• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 1759
  • Last Modified:

cisco switch setup

HI I am logging into a cisco 3550 and I am getting a question "Enter interface name used to connect to the management network from the above int summary". "The default is not allowed.

What is this in regards too? Thanks I am new to switching and normally don't have too but we don't have a network guy.
2 Solutions
Select one of the available interfaces for connecting the switch to the management network, for example gigabitethernet0/0 or FastEthernet0/0 depending on what interfaces you have


Aaron StreetInfrastructure ManagerCommented:
enter Vlan 1

it will enable you to connect in via any interface taht is in valn 1, this is much nice than being limited to a single physical interface (all interfaces are in vlan 1 by ddefault)

with cisco gear you can limit the interfaces people can use to connect over the network to manage the switch with. I is a very usefull security feature, but untill you are clear on how to implement it, i would suggest you use vlan 1 for managment. You can always easly change it later.

(you will also need to assign the switch an ipaddress for network managment)
SainaiAuthor Commented:
quick question DevilWah, how do you change it? Good to have for a future reference.
Become an IT Security Management Expert

In today’s fast-paced, digitally transformed world of business, the need to protect network data and ensure cloud privacy has never been greater. With a B.S. in Network Operations and Security, you can get the credentials it takes to become an IT security management expert.

You will get this when you are in the Initial Setup Wizard.

As said above, you should use "interface VLAN 1" for management purpose. By default, all interfaces of the switch belong to VLAN 1. So, as long as your connectivity is up, your switch will be manageable.

I don't see any reason why do you want to change the Management interface. If you want to change the management Interface IP address:

# config t
(config)# int vlan 1
(config)# no ip address  [old ip address] [subnet mask]
(config)# ip  address [new ip address] [subnet mask]

If you want to change the VLAN 1 to some other VLAN for better security,
Make sure your Port connecting to uplink switch is configured either as Trunk or Part of that VLAN.  (because by default, not all ports will be part of new VLAN.

If you require further information, let us know.

Aaron StreetInfrastructure ManagerCommented:
by default any interface (be that a valn interface or a physical interface) that you give an ip address. will allow you to manage the switch/router through.

in the case of a vlan, all physical interfaces with in that vlan, will allow managment traffic.

So as nrpanchal said all you need to do is run a #no ip address, on the interface and that will stop managment on that interface.

then jsut enter the interface you want and assign an ip address on that.

Aaron StreetInfrastructure ManagerCommented:
I am trying to rember the command to remove a interface from managment.

using access lists you can block managment traffic comming over different interfaces to insure that even if an interface has an IP address on it (for routing perposes) you can't use that IP to manage the switch.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Identify and Prevent Potential Cyber-threats

Become the white hat who helps safeguard our interconnected world. Transform your career future by earning your MS in Cybersecurity. WGU’s MSCSIA degree program was designed in collaboration with national intelligence organizations and IT industry leaders.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now