Solved

Inter-VLAN routing

Posted on 2009-04-02
5
414 Views
Last Modified: 2012-05-06
I've been having lots of fun with a little project -until now.. it's in production, and not working quite right.

We just implemented VLANs.  We did it using 2 Cisco Catalyst 3560 core switches, and 5 Catalyst 2960 edge switches.

The core switches use HSRP to present a single router (as they are layer 3 switches with ip routing enabled).

I have a number of VLANs, the default (1) resides on the 192.168.10.0/24 subnet.  It contains my firewall, switching, and routers.  All other VLANs reside on 10.<vlan>.0.0/16 subnets.

The default VLAN works, however none of the other VLANs are able to reach outside of the network (through the firewall).  All VLANs are routing across switches (ie 2 computers on different edge switches can talk), and all VLANs can talk to the servers, after the servers have been given static routes (ie route add 10.17.0.0 255.255.0.0 192.168.10.254 1)

Attached are the config files for one of the cores, and one of the edge switches.
sw-core-1-confg.txt
sw-b-confg.txt
0
Comment
Question by:lunanat
  • 3
  • 2
5 Comments
 
LVL 43

Accepted Solution

by:
JFrederick29 earned 500 total points
ID: 24053026
The Firewall has routes to all the 10.x subnets via 192.168.10.254, right?
0
 
LVL 43

Expert Comment

by:JFrederick29
ID: 24053032
On the servers, why not simply set the default gateway to 192.168.10.254? instead of adding static routes to all the 10.x subnets.
0
 
LVL 1

Author Comment

by:lunanat
ID: 24053140
Hi JFredrick, I'm back again hahahah.

I had tried that and it didn't seem to work... will try again.

And you are bang on... I was missing a route from the firewall back to the VLANs..........

doh?

Thank you once again.
0
 
LVL 1

Author Closing Comment

by:lunanat
ID: 31565927
Silly question, but I'm glad you had the answer!
0
 
LVL 43

Expert Comment

by:JFrederick29
ID: 24053169
No problem, glad to help!
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Cable suggestions 5 73
Cisco switch suggestion 5 65
Switched virtual interface on layer 2 switch 2 35
Cisco Edge Routers for BGP 6 52
Hello to you all, I hear of many people congratulate AWS (Amazon Web Services) on how easy it is to spin up and create new EC2 (Elastic Compute Cloud) instances, but then fail and struggle to connect to them using simple tools such as SSH (Secure…
Security is one of the biggest concerns when moving and migrating your data from your on-premise location to the Public Cloud.  Where is your data? Who can access it? Will it be safe from accidental deletion?  All of these questions and more are imp…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

837 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question