Fundamental VLAN question

If I choose to implement multiple VLANs on a switch connected to a stack of Linux server (RHEL or SLES), do I need to configure VLAN interfaces on each server as well or do I only need to configure the VLANs on the switch?

For example, suppose I have a stack (call it 10) of Linux servers connected by two interfaces each to the same 48-port Gigabit switch.  The first NIC on each server belongs to 192.168.10.0/24 and the second to 192.168.20.0/24.  Traffic is not to be routed between these networks; both are connected primarily to provide higher overall station -to-station bandwidth.  We can't use trunking since the stack may need the full bandwidth of both NICs between two individual nodes rather than between a server and many clients.

Up to this point, I would just connect the cables to the switch and rely on the switch to properly handle the presence of both networks.  They do this quite well (Catalyst 4948's, Dell 5448's, SMC 8848's, and so forth) without setting up VLAN tagging.  However, I have a minority of partners who are convinced that we require VLAN tagging to make this work properly.  Despite having a couple hundred configurations in the field proving otherwise, I've agreed to look into the consequences of configuring the VLANs.

SO, if I do the following:

-setup VLAN 10 and VLAN 20 on the switch
-assign the access mode for the switch ports connected to NICs on the 192.168.10.0/24 network to VLAN 10
-assign the access mode for the switch ports connected to NICs on the 192.168.20.0/24 network to VLAN 20

Do I have to establish the vlan interface aliases with vconfig or ifconfig as well or is configuring the switch enough?  If I don't configure the vlan interfaces in the OS, how is the VLAN tag added to the packets?

Thanks!
LVL 7
turnbulldAsked:
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

x
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

alewis9777Commented:
I wouldn't think you would have to do anything on the server side other than making sure each nic interface is pointed to the correct gateway of the vlan you want it connected to.

The switch will take care of adding and stripping the vlan tagging information headers.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
turnbulldAuthor Commented:
Thanks for the reply!

If I don't want a gateway, meaning I don't want traffic from any of these servers to be able to travel outside of the subnets to which they are connected, do I need to establish a gateway for each VLAN?

In other words, traffic from each of my 10 servers should be able to talk to any server on the 192.168.10.0/24 and the 192.168.20.0/24 nets but not on any others.  I have an 11th server that has a NIC on each of these networks and also a NIC on the corporate LAN that users access for connecting to the services that ultimately come from the 10 servers underneath.  The 10 servers are a clustered stack of database servers that have a common interface installed on the 11th.

As a result, I generally do not define a default gateway on the 10 servers and they do not have the ability to talk outside of the networks directly cabled to them.

Or am I misunderstanding the term gateway in this context?
0
alewis9777Commented:
You are correct in that if you do not want a servers traffic to go outside of its subnet then you do not need to specify the gateway.

You can setup vlans on the switch for the two different networks which is just going isolate them, but then again if you are not applying a gateway on the servers now it would seem they would be isolated to their own subnet anyway.
0
turnbulldAuthor Commented:
They would indeed. Now, if only we could convince everyone else involved that this is true I could avoid fiddling with this altogether :)  Thanks!
0
turnbulldAuthor Commented:
Thanks again!
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Switches / Hubs

From novice to tech pro — start learning today.