[Webinar] Streamline your web hosting managementRegister Today

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 396
  • Last Modified:

HP MANAGEABLE SWITCH QUESTION

Im having a big problem in our network, im almost sure, the problem is the switch.

I believe the problem is on the VLAN or somethingm could someone analize this for us?

The problem is that our firewall is not reaching or reach only sometimes the trust network, it is a problem that come and goes.. sometimes, from the firewall i can ping the address 192.168.12.30, and sometime i cant...  we tried everything, the last resort is the problem on the switch..



; J9279A Configuration Editor; Created on release #Y.11.12

hostname "secmonde-switch1"
mirror-port 13
web-management ssl
interface 1
   name "ssg140-0/0"
exit
interface 2
   name "R510-1-Gb1"
exit
interface 3
   name "R510-2-Gb1"
exit
interface 4
   name "ssg140-0/5"
exit
interface 5
   name "R510-1-Gb2"
exit
interface 6
   name "R510-2-Gb2"
exit
interface 7
   name "R510-1-vmnic2"
exit
interface 8
   name "R510-1-vmnic6"
exit
interface 9
   name "R510-2-vmnic2"
exit
interface 10
   name "R510-2-vmnic6"
exit
interface 11
   name "ssg140-0/8"
exit
interface 12
   name "ssg140-0/9"
exit
interface 13
   name "R510-1-vmnic3"
exit
interface 14
   name "R510-1-vmnic7"
exit
interface 15
   name "R510-2-vmnic3"
exit
interface 16
   name "R510-2-vmnic7"
exit
interface 17
   name "backup-monde"
exit
interface 23
   name "ssg140-0/1"
exit
trunk 1,23 Trk1 Trunk
ip default-gateway 192.168.43.1
snmp-server community "public" Unrestricted
vlan 1
   name "DEFAULT_VLAN"
   untagged 2-3,5-10,17-22,24,Trk1
   no ip address
   no untagged 4,11-16
   exit
vlan 43
   name "MANAGEMENT"
   untagged 4
   ip address 192.168.43.253 255.255.255.0
   exit
vlan 11
   name "DMZ-1"
   untagged 11
   no ip address
   tagged 13-16
   exit
vlan 12
   name "DMZ-2"
   untagged 12
   no ip address
   tagged 13-16
   exit
vlan 13
   name "VMotion"
   no ip address
   tagged 2-3,5-6
   exit
fault-finder bad-driver sensitivity high
fault-finder bad-transceiver sensitivity high
fault-finder bad-cable sensitivity high
fault-finder too-long-cable sensitivity high
fault-finder over-bandwidth sensitivity high
fault-finder broadcast-storm sensitivity high
fault-finder loss-of-link sensitivity high
fault-finder duplex-mismatch-HDx sensitivity high
fault-finder duplex-mismatch-FDx sensitivity high
spanning-tree Trk1 priority 4
ip ssh
password manager

0
manolocruz
Asked:
manolocruz
  • 6
1 Solution
 
Don JohnstonInstructorCommented:
There's not NEARLY enough information here.

Where's the firewall?

Where is 192.168.12.30?

Where is the routing being done at?

Why don't you think the problem is with the firewall?
0
 
manolocruzAuthor Commented:
firewall is SSG140 on interface 1 interface 23,

192.168.12.30 is the VMWARE MANAGEMENT

Routing.. good question, nowhere, on the ssg140, which is also the firewall maybe.
0
 
manolocruzAuthor Commented:
the SSG is a secure gateway which also does routing.
0
Will You Be GDPR Compliant by 5/28/2018?

GDPR? That's a regulation for the European Union. But, if you collect data from customers or employees within the EU, then you need to know about GDPR and make sure your organization is compliant by May 2018. Check out our preparation checklist to make sure you're on track today!

 
manolocruzAuthor Commented:
but there is no route on the same network, while i am inside a 12.xxx machine, i need no route to reach another 12.xxx machine, am i right?
0
 
Craig BeckCommented:
You have the ports on the switch where the firewall connects configured as a trunk.

I would disconnect one of the links from the firewall and see if the problem persists.  If it does, reconnect that link and remove the other one then check again.  If this solves the problem you should look at the configuration of the firewall to see if it does active/active load-balancing across the NICs or not.

I'm guessing this is a mismatch between the config on the firewall and the switch.
0
 
manolocruzAuthor Commented:
i on the road now, will test as soon as get in the office.
0
 
manolocruzAuthor Commented:
Craig, firewall pings switch and switch pings firewall, switch do not ping virtual machines...

I tried to disconnect ports 1 and then 23, problem persisted.

i am start considering hardware failure on the switch.

Any other ideas?
0
 
manolocruzAuthor Commented:
Just disconnected one of ports and problem is gone, still need to found out WHY the problem is occuring, probably a fault cable or switch port.
0

Featured Post

Firewall Management 201 with Professor Wool

In this whiteboard video, Professor Wool highlights the challenges, benefits and trade-offs of utilizing zero-touch automation for security policy change management. Watch and Learn!

  • 6
Tackle projects and never again get stuck behind a technical roadblock.
Join Now