SG300-52. Prefer to send traffic to the default gateway rather than static route? Network stops if I disable ICMP redirects.

I have 4 switches, each act as their own with a 26 subnet mask. They have static routes for every other switch. The firewall has a static route to each switch. If I unplug the LAN of the Firewall interface, traffic stops the flow of the switches. If I block the side LAN firewall, ICMP redirects, traffic stalls outside.

So if you are connected to this switch, say that you pull an ip address of 192.168.122.20. Your front door is the 192.168.122.62 switch. If you try to access a server 192.168.127.142, the SG300 sends your traffic to 192.168.127.254 to get an ICMP redirect, rather than simply to communicate directly with 192.168.127.50.

My network 'basic' is 192.168.127.0/24 vlan1 and the firewall is 192.168.127.254

This is the route of one of my switches table (which has 192.168.122.0/26 and ports run on vlan122)

 Maximum Parallel Paths: 1 (1 after reset) IP Forwarding: enabled Codes: > - best, C - connected, S - static S 0.0.0.0/0 [1/1] via 192.168.127.254, 73:48:13, vlan 1 C 192.168.122.0/26 is directly connected, vlan 122 S 192.168.123.0/26 [1/1] via 192.168.127.123, 73:48:13, vlan 1 S 192.168.124.0/26 [1/1] via 192.168.127.124, 73:48:13, vlan 1 S 192.168.125.0/26 [1/1] via 192.168.127.125, 73:48:14, vlan 1 C 192.168.127.0/24 is directly connected, vlan 1 

In any case, what gives? Why the switch would first try to send the stream to the firewall?

EDIT: Here is the server routing table:

 [email protected]/* */:~$ ip route show default via 192.168.127.254 dev eth0 192.168.122.0/26 via 192.168.127.122 dev eth0 192.168.123.0/26 via 192.168.127.123 dev eth0 192.168.124.0/26 via 192.168.127.124 dev eth0 192.168.125.0/26 via 192.168.127.125 dev eth0 192.168.127.0/24 dev eth0 proto kernel scope link src 192.168.127.142 

Hi Jonathan,.

I'm sorry. I misunderstood the routing table you want to accomplish. Your concern seems relevant given that the matching rule more will be selected instead of one: page 275 http://www.cisco.com/c/dam/en/us/td/docs/switches/lan/csbms/sf30x_sg30x/...

... "When the routing of traffic, the next hop is decided based on the longest match on the prefix (LPM algorithm). A destination IPv4 address might match several routes in the IPv4 static routing Table. The device uses the matching route with the higher, subnet mask that is, the longest match on the prefix. "...

So go ahead and report it to the support team so the guys can make the laboratory, confirm it and declare additional:

http://www.Cisco.com/c/en/us/support/Web/TSD-Cisco-small-business-suppor...

Kind regards

Aleksandra

Tags: Cisco Support

Similar Questions

  • How to send traffic in the clear?

    Hi all

    am I right to say that to send traffic in the clear through the VPN, I add a deny statement in the access list that corresponds to the card encryption?

    Depends on the ACL.

    Usually allow you all VPN traffic and explicit refuse at the end of the ACL takes care of him.

    If you want to exclude some of the traffic which is "part" of the statement of the permit, you can use a statement "ban" UNTIL instructed to permit to exclude that traffic.

    Concerning

    Farrukh

  • How do you calculate the default gateway using cidr or slash notation

    I had this question in the Microsoft Certified Technology Specialist - 70-680, configuration Windows 7 Measureup asking me to find the default gateway to the IP 192.168.123.128 with a rating of 26.

    I was wondering how do I work this? I'm really bad about that. If anyone has the time to help with this it would be great.

    I know CIDR is used to find the subnet mask, but do not know how to default gateways or IP addresses.

    Thanks in advance.

    Hello

    I suggest you to send your request in the below link and check if it helps.

    http://social.Microsoft.com/forums/en/CertGeneral/threads

  • When I press the Apple and R keys at the start of my old iMac just boots to the old system rather than start to install new sound system. Help

    When I press the Apple and R keys at the start of my old iMac just boots to the old system rather than start to install new sound system. Help

    Command-r does not work on a 10.6.8 system, you would need 10.7 Lion or better to do. If you try to install a new system and that you have already downloaded, then go to your Applications folder and double-click "install OS X...". »

  • My internet connection laptop keeps dropping out. This utility solves temporarily, saying the default gateway of something is not available.

    My internet connection laptop keeps dropping out. This utility solves temporarily, saying the default gateway of something is not available. How can I permanently?

    Hello

    1. who is the operating system installed on your computer?

    2. are you using a cable or a wireless Internet connection?

    3. were there any changes or updates made on the computer?

    4. what store did you try?

    Follow the steps mentioned below and check.

    Method 1: I suggest you to return the item and check if it helps.

    Windows wireless and wired network connection problems

    http://Windows.Microsoft.com/en-us/Windows/help/wired-and-wireless-network-connection-problems-in-Windows

    Method 2:

    You can try resetting WINSOCK, TCP/IP IPv4 and IPv6 TCP/IP stack.

    a. Click Start and in the search box, type cmd.

    b. right click on command prompt, select "Run as Administrator" to open a command prompt.

    c. at the command prompt, type the following commands:

    netsh winsock reset catalog, which resets the WINSOCK entries to the default installation

    netsh int ipv4 reset reset.log that resets the stack TCP/IP IPv4 default installation

    netsh int ipv6 reset reset.log resets the IPv6 TCP/IP stack by default installation

    d. restart the computer.

    Method 3:

    Reset the default router by pressing the reset for 15 seconds with power button.

    a. turn off the modem, the router and the computer.

    b. connect the modem to the WAN/Internet port on the router.

    c. connect the computer to one of the router's LAN/network ports.

    d. turn on the modem, wait for triggering connect light.

    e. turn on the router, wait two minutes.

    f. start the computer.

    g. when the computer is completely loaded, check if the problem persists.

  • Is it possible to make Internet connection sharing by the command line rather than the GUI on Windows Server 2008?

    Hello world!

    I need program/reset sharing Internet connection by the command line rather than GUI tools under Windows 2008 Server (could be a .cmd to run startup script or the programmer). Is this possible? Or there is some registry keys I need to set/restore and restart some services?

    Thank you very much.

    Hello

    Your question is more complex than what is generally answered in the Microsoft Answers forums. It is better suited for the Server on TechNet. Please post your question in the TechNet forums. You can follow the link to your question:

    http://social.technet.Microsoft.com/forums/en-us/category/WindowsServer/

  • I bought windows 7 in a store, but my windows xp cannot read the dvd. can I download 7 and use the product key, rather than buy it again?

    I bought windows 7 in a store, but my windows xp cannot read the dvd. can I download 7 and use the product key, rather than buy it again? I bought an old compaq desktop computer, and I want to update.

    It's probably too late because you have unsealed the package, but as you have relatively minor glitch of the material do not have a DVD player, did you use the (free) Windows 7 Upgrade Advisor to determine whether your computer hardware is capable of running Windows 7?

  • My internet rpet 'unidentified network' + "the default gateway is not available"...

    My internet was working fine before, but now repeat me 'unidentified network' and I know that's not my internet because I have another laptop that uses the internet itself very well. Then when I try to solve problems, he said "the default gateway is not available"... of the suggestions?

    Hello

    ·         Did you do last changes made on your computer before the show?

    ·         Using internet connection wired or wireless?

    Method 1:

    Follow the steps in troubleshooting from the link and check if that helps.

    Windows wireless and wired network connection problems

    http://Windows.Microsoft.com/en-us/Windows/help/wired-and-wireless-network-connection-problems-in-Windows

    Method 2:

    Temporarily disable the firewall on your computer and check if it makes a difference.

    Reference:
    http://Windows.Microsoft.com/en-us/Windows-Vista/turn-Windows-Firewall-on-or-off

    Note: Makes sure to turn Windows Firewall back, once you have done the troubleshooting.

    Method 3:

    Reset WINSOCK, TCP/IP IPv4 and IPv6 TCP/IP stack.
    a. Click Start and in the search box, type cmd.
    b. right click on command prompt, select "Run as Administrator" to open a command prompt.
    c. at the command prompt, type the following commands:
    netsh winsock reset catalog which resets the WINSOCK entries to the default installation.
    netsh int ipv4 reset reset.log that resets the stack TCP/IP IPv4 default installation.
    netsh int ipv6 reset reset.log resets the default install IPv6 TCP/IP stack.

    d. restart the computer.

    Also, see this KB article:

    How to reset the Protocol Internet (TCP/IP)
    http://support.Microsoft.com/kb/299357

    Kind regards

  • WRT350N: how to specify the default gateway?

    Hello

    I want to use my wrt350n as dhcp server, but to specify another router as the default gateway.

    I have my wrt350n (192.168.1.254) and another modem/router (192.168.1.1). When a client connects to the wrt350n, it is automatically assigned as the default gateway address of the wrt350 (192.3168.1.1). I would like to change it to refer to the other address 192.168.1.1.

    Thanks for your comments

    Raph

    On the configuration, on the basic settings tab page, there is facility of the Internet and network configuration. Setup of the Internet is for the WAN. Assign The DHCP Auto - Configuration so it will automatically get an IP address from the modem/router.

    On the configuration of the network, local IP address should be 192.168.2.1, subnet mask 255.255.255.0. This is where you enable DHCP. The default gateway should be 0.0.0.0 and that's fine, it assigns the LAN IP of the router.

    Once you have saved it, your router configuration page now is 192.168.2.1 and configuration page of your modem/router is 192.168.1.1.

  • Losing Internet connection because of the default gateway is not available.

    I keep losing internet connection and when I run the troubleshooter, it comes up saying "the default gateway is not available". I have an HP with Intel dv6985se. I was advised to do the following:
    I had the same problems of chance which I fixed it by simple disabling 'SLEEP ON DISCONNECT' SideScalng disconnect

    1 Access Device Manager (Control Panel > system and security > system > Device Manager)
    2. expand the network adapters
    3. Select the adapter that you are using (if more than 1 Repeat step 4 to 8 for each adapter)
    4. right click and select Properties
    5 click Advanced
    6. If you have installed Nvidia Ethernet configuration click the button
    7. scroll to the bottom of the list and disable the device sleep on disconnection and receive Side Scaling
    8. save the settings

    I appreciate this help info but none of this applies to my computer has. In my device under 'Network adapters' Manager, I do not have Nvidia, Asus and AMD, which is listed under my network cards is "Intel Wireless WiFi Link 4965AGN" and "Realtek RTL8101E Family PCI - E Fast Ethernet NIC (NDIS 6.20)".

    The help that I've provided says disabling "Sleep on Disconnect" and "Receive Side Scaling"... or those who are in one of my "adapter properties tab advanced options" for both my Intel and Realtek... no where does say anything about sleep on disconnect or side scaling.

    I was online with HP cat many times and Ive tried the options they have provided that is basically what I've found here but nothing has worked so far! My computer is 1 1/2 old and is preinstalled with Vista 64-bit. Recently, I have completely restored my computer with Windows 7 64 bit, and ever since then, I can't download anything or talk to HP or any kind of help because I lose the connection. Could someone please help me solve this problem... to be frank and honest he pisses me off beyond words that I never had this problem when I'm on Vista!

    I don't know what else I can provide to better help me to solve this problem, but if anyone would like more information on what programs etc, my computer has let me know and I will provide the information. Below, I'm pasting the info I received through my history of troubleshooting like a Notepad of paper Network Diagnostic and Route.Print document.

    Windows IP configuration

    Name of the host...: Helvis-PC
    Primary Dns suffix...:
    Node... type: hybrid
    Active... IP routing: No.
    Active... proxy WINS: No.
    ... DNS suffix search list: Belkin

    Wireless network connection Wireless LAN adapter:

    The connection-specific DNS suffix. : Belkin
    ... Description: Intel (r) Wireless WiFi Link 4965AGN
    Physical address.... : 00-1F-3B-A2-B7-6B
    DHCP active...: Yes
    Autoconfiguration enabled...: Yes
    Address IPv6 local link...: fe80::58d1:7968:4f2e:e873% 12 (Preferred)
    IPv4 address: 192.168.2.3 (Preferred)
    ... Subnet mask: 255.255.255.0.
    Lease obtained...: Wednesday, 10 March 2010 19:03:56
    End of the lease...: Sunday, April 17, 2146 01:58:36
    ... Default gateway. : 192.168.2.1.
    DHCP server...: 192.168.2.1.
    DHCPv6 IOOKING...: 218111803
    DHCPv6 DUID customer...: 00-01-00-01-13-1C-37-DE-00-1E-68-7F-D5-C3
    DNS servers...: 192.168.2.1.
    NetBIOS over TCP/IP...: enabled

    Ethernet connection to the Local network card:

    State of the media...: Media disconnected
    The connection-specific DNS suffix. :
    Description...: Realtek RTL8101E Family PCI - E Fast Ethernet NIC (NDIS 6.20)
    Physical address.... : 00-1E-68-7F-D5-C3
    DHCP active...: Yes
    Autoconfiguration enabled...: Yes

    Tunnel adapter isatap. Belkin:

    The connection-specific DNS suffix. : Belkin
    ... Description: Microsoft ISATAP adapter
    Physical address.... : 00-00-00-00-00-00-00-E0
    DHCP active...: No.
    Autoconfiguration enabled...: Yes
    Address IPv6 local link...: fe80::5efe:192.168.2.3%14(Preferred)
    ... Default gateway. :
    DNS servers...: 192.168.2.1.
    NetBIOS over TCP/IP...: disabled

    Tunnel adapter isatap. {BC831AD2-8EB9-45C9-9FB7-D2CF0E447380}:

    State of the media...: Media disconnected
    The connection-specific DNS suffix. :
    ... Description: Adapter Microsoft ISATAP #2
    Physical address.... : 00-00-00-00-00-00-00-E0
    DHCP active...: No.
    Autoconfiguration enabled...: Yes

    Card tunnel Teredo Tunneling Pseudo-Interface:

    The connection-specific DNS suffix. :
    ... Description: Teredo Tunneling Pseudo-Interface
    Physical address.... : 00-00-00-00-00-00-00-E0
    DHCP active...: No.
    Autoconfiguration enabled...: Yes
    IPv6 address: 2001:0:4137:9e76:451:18e9:3f57:fdfc (Preferred)
    Address IPv6 local link...: fe80::451:18e9:3f57:fdfc % 13 (Preferred)
    ... Default gateway. : ::
    NetBIOS over TCP/IP...: disabled

    Print route Notepad document:

    ===========================================================================
    List of the interface
    12.. 00 1f a2 b7 6B 3B... Intel (r) Wireless WiFi Link 4965AGN
    11... 1e 00 7f 68 c3 d5... RealTek RTL8101E Family PCI - E Fast Ethernet NIC (NDIS 6.20)
    1... software Loopback Interface 1
    14.. 00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
    15 00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
    13 00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
    ===========================================================================

    IPv4 routing table
    ===========================================================================
    Active routes:
    Network Destination gateway metric Interface subnet mask
    0.0.0.0 0.0.0.0 192.168.2.1 192.168.2.3 25
    127.0.0.0 255.0.0.0 127.0.0.1 on route 306
    127.0.0.1 255.255.255.255 127.0.0.1 on route 306
    127.255.255.255 255.255.255.255 on-link 127.0.0.1 306
    192.168.2.0 255.255.255.0 on binding 192.168.2.3 281
    192.168.2.3 255.255.255.255 on binding 192.168.2.3 281
    192.168.2.255 255.255.255.255 on binding 192.168.2.3 281
    224.0.0.0 240.0.0.0 on-link 127.0.0.1 306
    224.0.0.0 240.0.0.0 on binding 192.168.2.3 281
    255.255.255.255 255.255.255.255 on-link 127.0.0.1 306
    255.255.255.255 255.255.255.255 on binding 192.168.2.3 281
    ===========================================================================
    Persistent routes:
    None

    IPv6 routing table
    ===========================================================================
    Active routes:
    If metric network Destination Gateway
    13 58: / 0 sur-lien
    1 306: 1/128 liaison
    13 58 2001: / 32 on a link
    2001:0:4137:9e76:451:18e9:3f57:fdfc 13 306 / 128
    Over a link
    12 281 fe80: / 64 On-link
    13 306 fe80: / 64 On-link
    FE80::5EFE:192.168.2.3/128 14 281
    Over a link
    FE80::451:18e9:3f57:fdfc 13 306 / 128
    Over a link
    FE80::58d1:7968:4f2e:e873 12 281 / 128
    Over a link
    1 306 ff00: / 8 On-link
    13 306 ff00: / 8 On-link
    12 281 ff00: / 8 On-link
    ===========================================================================
    Persistent routes:
    None

    Helvis,

    If the error does not recur in safe mode then there is probably a startup item or service causes the error. Follow the steps on the following link to locate the item or service responsible for the error:

    http://support.Microsoft.com/kb/929135

    Hope that helps!

    Cody C
    Microsoft Answers Support Engineer
    Visit our Microsoft answers feedback Forum and let us know what you think.

  • KICKED OFF & REVIEW DOWNLOAD error "Unable to connect to the default gateway"

    Why am constantly kicked offline with message saying unable to connect to the default gateway? Must constantly to troubleshoot every 30 minutes and restart the router, and also more recent update more critical MSFT will not download? k

    http://answers.Microsoft.com/en-us/Windows/Forum/Windows_7-networking/wifi-keep-disconnect-troubleshoot-default-gateway/369ae5a0-2C25-46EE-B64F-437907d5ade6

    http://Windows.Microsoft.com/en-AU/Windows/configuring-multiple-network-gateways#1TC=Windows-7

    Two threads above can help with the router.

  • How to get the 'default gateway' in Windows 7?

    I forgot my WiFi password and I need to change. So, how can I get the 'default gateway' address and enter the configuration of the router in Windows 7?

    I tried to connect my laptop to the modem and typed ipconfig in Command to get the "default gateway" address, but it is 0.0.0.0. If anyone can please hep me find. Thanks :)

    Hello

    You need to reset the router back to factory settings and set up your network wireless since the beginning.

    It has normally a button at the back of the router to reset.

    Instructions to set up your wireless network will be at the website of the manufacturer of the router.

    ______________________________________________________

    Microsoft prohibits any help given in these Forums for you help bypass or "crack" passwords lost or forgotten.

    Here's information from Microsoft, explaining that the policy:

    http://answers.Microsoft.com/en-us/Windows/Forum/Windows_7-security/keeping-passwords-secure-Microsoft-policy-on/39f56ef0-5d68-41AD-9daa-6e6019c25d37

    See you soon.

  • How to show the default gateway

    I have configured an AP to use dhcp, now I want to use the CLI to show what a default gateway, it got picked up.  "Show ip route" is not in his vocabulary.  Does anyone know the correct statement?  Also - for the access point uses the dhcp protocol to pick up the gateway by default, is the absense of explicitly of a declaration 'ip default-gateway' all it takes?

    Thank you

    Mike

    To see AP ip info: -.

    capwap_1131 #show dhcp lease

    Temp IP addr: 10.0.0.12 for peer on Interface: FastEthernet0

    Temp sub network mask: 255.255.255.0

    Server DHCP Lease: 10.0.0.1, State: 3 related to the

    DHCP transaction ID: 157 a

    Location: 86400 seconds, renewal: 43200 seconds, relink: dry 75600

    Temp of addr default gateway: 10.0.0.254

    Next timer triggers after: 05:46:14

    Number of retries: 0 customer-ID: 001c.58dc.xxxx

    Hexadecimal dump ID client: 001C58DCxxxx

    HostName: capwap_1131

    Statically configure the default gateway of the AP on capwap AP ip: -.

    capwap_1131 #debug capwap console cli

    capwap_1131 ap ip default-gateway #capwap

  • Route VPN site to site on one path other than the default gateway

    I want to route VPN site-to-site on one path other than the default gateway

    ASA 5510

    OS 8.0 8.3 soon

    1 (surf) adsl line interface default gateway

    line 1 interface SDSL (10 VPN site-to-site)

    1 LAN interface

    What's possible?

    Thank you

    Sorry for my English

    Here is the assumption that I will do:

    -Your IP SHDL is 200.1.1.1, and the next hop is 200.1.1.2

    -Your LAN-to-LAN ends on this interface (interface card crypto SHDL)

    -VPN peer 1 - 150.1.1.1 and LAN is 192.168.1.0/24

    -VPN peer 2 - 175.1.1.1 and LAN is 192.168.5.0/24

    This is the routing based on the assumption above:

    Route SHDL 150.1.1.1 255.255.255.255 200.1.1.2

    Route SHDL 175.1.1.1 255.255.255.255 200.1.1.2

    Route SHDL 192.168.1.0 255.255.255.0 200.1.1.2

    Route SHDL 192.168.5.0 255.255.255.0 200.1.1.2

    Hope that helps.

  • Cannot ping the default gateway with Centrino Advanced-N 6235 on XPS 12 but CAN connect to the Internet

    I have a XPS 12 with an Intel Centrino Advanced-N 6235 wireless card.  I can't ping the default gateway with the wireless card.  When I use a USB network adapter, I can ping the default gateway for the wired connection.  I can connect to the Internet and the internal network with the wireless card and can ping other computers on the network.  I am trying to run a program to connect wireless to a projector.  I have two different programs for the two different projectors.  I can connect by cable but not wireless.  I think that the problem is anything that does not make me a ping of the default gateway or something on the wireless card.  I have a 10 latitude with a Broadcom wireless card that is connected to the same access point and can ping the default gateway and can connect wirelessly to two projectors.  They all have two windows 8 Pro.

    I downloaded the new drivers from Dell, uninstalled, reinstalled, tried to update Windows install the drivers, all with no success. Any ideas?

    The solution of the problem by chance.  I was connected to the computer with a different network than what has been used to authenticate user account on the wireless.  When I switched the user account for the user account that was logged on to the computer was the same who authenticate to the wireless, it worked.  Go figure!

Maybe you are looking for