Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

Inter-VLAN routing

Posted on 2009-04-02
5
Medium Priority
?
419 Views
Last Modified: 2012-05-06
I've been having lots of fun with a little project -until now.. it's in production, and not working quite right.

We just implemented VLANs.  We did it using 2 Cisco Catalyst 3560 core switches, and 5 Catalyst 2960 edge switches.

The core switches use HSRP to present a single router (as they are layer 3 switches with ip routing enabled).

I have a number of VLANs, the default (1) resides on the 192.168.10.0/24 subnet.  It contains my firewall, switching, and routers.  All other VLANs reside on 10.<vlan>.0.0/16 subnets.

The default VLAN works, however none of the other VLANs are able to reach outside of the network (through the firewall).  All VLANs are routing across switches (ie 2 computers on different edge switches can talk), and all VLANs can talk to the servers, after the servers have been given static routes (ie route add 10.17.0.0 255.255.0.0 192.168.10.254 1)

Attached are the config files for one of the cores, and one of the edge switches.
sw-core-1-confg.txt
sw-b-confg.txt
0
Comment
Question by:lunanat
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
5 Comments
 
LVL 43

Accepted Solution

by:
JFrederick29 earned 2000 total points
ID: 24053026
The Firewall has routes to all the 10.x subnets via 192.168.10.254, right?
0
 
LVL 43

Expert Comment

by:JFrederick29
ID: 24053032
On the servers, why not simply set the default gateway to 192.168.10.254? instead of adding static routes to all the 10.x subnets.
0
 
LVL 1

Author Comment

by:lunanat
ID: 24053140
Hi JFredrick, I'm back again hahahah.

I had tried that and it didn't seem to work... will try again.

And you are bang on... I was missing a route from the firewall back to the VLANs..........

doh?

Thank you once again.
0
 
LVL 1

Author Closing Comment

by:lunanat
ID: 31565927
Silly question, but I'm glad you had the answer!
0
 
LVL 43

Expert Comment

by:JFrederick29
ID: 24053169
No problem, glad to help!
0

Featured Post

Learn how to optimize MySQL for your business need

With the increasing importance of apps & networks in both business & personal interconnections, perfor. has become one of the key metrics of successful communication. This ebook is a hands-on business-case-driven guide to understanding MySQL query parameter tuning & database perf

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
WARNING:   If you follow the instructions here, you will wipe out your VTP and VLAN configurations.  Make sure you have backed up your switch!!! I recently had some issues with a few low-end Cisco routers (RV325) and I opened a case with Cisco TA…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

722 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question