Link to home
Start Free TrialLog in
Avatar of ie0
ie0Flag for United States of America

asked on

VLan not working

I have:
Switch 1 connected to a PC with that port configured with Vlan2.
               Connected to switch2 via a standart port that is also on Vlan2

Switch 2  connected to switch1 via a standard port configured for Vlan2 (same cable as listed above, only one connection between the 2 switches)
                Connected to a firewall with the port configured for Vlan 2

Firewall connected to the internet
              connected to switch2 via a port that is configured with the default Vlan0 and a subinterface with Vlan2.

I cannot ping from my PC on switch 1 to the lan interface of the firewall.
What is the best way to diagnose this?
Avatar of Adrian Cantrill
Adrian Cantrill
Flag of Australia image

do you have both the switch and firewall configured with subinterfaces ? would it not be easier yo configure the connection between FW and switch as a trunk ?

If your firewall doesnt have any specific interface configuration then VLAN 0 will be the VLAN and thus it wont work.
thats if i have understood your configuration :)
Avatar of ie0

ASKER

Only the firewall is configured with a subinterface, the Switches are not.

When you say a trunk, do you mean 2 network cables to the switch, one on Vlan0 and one on Vlan2?
ASKER CERTIFIED SOLUTION
Avatar of Adrian Cantrill
Adrian Cantrill
Flag of Australia image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of ie0

ASKER

It's a mid range Sonicwall.
Avatar of yask99
yask99

make the port (connecting the switches) on both the switches as trunk rather than access (currently on vlan2).
i.e. :inter-switch connectivity to be done through trunk port
you do not require to trunk the ports connecting the switches. As long as only one vlan is to travel over the links your setup is fine if you remove to subinterface on the firewall. However if you are going to use sub-interfaces on the firewall then the link between the firewall and the switch will need to be trunked. Otherwise you can remove the subinterface and place the main interface into vlan 2 on the firewall.

If you are going to be adding more vlans to your network in the future then trunking all the interswitch links and the link to the firewall would be the way to go as it will save you a lot of config and headache in the future.

Trunking is not done by adding an extra cable for the other vlan but instead it is a configuration to allow more than one vlan over the link.