Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions

setting up tagged VLAN on Foundry Fastiron Superx switches

Posted on 2011-09-15
Last Modified: 2012-05-12
I am trying to setup a 2nd VLAN on my network using all ports on the switch. From what I understand I need to create the VLAN (VLAN 3) and add ports to it then tag them and then they can be a member of both VLAN's. When I remove a port from the default VLAN and add it to VLAN3 i can then tag it but not add it back to VLAN1 which is what i thought tagging a port allowed. Am I doing something wrong or missing something. i am using the web interface as i don't know the commands as well as I would like.

My goal is to create 2 VLANs so i can add wireless AP's with SSID's on the 2nd VLAN using a different subnet for mobile devices to access the internt without using up all my current IP addresses.

Switches are Foundry FastIron SuperX running software version 03.0.01cT3e1
Question by:westwoodIT
  • 4
  • 3
LVL 17

Accepted Solution

Garry-G earned 500 total points
ID: 36547812

not really sure about the web interface, as all we use is the shell ;)
I assume your current setup looks something like this:

vlan 1 name default by port
untagged ethe0/1/1 to eth0/1/24

Open in new window

To add the second VLAN, you most probably did something like this: (well, at least through the web interface)

vlan 3 name NEWVLAN by port
tagged eth0/1/10 ethe0/1/15 to eth01/20

Open in new window

In order to get the port to run both tagged and untagged, adding the appropriate option to it is required:

interface ethernet 0/1/10
dual-mode 1

Open in new window

This should do it ...

Author Comment

ID: 36550908
Thanks for the response. I am working in the shell and after deleting the VLAN 3 and recreating it using the shell and then adding port 5/4 and 5/18 to VLAN 3. then I went in and ran the command
dual-mode 1
i get an error that says "not a member of vlan 1"
It removes the port from the default vlan when i add it to the new VLAN.
I have attached a screenshot of the shell commands i executed.
 screen shot of shell comands as desribed
LVL 17

Expert Comment

ID: 36550997
What happens if you reverse the sequence? i.e., have the port in vlan 1, set it to dual mode, then add it to vlan 3?
Easy, flexible multimedia distribution & control

Coming soon!  Ideal for large-scale A/V applications, ATEN's VM3200 Modular Matrix Switch is an all-in-one solution that simplifies video wall integration. Easily customize display layouts to see what you want, how you want it in 4k.


Author Comment

ID: 36551132
I tried that. As soon as you remove port 5/4 from VLAN 3 it is no longer tagged and i get error
"cannot set untagged port 5/4 to dual mode"
I tried adding ethe 5/4 to VLAN 1 as untagged and then i was going to try the dual-mode command  but the tagged/untagged commands dont exsist in the default VLAN.

I assume all the ports need to be in the default VLAN.

i created 2 VLANs and added ethe 5/4 and 5/18 to both as tagged ports. but of course now they are not in the default VLAN. what are the impicatioons of those ports not being in the default VLAN.

Again thanks for your time.

Author Comment

ID: 36551251
I figured it out.

if i followed your advise and configured dual-mode on the port it worked if i didnt add the 1 at the end
dual-mode 1
port not in vlan 1

So i did it this way
and it then let me add the port to both VLAN's
LVL 17

Expert Comment

ID: 36551394
OK, might be slight differences in the OS/Switch versions ... (I think we have 3.1 on ours)
Glad it's working ...

Author Closing Comment

ID: 36551683
due to different versions of switches there was a slight difference in the command but he sent me down the path to the solution.

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Destination host unreachable 12 130
RV042 site to site vpn can ping but not access server via rdp 6 36
ospf neighbors not coming up 6 59
route-map permit with a number 1 36
Creating an OSPF network that automatically (dynamically) reroutes network traffic over other connections to prevent network downtime.
Shadow IT is coming out of the shadows as more businesses are choosing cloud-based applications. It is now a multi-cloud world for most organizations. Simultaneously, most businesses have yet to consolidate with one cloud provider or define an offic…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

839 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question