Link to home
Start Free TrialLog in
Avatar of hayesie
hayesieFlag for Canada

asked on

New VPN route crashing network

Have a network with several vlans running.  Recently added Nortel 1100 Contivity VPN's that are at each end of a GRE Tunnel.
Location 1 - 3750 router enabled
Vlan 10 Network A 191.168.0.1/16
Vlan 42 Network B 172.50.0.1/27
Vlan 99 Management Network 10.1.0.1/24
GW 10.1.0.2

Port g1/0/24 connected to Nortel
Switchport access vlan 99
Ports g1/0/25
trunked port allowing all vlans through

Connected to Nortel 1100 Contivity
Private IP 10.1.0.2/24
Public IP 10.191.X.X/24
GW 10.1.0.1

Connected to Telus device going out into a cloud GRE Tunnel to Location 2 - IP's unknown (config'd by other dept)

Location 2 - 3750 router enabled
Vlan 10 Network A 191.169.1.1/24
Vlan 42 Network B 172.50.1.1/27
Vlan 99 Management Network 10.1.1.1/24
GW 10.1.1.2

Port g1/0/24 Connected to Nortel
switchport access vlan 99
Ports g1/0/25
trunked port allowing all vlans through (HP2524 hangs off this for workstations)

Connected to Nortel 1100 Contivity
Private IP 10.1.1.2/24
Public IP 10.23.X.X/24
GW 10.1.1.1

Connected to Telus device going out into a cloud GRE Tunnel to Location 1 - IP's unknown (config'd by other dept)

Am able to ping, connectivity is not the problem.

Main network is at location 1. At this location there is several switches with similar config as below.

Switch 1 - 3750-12S switch from Port Location 1 - 3750 Router G1/0/25
Connected on Port g1/0/12
Vlan 10 Network A 191.168.0.19/16
Vlan 42 Network B 172.50.0.4/27
Vlan 99 Mgmt Network 10.1.0.4/24
Trunked port allowing all three vlans through

The native VLAN on Cisco's is Native VLAN 10.  I have no IP address on VLAN 1, it is shutdown.

There is nowhere on the Nortel's to set native vlan, or to add vlans.  It only has vlan 1.

Problem:
When I open port g1/0/12 on Location 1 3750-12S to allow the feed to go through, the network becomes congested and starts dropping workstations.  As soon as I shutdown the port, the workstations come back up.  This is very important to get this feed going, and I do not have much time left before the deadline.  Currently there is nothing being fed, just the switches, routers are in place.  The workstations at location 2 are not even connected.

Please find attached the sh ip route of both Cisco's in location 1 and 2.

I have tried running sh logging on all Cisco's and see no errors logged.



 ip-routing-captures.txt
ASKER CERTIFIED SOLUTION
Avatar of bjove
bjove
Flag of North Macedonia image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of hayesie

ASKER

Thanks bjove, it is up and running....feel foolish missing the VLAN mask mistake, but sometimes it takes fresh eyes to see the issue.