on their own subnet.  So, I have a switch PC6224 I want to use to create the second subnet.

    Existing Workstation LAN = 172.22.144.0 (255.255.255.0)

    Default GW for the LAN = 172.22.144.1 for all devices on that subnet

    I would like to create an IPPhone = 172.22.145.0 (255.255.255.0) subnet

    Here's what I have "Achieved" so far:

    Currently, I can ping from a client on 172.22.145.x to the 172.22.144.12 (VLAN 3 ip interface) but cannot ping any other 172.22.144.x that is not directly connected to the 6224 switch device.  Trying to ping the network 172.22.145.x device leave a device plugged into the 172.22.144.x VLAN on the switch of packets results was sent to the default gateway for the network (172.22.144.1) who does not know what to do with them.

    Here is my config of 6224 switch operation:

    Console execution #show
    ! Current configuration:
    ! Description of the system "PowerConnect 6224, 3.3.6.4, VxWorks 6.5.
    ! 3.3.6.4 system software version
    ! Passage mode is configured as disabled
    !
    Configure
    database of VLAN
    VLAN 2-3
    VLAN 2 1 routing
    VLAN 3 2 routing
    subnet of VLAN association 172.22.144.0 255.255.255.0 3
    subnet of VLAN association 172.22.145.0 255.255.255.0 2
    output
    battery
    1 1 member
    output
    IP address no
    IP routing
    IP route 0.0.0.0 0.0.0.0 172.22.144.1
    interface vlan 2
    name "IPPhone.
    Routing
    IP 172.22.145.1 255.255.255.0
    output
    interface vlan 3
    name "TWLAN".
    Routing
    IP 172.22.144.12 255.255.255.0
    output
    level of 746f7a78621059d80fdc538acc40cbf2 user name 'admin' password encrypted 15
    !
    interface ethernet 1/g3
    switchport access vlan 3
    output
    !
    interface ethernet 1/g4
    switchport access vlan 3
    output
    !
    interface ethernet 1/g5
    switchport access vlan 2
    output

    !
    interface ethernet 1/g6
    switchport access vlan 2
    output
    !
    interface ethernet 1/g7
    switchport access vlan 2
    output
    !
    interface ethernet 1/g8
    switchport access vlan 2
    output
    !
    interface ethernet 1/g9
    switchport access vlan 2
    output
    !
    interface ethernet 1/g10
    switchport access vlan 2
    output
    !

    interface ethernet 1/g11
    switchport access vlan 2
    output
    !
    interface ethernet 1/g12
    switchport access vlan 2
    output
    !
    interface ethernet 1/g13
    switchport access vlan 2
    output
    !
    interface ethernet 1/g14
    switchport access vlan 2
    output
    !
    interface ethernet 1/g15
    switchport access vlan 2
    output
    !
    interface ethernet 1/g16

    switchport access vlan 2
    output
    !
    interface ethernet 1/g17
    switchport access vlan 2
    output
    !
    interface ethernet 1/g18
    switchport access vlan 2
    output
    !
    interface ethernet 1/g19
    switchport access vlan 2
    output
    !
    interface ethernet 1/g20
    switchport access vlan 2
    output
    !
    interface ethernet 1/g21
    switchport access vlan 2

    output
    !
    interface ethernet 1/g22
    switchport access vlan 2
    output
    !
    interface ethernet 1/g23
    switchport access vlan 2
    output
    !
    interface ethernet 1/g24
    switchport access vlan 2
    output
    output

    Console #.

    Any help would be greatly appreciated.

    Thanks, Grant

    What port connects to 172.22.144.1 the jump according to the internet?

    What should happen is we need a VLAN 'remote' separate just for the connection between the 6224 and your 172.22.144.1 jump following the internet device.

    If 172.22.144.1 remains the same, then you must create another local network VIRTUAL to "TWLAN".  Eventually, VLAN 4 with a range of ip addresses of 172.22.146.1 - 254 255.255.255.0.  Where the VLAN 4 interface has an IP address defined as 172.22.146.1.  Once that all connected devices again VLAN 4 that were in the VLAN 3 need to change there IPs and gateway 172.22.146.1

    So the only port that has configuration of VLAN 3 is the connection to 172.22.144.1 port next to the internet break.  The IP address defined on the interface VLAN 3 should be in the same subnet as 172.22.144.1 range.

    Here is a diagram that can help you to see the whole upward.  VLAN 100 in the diagram represent VLAN 3 in your case.  Switch 2 would represent your device from the internet of next hop.

  • Help with the VLAN on SG200-18 and two switches SG200-08

    Hello world. My apologies, but I'm only average at best with my CISCO skills. I have simple installation running some network devices connected via 3 CISCO switches. It is small office and two bedrooms - one with the servers and the other with the printer and pc. Each room has 8 ports SG200-08 pass.

    Router / firewall is Sonicwall TZ215 and manages the internal routing between VIRTUAL networks. Each SG200-08 was directly connected to TZ215 (no SG200-18 again) and VLAN worked perfectly. Please see diagram below...

    Problems started when I added in the Center SG200-18 more to handle additional devices. Everything that I'm doing wrong, but I can't do VLAN longer works. Something I won't set up correctly in SG200-18.

    Please help me to Setup VLAN here - tag, unidentified, PVID, trunk... I am completely lost and already had to reset SG200-18 twice.

    My work without port switch 18 Setup was like that.

    SG200-08 (1)
    G1 1 trunk 1U, 100 t
    G2 1 trunk 1U
    G3 1 trunk 1U
    G4 1 trunk 1U
    G5 1 trunk 1U
    G6 1 trunk 1U SERVER3
    G7 trunk 100 100U SERVER1
    G8 trunk 100 100U Server2

    SG200-08 (2)
    G1 1 trunk 1U, 50 t, 200 t
    G2 1 trunk 1U
    G3 1 trunk 1U
    G4 1 trunk 1U PC1A
    G5 1 trunk 1U PC1B
    G6 trunk 50 50U PC2A
    Trunk PC2B 50 50U G7
    NETWORK PRINTER for the 200 trunk 200U G8

    Thank you in advance.

    Hello

    Oh I'm sorry. I understand that you have 3xSG200-08 and 2 of them with the same configuration :-). So no need to use this port for now.

    Kind regards

    Aleksandra

  • MUSE, accommodation in British Colombia with secure server - how to use?

    I can access my domain using the address of root for the Secure Server Business Catalyst, works very well. Now, how can I link my page Please contact us , including the contact form so that the page opens to the secure server. Is this possible with the MUSE? Thank you.

    yourBCsitename.worldsecuresystems.com/yourpagename.html

  • WRT610N new firmware - capped at 150 Mbps with the excellent signal strength?

    I've just updated to firmware 1.00.02.10, had no problem to upgrade.  I have reset the router default settings after update (via the user interface, not via the button on the back) and even he restarted for good measure.  It is covering the same way I got it before the upgrade, but my 5 GHz channel set up to 150 Mbit/s for some reason any.  I am less than 5 feet between the router and am fluctuating between excellent and very good signal strength.

    Actually, the fact that it is even fluctuating force signal very good this distance is weird also, but I am especially interested in the 150 Mbps.

    Any thoughts?

    Do not take account of this issue, I knew that I should have tried this before posting here...

    I restarted my computer, and it is now pulling between 270 and 300 Mbps.

  • 2910al - 48G Switch: problem with the VLAN

    Hi all,

    I write a new message because I don't know what is happening on my SW series 2910al - 48G and v1910 - 48G.

    I put on the main core SW VLAN 610 and I put to this VLAN IP addreess 100.110.10.1 24-bit etc and it worked fine until yesterday. I change only PLEASE and I enebale STP - loop protect for ports in the range 1-52. (now I rolback this settings as was before)

    STP configuration

    Now, every PC that has for a long time what IP range 100.110.10.1 24-bit works fine, but new PC have problem with to get the new IP address. I tested it add a static and same address does not work.

    Introduced in second v1910 SW - 48 G VLAN as below

    I connect this flexible switch this \port SW 2910 - G 48, 46 (Vlan 610 tag) <>- at v1910-48G\ port 50 SW (Vlan 610 tahgged) other ports on this switch I put not marked.

    Configuration file for sw v1910 - 48G looks to below:

    #
    activate default domain system
    #
    LLDP enable

    #
    domain system
    disable the access limit
    Active state
    Disable Idle-cut
    self-service-url disable

    #
    rstp STP mode
    enable STP
    #
    NULL0 interface
    #
    GigabitEthernet1/0/1 interface
    hybrid type port link
    port hybrid vlan tagged 610 620
    untagged port hybrid vlan 1
    #
    interface GigabitEthernet1/0/2
    access port vlan 610
    #
    interface GigabitEthernet1/0/3
    access port vlan 610
    #
    interface GigabitEthernet1/0/4
    access port vlan 610
    #
    interface GigabitEthernet1/0/5
    access port vlan 610
    #
    interface GigabitEthernet1/0/6
    access port vlan 610
    #
    interface GigabitEthernet1/0/7
    access port vlan 610
    #
    interface GigabitEthernet1/0/8
    access port vlan 610
    #
    interface GigabitEthernet1/0/9
    access port vlan 610
    #
    interface GigabitEthernet1/0/10
    access port vlan 610
    #

    #
    interface GigabitEthernet1/0/49
    hybrid type port link
    port hybrid vlan tagged 610 620
    port hybrid vlan 1 10 untagged
    #
    interface GigabitEthernet1/0/50
    hybrid type port link
    port hybrid vlan tagged 610 620
    port hybrid vlan 1 10 untagged
    #
    interface GigabitEthernet1/0/51
    hybrid type port link
    port hybrid vlan tagged 610 620
    untagged port hybrid vlan 1
    #
    interface GigabitEthernet1/0/52
    hybrid type port link
    port hybrid vlan tagged 610 620
    untagged port hybrid vlan 1

    etc...

    Could you help me when I made a mistake?

    THX

    The problem was that solve this problem.

    I have blocked all ports. It was a problem. I change several settings and everything works well.

  • Problem with SG-200 and access point on VLAN

    I'm having some problems with the configuration of VLANS on the SG-200 and the WiFi access point. The access point (a TP-Link WA801N) is able to access the internet when it is plugged into a port that is on the default VLAN (1 PVID). If I plug it into one of the other VLAN then all clients connected to WiFi to lose access to the internet and can not access on the local VIRTUAL network devices. I've used this configuration with a Cisco WAP4410N of first generation.

    I'm not sure if it's something wrong with the way I configured the switch or a problem with the access point.

    The setup I have is:

    Modem/router ADSL (7800N billion)

    |

    -------------------Port 1--------------------

    |                                               |

    |               SG-200 08 |

    |                                               |

    ---3---port 8 - port

    |                    |

    Access point |

    (TP-Link WA801N).

    |

    SF - 100 D

    The port configurations are

    Port Mode PVID membership

    1 general 1 1U, 7U, 666U

    2 general 1 1U, 7U, 666U

    3 general 7 1U, 7U

    4 General 7 1U, 7U

    5 General 7 1U, 7U

    6 General 7 1U, 7U

    7 general 1U 666, 666U

    8 General 1U 666, 666U

    Iain,

    You have virtual local networks put in place on your router? The subnets that you use on each vlan? The router will give DHCP for each vlan?

    The SG200 isn't a fully managed layer 3 switch, it's just a "smart switch" so you can not actually be able to do simply only switch. A sg300 mode layer 3 would be able to do this because it is a fully managed switch.

    If the router is configured with the VLAN, vlan 1 unidentified, the rest the tag, the router-> SG200 port is trunking and the others as access ports on their vlan respective. Once the router is configured, this video contributor forum albums and Cisco employee David Hornstein is very useful to correctly configure the switch.

    Best,

    David

    Please evaluate the useful messages.

  • How can I sync my iPhone with my mac mail

    iPhone 6s (iOS 9.3.4), McBook Air (El Capitan 10.11.6)

    How can I sync my iPhone with my mac mail without using iCloud?

    I use several 'GMX' and 'Web' of e-mail accounts.

    When I send email from my iPhone, they are only saved on it, but neither on the (GMX / Web) server or on my Mac.

    For e-mail accounts to synchronize between devices, they must be configured as IMAP accounts. POP protocol doesn't have this capability.

  • CD, how to make the CD to play? It's a CD with instructions on how to install my printer.

    How to make a CD to play?  It's a CD with instructions on how to install my printer

    Insert the CD in your optical drive (if you have a DVD or CD drive)

    The CD should auto run and invites you to play or open the disk.

    If it isn't, try the following:

    Click Start > computer > open disk > and double click on the installation file or the MSI installer.

    The disc should come with instructions on how to use it.

  • Trouble with the voice and data Vlan vlan translate between CT3905 and SF300 - 24 p

    Hey actually, we have the solution to monitoring of implementation with CT3905 phone, SF300 - switches 24 p cameras and AIR-AP1041N Access Points

    We have the problem with the vlan tag in SF300 switch ports - 24 p we can´t tag vlan of the voice and data VLANs on the same port on SF300 - 24 p it is Possible or we must dedicate a port for each VLAN or ussing the same data segment of VLANs and vlan voice?

    Someone has an answer or technical documentation that can help us

    Best regards

    First of all,

    Please disable lldp transmit in SF 300 switch.

    The command is "no lldp transmitted."

    After you disable check the following steps.

    https://supportforums.Cisco.com/docs/doc-27005

    facing the same problem with cisco SG 300 and 3905 ip phone switch.

    And nested thing was my 7945 and 6941 phones use to work properly, without above configuration.

    Cisco 3905 became not vlan Ip address votes and even if I put static, it did not work.

    After a long struggle, I was able to solve the problem. Now both phone and system work fine in the same port.

    Samantha

  • Catch 22 - Port Trunk Configurations: how to combine identifiers VLAN native with DHCP (but allows traffic of VM)

    Catch 22 - Port Network Configurations: how to combine identifiers VLAN native with DHCP (but allow the virtual computer)

    I came across a Catch 22.  Maybe someone can restore the directly here.  I found a "witch hunt" for sure.

    It comes with the Ports of junction on the side of the switch of the ESX host network.

    Context:

    Ok. The Setup is a HP Blade C7000 enclosure.  I try to configure ports for switching to the blades.  ESX 3.5 U4 will be installed the BL460cs.  Installation is preferred method: revive unattended.  No problem with the syntax of Kick-Start,

    I am here, it's the side network.

    The problem:

    I find a major complication in that the switch ports must be configured for both traffic Service Console and VMkernel, more Virtual Machine since only two NICs by blade. Not best practices, but we have only two switches Cisco 3020 inside.  The two uplink physical NIC is paired in the same vSwitch.  (No iSCSI does fortunately).

    So the Catch 22 question is as follows:

    If the id VLAN native set up on the switch port, DHCP works of course and the VMware boot loader is able to grasp a binary / packets on the network (FTP Site) and install OK.  But after no installation, no communication with SC unless I set the VLAN id of the SC to '0 '.  The value "4" 0 does not communication, but "40" is the VLAN native.

    If id configuring VLAN native retired from the Switch port, DHCP will not work and host does not have IP address during the VMware boot process.  This is as expected as traffic without label is not assigned an eligible

    VLAN, so no comms.

    The Port of the Switch configuration:

    interface GigabitEthernet0/16

    SERVERNAME description

    switchport trunk encapsulation dot1q

    switchport trunk vlan native 40

    switchport trunk allowed vlan 40-254

    switchport mode trunk

    switchport nonegotiate

    Speed 1000

    No cdp enable

    spanning tree portfast trunk

    end

    Summary

    OK, let's summarize where things are and if possible please attach responses to their digital identity.

    (1) is there a way to delete the VLAN tagging altogether side ESX host? Not only the id '0 '. The problem is with clearly with the VLAN native defined as "40".  If "40" IDs specified on the Group of ports for the Service Console, no joy, no comms. If the id of '0' value, capable of ping gateway and communicate on the network.

    (2) what is the problem with the definition of VLAN native as "40" when the config for the switch port is set as VLAN native "40"?  Or if it was a problem?  Both parameters clearly do not work together.

    (3) a switch receiving a unmarked frame it will assign to the VLAN Trunk native. Ok. Trunking bases and why I need a VLAN specified on the port for DHCP native work.  But it seems that since the id VLAN is set manually even as VLAN native, closed communications and no traffic as possible.

    (4) executives made tag 802. 1 q VLAN native?  I think that it is not and this could well be the problem. Since the id VLAN "40" is not labeled, but try to score the side host vSwitch port group.

    Please let me know your thoughts, community and how in general, we are approaching 2 NIC ESX configurations.

    When trunking multiple VLANs, you either have a default VLAN is nothing is tagged, or you don't.  That's what the vlan native to you, it defines which VLAN would be used if no tag is visible on the packets traversing the network.  For servers, if you are marking, then everything has to tag, if you're not marking at the server level, then the port must be either an access port or a VLAN native or default must be set.  I also don't keep your service console the same network as your vm.  Keep this isolated for the security of the network.  If you isolate this VLAN, you can separate and use a single IP address for installation and one for post construction.

    Or, you can provide an IP address during the build.

    -KjB

    VMware vExpert

Maybe you are looking for