Solved

Port with voice and data vlan

Posted on 2014-03-26
7
681 Views
Last Modified: 2014-03-27
I have my port configure for voice vlan 100 (10.10.100.0/24) and data vlan 200 (10.10.200.0/24). A worker plugged his PC in with 10.10.10.10/24 and he was able to access a device on 10.10.10.0 network. I am not sure how this works.
I thought that when you configure a port with the specific vlan and if you don't know the vlan (or subnet of the vlan), you cannot access the port.
0
Comment
Question by:leblanc
  • 4
  • 3
7 Comments
 
LVL 11

Accepted Solution

by:
Miftaul earned 500 total points
ID: 39957835
Does 10.10.10.0/24 subnet resides in vlan 200.

You can have multiple subnets reside within a vlan, but only one subnet can communicate outside the vlan.

Here the person added his host with ip 10.10.10.10/24, and he also connected other devices on the same vlan  the switchport is in with this subnet.  say another device is on 10.10.10.20.  now communication will word just fine between 10.10.10.10 and 10.10.10.20.
0
 
LVL 1

Author Comment

by:leblanc
ID: 39957845
no. 10.10.10.0/24 is supposed to be on vlan10 and I did not configure the port to vlan10 yet. Is this strange? In my network, I try to have one subnet per vlan
0
 
LVL 11

Expert Comment

by:Miftaul
ID: 39957928
You mean the host 10.10.10.10 in vlan 200 is communicating with the same subnet in vlan 10. Could it be that the person actually is communicating with another host he put in vlan 200.
Elso it could be that there are misconfigurations in your switch. Make sure the link between the switch is trunk and not access.
0
NFR key for Veeam Backup for Microsoft Office 365

Veeam is happy to provide a free NFR license (for 1 year, up to 10 users). This license allows for the non‑production use of Veeam Backup for Microsoft Office 365 in your home lab without any feature limitations.

 
LVL 1

Author Comment

by:leblanc
ID: 39957960
ok so this is what really happened, his PC has 10.10.10.10 connected to port 1 (configured for vlan 200) and his server (10.10.10.1) connected to port 2 (configured for vlan 200 as well). His PC then can communicate with his server. Not sure how this works.
0
 
LVL 11

Assisted Solution

by:Miftaul
Miftaul earned 500 total points
ID: 39958007
Thats what i thought. Vlan is a layer2 technology.

You can have any number of layer3 subnets within a vlan. But you can only have one ip address configured for the vlan interface. That specific subnet within the vlan can communicate outside of the vlan

Here host and the server in subnet 10.10.10.0/24 are residing in vlan200, communication within the vlan is allowed and they can communicate between them. But when these devices tries to communicate outside of vlan 200, its dropped. Because these hosts doesnt know how to reach vlan interface ip which is the default gateway and thats a different subnet 10.10.200.0/24
0
 
LVL 1

Author Comment

by:leblanc
ID: 39959288
"You can have any number of layer3 subnets within a vlan". This is key for me to understand here. Thank you
So when 10.10.10.0 tries to communicate with 10.10.100.0/24 for example, it will be dropped because vlan200 is assigned to 10.2.200.0/24. Correct?
0
 
LVL 11

Expert Comment

by:Miftaul
ID: 39959301
You got it exactly, correct.

Please post here if you have any other confusions.
0

Featured Post

Free learning courses: Active Directory Deep Dive

Get a firm grasp on your IT environment when you learn Active Directory best practices with Veeam! Watch all, or choose any amount, of this three-part webinar series to improve your skills. From the basics to virtualization and backup, we got you covered.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Cisco Policy based routing 2 49
fb messenger security and privacy 15 97
Connect two buildings 6 47
Stacked switch question 7 40
This tutorial will go through the steps required to write a script that will back up the configuration settings of a HP-ProCurve switch. You will need to get the following things to follow this tutorial: Telnet Scripting Tool e.g. TST10.exe …
In the world of WAN, QoS is a pretty important topic for most, if not all, networks. Some WAN technologies have QoS mechanisms built in, but others, such as some L2 WAN's, don't have QoS control in the provider cloud.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

860 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question