Solved

Juniper Core L3 switch with multiple VLAN's, gateway to ASA 5505

Posted on 2011-02-16
6
1,570 Views
Last Modified: 2012-05-11
I am having trouble getting a Juniper L3 EX2200 to pass  all traffic to a Cisco ASA 5505 that is my gateway. I have 5 VLAN's terminating on the Juniper switch, whcih has the default gateway of the ASA.

The ASA has routes to each VLAN IP pointing to the Junipers IP, which is currently member of VLAN 100 (example). I changed both the ASA port and the Juniper uplink port to Access only port, and still can not get through to the internet from other VLAN's, other than the VLAN 100.

Any thoughts?
0
Comment
Question by:munisee
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
  • 2
6 Comments
 
LVL 35

Assisted Solution

by:Ernie Beek
Ernie Beek earned 250 total points
ID: 34907071
Normally I would trunk the port on the juniper and create subinterfaces for each vlan on the ASA with an ip address in each vlan. I don't know if the 5505 is able to cope with that (depends on the limitations in the software).
0
 
LVL 18

Accepted Solution

by:
deimark earned 250 total points
ID: 34907260
As above, but also to add to this, if you can supply the routing table from the EX3200 and the interfaces configured ie does each vlan have its own l3-interface?

Cos if not, then you will need to trunk all the vlans to the ASA and let that do the routing (if it can have more than 1 vlan interface)
0
 

Author Comment

by:munisee
ID: 34910624
Ernie-- We actually want to have the Juniper switch do all the L3 routing. Not the 5505. If we used the 5505 we would cut speeds down to 100mbit. The Juniper is gig.

Deimark, Yeah, each VLAN does have it's own L3 interface, which is x.x.x.1, y.y.y.1, z.z.z.1, etc.  Like I had mentioned to Ernie the reason we didn't want to use the ASA for VLAN routing is that we would lose our Gig backbone switching capacity.

Anyway, I am going to split this with you guys as I found the issue myself. When the core switch was configured for a default GW, the subnet mask was 24 bits... not 0. So this was our issue!!! LOL.

Thanks for your responses!
0
Easy, flexible multimedia distribution & control

Coming soon!  Ideal for large-scale A/V applications, ATEN's VM3200 Modular Matrix Switch is an all-in-one solution that simplifies video wall integration. Easily customize display layouts to see what you want, how you want it in 4k.

 

Author Closing Comment

by:munisee
ID: 34910629
Problem was resolved.
0
 
LVL 35

Expert Comment

by:Ernie Beek
ID: 34910853
Good to hear you resolved it!

Thx for your points :)
0
 
LVL 18

Expert Comment

by:deimark
ID: 34910954
As above, glad its now working  :)
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Port Forwarding 4 61
Access-List 15 64
Mac address in Nexus7K fex port 5 46
Programmable Firewall Router? 3 25
The Cisco RV042 router is a popular small network interfacing device that is often used as an internet gateway. Network administrators need to get at the management interface to make settings, change passwords, etc. This access is generally done usi…
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

751 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question