Link to home
Create AccountLog in
Avatar of swinger22
swinger22Flag for Canada

asked on

Routing between two VLANs

It has been about 5 years since I used cisco equipment so I am quite rusty, plus I am no expert. So what I need is the follow and if there is a better option then please suggest.

We have a Cisco 1721, which is being configured by the ISP so that the two ISP links will rollover.  BGP I believe is what they are doing.

I also have a 3COM Baseline 2250, and want to setup two VLANs on that.  VLAN 1 will have all the client and internal systems.  And VLAN 2 will be for the public servers.  The have some hosted services running on them for clients.  And we have a total of 16 public IP's available.

What I want is to setup VLAN routing on the router so that both VLAN's can communicate.  My understanding is that this is the 802.1q spec, and the switch does support it.

How do I go about setting this up, or is there an article I can refer to for setup.  Also, what I have researched so far, it seems like I just give the ethernet port on the router to subinterfaces with an IP for each VLAN.  If someone could let me know if this is on track or not.

Thanks
ASKER CERTIFIED SOLUTION
Avatar of from_exp
from_exp
Flag of Latvia image

Link to home
membership
Create a free account to see this answer
Signing up is free and takes 30 seconds. No credit card required.
See answer
the configuration you want is called "router on a stick"

here is a nice cisco article regarding this topic

http://www.cisco.com/en/US/tech/tk389/tk815/technologies_configuration_example09186a00800949fd.shtml

kind regards
Sirius
Avatar of swinger22

ASKER

excellent thank you guys.

on the note about the firewall.  Would the 1721 not firewall the ports configured for WAN?

Thanks
1721 router has rather limited firewall capabilities.
however you will be able to configure  basic rules for access from wan.
Avatar of ZaheerF
ZaheerF

One small note I would like to add.  The port connecting your 3COM Baseline 2250 to the router needs to be the trunk port.  This trunk should support 802.1q.  This way your 3COM can communicate with the router side. The router configurations is already there
the more I think about this, the more it seems to be that it may not work.  Basically what I want is to have two WAN connections come in.  VLAN 1 is all private IP's and VLAN 2 is all public IP's that can be hit from the wan connections.  So the 1721 is there to handle the two wan connections and provide roll-over basically.  So what is the best setup for what I want to do and where would a firewall go in the physical setup?  and are there any suggested firewalls?  I have been looking at the Firebox solutions.

thanks
also, I forgot, the main reason for this question.  We also want to be able to communicate to the public servers from VLAN 1.