durango099
asked on
vLAN configuration question
Hello Experts
I have a client that is asking for something I do not know if it's possible - I know the easy way, but this seems to be stuck in the mud like a nasty mule.
Default vLAN - all data equipment (gateway, servers, printers)
vLAN 2 - VoIP
vLAN 3 - WiFi
PaloAlto firewall - EdgeSwitch48 (ES-48-750W) all linked with 10gb GBIC's (unknown if trunked or just uplinks)
The client refuses to use the L3 of the switches to setup the vLAN's and ONLY wants the firewall to do the routing of IP traffic between the vLAN's - the issue seems to be a lack of routing as I can not ping from a device hard coded on either vLAN to the other vLAN.
All ports are included & untagged in vLAN 1, and included & tagged in vLAN 2 - I could care less about vLAN 3's function, but it is not working either.
The DHCP server with additional scope for VoIP is setup with OPT 43 settings
So, the question is; Can this be done well without using the IP Routing functions of the L3 switches?
I have a client that is asking for something I do not know if it's possible - I know the easy way, but this seems to be stuck in the mud like a nasty mule.
Default vLAN - all data equipment (gateway, servers, printers)
vLAN 2 - VoIP
vLAN 3 - WiFi
PaloAlto firewall - EdgeSwitch48 (ES-48-750W) all linked with 10gb GBIC's (unknown if trunked or just uplinks)
The client refuses to use the L3 of the switches to setup the vLAN's and ONLY wants the firewall to do the routing of IP traffic between the vLAN's - the issue seems to be a lack of routing as I can not ping from a device hard coded on either vLAN to the other vLAN.
All ports are included & untagged in vLAN 1, and included & tagged in vLAN 2 - I could care less about vLAN 3's function, but it is not working either.
The DHCP server with additional scope for VoIP is setup with OPT 43 settings
So, the question is; Can this be done well without using the IP Routing functions of the L3 switches?
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Since the client is unwilling to allow me access to get into the Palo Alto or EdgeSwitch I can only assume.