Solved

vlan issue

Posted on 2008-10-21
3
240 Views
Last Modified: 2011-09-20
i have done vlan using cisco router and a cisco switch
encapsulation dot1.q used
vlan1, 192.168.1.1
vlan2, 192.168.2.1


i have linux firewall
eth1, 192.168.1.2

i added virtual ip to eth1.1 interface, 192.168.2.2

users can ping to 192.168.1.2, but cannot ping to 192.168.2.2

what might be the problem

i want to give access to vlan ip ranges using my linux box

i blv the issue is encapsulation issue
any ideas how to fix this?



0
Comment
Question by:ammadeyy2020
3 Comments
 
LVL 16

Accepted Solution

by:
btassure earned 250 total points
ID: 22765604
You need to configure the interface as a trunk and/or configure the subinterfaces into the vlans they represent.
See this article for more info:
http://www.linuxjournal.com/article/7268
0
 
LVL 5

Assisted Solution

by:sharedit
sharedit earned 250 total points
ID: 22778529
Can I ask why you are not using the router to route between the two vlans?

I lack experience with this Linux Firewall Software, but typically Firewalls forward traffic through itself, they do not route back out the same interface packets come in on.

The Router is where i would be setting up traffic between the two Vlans. The firewall Isn't really going to do any routing for you, it is probably just going to be the default route for unknown traffic on your network.

I may be unclear as to how your network is setup.

On the switch port connected to router
config t
int f0/x
switchport mode trunk
switchport trunk encapsulation dot1q
switchport trunk native vlan 1
switchport trunk allowed vlan add 1,2
switchport nonegotiate

on the router port connected to the switch
config t
int e0/x.2  <------ i usually make the .x the number of the VALN. ie vlan2=.2 vlan20=.20 vlan34=.34 makes it less confusing
encapsulation dot1q 2
ip add x.x.x.x x.x.x.x (this should be the default route for Vlan 2)

where is dhcp coming from?

with that, if you put a port on the switch to access vlan2 an appropriately ip configured pc, in that port should be able to ping vlan 1

0
 

Author Closing Comment

by:ammadeyy2020
ID: 31508187
i added static route to firewall, and default route to router, it works fine
0

Featured Post

Free camera licenses with purchase of My Cloud NAS

Milestone Arcus software is compatible with thousands of industry-leading cameras for added flexibility. Upon installation on your My Cloud NAS, you will receive two (2) camera licenses already enabled in the software. And for a limited time, get additional camera licenses FREE.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Guacamole and browser performance 1 64
Management Network in CIsco L2 Switch 3 37
Cisco RSTP portfast 3 52
fibre channel switch - sfp needed? 2 18
The worst thing when starting a new job is when the previous Network Administrator left behind no documentation. How do you get into the devices? If you've been in this situation or just accidently mistyped your password, this article will hopefully…
If you are like regular user of computer nowadays, a good bet that your home computer is on right now, all exposed to world of Internet to be exploited by somebody you do not know and you never will. Internet security issues has been getting worse d…
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
Many functions in Excel can make decisions. The most simple of these is the IF function: it returns a value depending on whether a condition you describe is true or false. Once you get the hang of using the IF function, you will find it easier to us…

920 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

15 Experts available now in Live!

Get 1:1 Help Now