Solved

OPT-E-MAN new service configuration

Posted on 2012-03-11
11
455 Views
Last Modified: 2012-03-17
Hello,

I have new service from AT&T which they state is sending untagged traffic to all my new ports.

 At my central office I have a 2821 with an interface configured like this:

interface GigabitEthernet0/1/0
 description (Fiber connection to HFE/
 no ip address
 negotiation auto
!
interface GigabitEthernet0/1/0.1
 encapsulation dot1Q 20
 ip address 172.16.5.1 255.255.255.0
!
interface GigabitEthernet0/1/0.2
 encapsulation dot1Q 10 native
 ip address 172.16.2.1 255.255.255.0

At the remote sites I've tried tagging the interface for Vlan# but it doesn't seem to matter.  What does work is which ever side I set for "Native".  So router2 let's say had an interface configured for 172.16.2.2 it's running along no problem.

router3 172.16.5.2 doesn't get any traffic.

I know I am missing something.  Please talk to me like I am 5 because I am just a lone ranger on this one without a smartnet contract.

Thank you so much in advance!
0
Comment
Question by:mwvwca
  • 6
  • 5
11 Comments
 
LVL 32

Assisted Solution

by:harbor235
harbor235 earned 500 total points
ID: 37709507
You have configured the interface as tagged with the encapsulation command, native tells the interface that these frames in vlan X are untagged, thats why the native works.

So my questionis, if they are sending you untagged frames why are you configuring the subinterfaces with the encap and trunk type?

Is the opt-e-man basic?


harbor235 ;}
0
 

Author Comment

by:mwvwca
ID: 37710490
Thank you for the reply.  If I remove the encap then it strips the ip address also. When I go to reapply the address I get :

% Configuring IP routing on a LAN subinterface is only allowed if that
subinterface is already configured as part of an IEEE 802.10, IEEE 802.1Q,
or ISL vLAN.

For the record, I am 99% this is user error.

*edit* Sorry, yes the service is basic (best effort).
0
 
LVL 32

Assisted Solution

by:harbor235
harbor235 earned 500 total points
ID: 37710818
Have you tried it without the sub-interface?   Native means the frames are untagged so you should not need the encap or sub. Give it a try.  


harbor235 ;}
0
 

Author Comment

by:mwvwca
ID: 37710896
Not sure how I would do that without a subinterface?  Can I put two address on one interface?  I have two connections coming into one port.  

Sorry if my questions seems clueless but that's about where I am  ;)

Router 1
ip address 172.16.5.1 255.255.255.0
ip address 172.16.2.1 255.255.255.0 secondary

Router 2
ip address 172.16.5.1 255.255.255.0

Router 3
ip address 172.16.2.2 255.255.255.0

It can't really be that simple can it?
0
 
LVL 32

Expert Comment

by:harbor235
ID: 37710952
So is AT&T sending untagged frames or tagged, or both? You say untagged only initially?

>I have new service from AT&T which they state is sending untagged traffic to all my new ports


harbor235 ;}
0
How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

 

Author Comment

by:mwvwca
ID: 37710991
Well they say it's untagged traffic.  Router 2 is at one physical location and Router 3 at another.  My understanding was that all traffic was available to all locations (not port based).
0
 
LVL 32

Expert Comment

by:harbor235
ID: 37711038
opt-e-man basic is pt-2-pt only, the other service is multi-point. I would sniff the traffic and see what is coming in, tagged or untagged. If it is untagged only that means there are no additional vlans arriving via tagged frames. Are you sure you are getting multiple vlans with that service?

So, if they are untagged you do not add the encapsulation commands, it would be as if they are on the same vlan on your closet switch. All you would need to do is configure a layer3 interface and ip address. AT&T's network is a layer 2 transport network.

harbor235 ;}
0
 

Assisted Solution

by:mwvwca
mwvwca earned 0 total points
ID: 37711118
From what I can see, no tagging.

so this should work then?
Router 1
ip address 172.16.5.1 255.255.255.0
ip address 172.16.2.1 255.255.255.0 secondary
0
 
LVL 32

Accepted Solution

by:
harbor235 earned 500 total points
ID: 37711164
That would be inline with two subnets operational on the same wire without tagging, agreed.

harbor235 ;}
0
 

Assisted Solution

by:mwvwca
mwvwca earned 0 total points
ID: 37711175
outstanding, I will give it a go here in a bit when I can do the least amount of disruption.  I truly appreciate your help.  I will confirm here soon.
0
 

Author Closing Comment

by:mwvwca
ID: 37732288
harbor235 ;} helped me understand exactly what I was doing wrong and walked me through to a solution.  THANK YOU.
0

Featured Post

Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

Join & Write a Comment

If you are thinking of adopting cloud services, or just curious as to what ‘the cloud’ can offer then the leader according to Gartner for Infrastructure as a Service (IaaS) is Amazon Web Services (AWS).  When I started using AWS I was completely new…
PRTG Network Monitor lets you monitor your bandwidth usage, so you know who is using up your bandwidth, and what they're using it for.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now