Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Extreme Summit 250E-48p Voice VLAN Config

Posted on 2014-07-25
2
Medium Priority
?
83 Views
Last Modified: 2016-02-01
Hi all,

Hoping someone can help, I am no expert with Extreme.

We have an Extreme Summit 250E switch with multiple VLAN's setup. These VLAN's all work as expected only they can all talk to one another meaning anyone with some networking knowledge could easily bypass the security.

I believe this behavior is due to the Voice VLAN (ID 100) being tagged on all ports meaning the devices on the individual VLAN's can also access and communicate across VLAN 100. My problem here is that the phone system provides the DHCP addressing for the networks so therefore all devices need to communicate with this network.

Am i right in thinking I only need to tag the port that the phone system is connected to into each VLAN and that having VLAN 100 tagged for all ports is the cause of the issue?

Sorry if that is a bit vague, pickled head at the moment.
0
Comment
Question by:Hallidays
2 Comments
 
LVL 39

Accepted Solution

by:
Aaron Tomosky earned 2000 total points
ID: 40220874
I'm also no extreme expert but I know a few things about layer 2 and 3 switching.

I'll assume you have a subnet for each vlan, if not let me know. At l2 a vlan/subnet can go all over the subnet. To leave the subnet/vlan you need a gateway/layer3/router. If the gateway of your workstation knows about the servers vlan, it will allow workstations to talk to the servers.

There are only 3 scenerios:
1. There is no known route, can't talk
2. There is a known route, all can talk
3. There is a known route but you have setup an acl (access control list) that blocks the traffic.

So it's probably not that vlan100 is on all ports, it's probably that your gateway has all the vlans setup and doesn't have any acl stopping traffic. Try a tracert and see what hops are involved and you will see for sure.
0
 
LVL 1

Author Comment

by:Hallidays
ID: 40255275
Sorry for not replying, i didn't know anything had been written. Thanks for the advice, i will take a look.
0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Arrow Electronics was searching for a KVM  (Keyboard/Video/Mouse) switch that could display on one single monitor the current status of all units being tested on the rack.
This article will show how Aten was able to supply easy management and control for Artear's video walls and wide range display configurations of their newsroom.
Exchange organizations may use the Journaling Agent of the Transport Service to archive messages going through Exchange. However, if the Transport Service is integrated with some email content management application (such as an anti-spam), the admin…
Despite its rising prevalence in the business world, "the cloud" is still misunderstood. Some companies still believe common misconceptions about lack of security in cloud solutions and many misuses of cloud storage options still occur every day. …
Suggested Courses

926 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question