troubleshooting Question

Configure Cisco Layer 3 Switch Virtual Interface Routing + EtherChannel

Avatar of myfootsmells
myfootsmells asked on
Switches / HubsNetwork Architecture
4 Comments1 Solution943 ViewsLast Modified:
Going to do my best to describe the issue.  See attached network map.  The green is what I'm trying to add to my network.  The goal is so my 10.10.0.1/24 and 10.10.1.1/24 can access my 10.0.0.1/16 network (and vice versa) and of course Internet access on all the subnets.

 2015-12-31_15-10-47.jpg
My servers (10.0.0.1, 10.0.0.2) are currently connected to the Cisco L2 switch with no VLANs configured.  The Cisco L2 switch is connected to Cisco 4500-1 which is connected to ASA.

I added another Cisco 4500-2 and have etherchannel configured so it connects to Cisco 4500-1.  Connected my two Cisco 2960-X to 4500-1 and setup trunking, vlans, etc.  What I'm having a hard time figuring out is configuring the etherchannel properly.  Here are the commands I've used:

Cisco L2 Switch (same configuration for both switches)

!  Create VLANs 200
Layer2-Switch# configure terminal
Layer2-Switch(config)# vlan 200
Layer2-Switch(config-vlan)# end

!  Assign Port Gi1/1 in VLAN 200
Layer2-Switch(config)# interface Gi1/1
Layer2-Switch(config-if)# switchport mode access
Layer2-Switch(config-if)# switchport access vlan 200
Layer2-Switch(config-if)# end

!  Create Trunk Port Te1/1
Layer2-Switch(config)# interface Te1/1
Layer2-Switch(config-if)# switchport mode trunk
Layer2-Switch(config-if)# switchport trunk native vlan 200
Layer2-Switch(config-if)# end
 

Cisco Layer 3 Switch

! Enable Layer 3 routing
Layer3-Switch(config) # ip routing

!  Create VLANs 200 and 210 in the switch database
Layer3-Switch# configure terminal
Layer3-Switch(config)# vlan 200
Layer3-Switch(config-vlan)# end
Layer3-Switch(config)# vlan 210
Layer3-Switch(config-vlan)# end

!  Create Trunk Ports Te1/3 Te1/4
Layer3-Switch(config)# interface Te1/3
Layer3-Switch(config-if)# switchport mode trunk
Layer3-Switch(config-if)# switchport switchport access vlan 200
Layer3-Switch(config-if)# switchport trunk native vlan 200
Layer3-Switch(config-if)# exit

Layer3-Switch(config)# interface Te1/4
Layer3-Switch(config-if)# switchport mode trunk
Layer3-Switch(config-if)# switchport switchport access vlan 210
Layer3-Switch(config-if)# switchport trunk native vlan 210
Layer3-Switch(config-if)# end

!  Configure Switch Vlan Interfaces (SVI)
Layer3-Switch(config)# interface vlan200
Layer3-Switch(config-if)# ip address 10.10.0.1 255.255.255.0
Layer3-Switch(config-if)# no shut

Layer3-Switch(config)# interface vlan210
Layer3-Switch(config-if)# ip address 10.10.1.1 255.255.255.0
Layer3-Switch(config-if)# no shut

!  Configure default route towards ASA firewall
Layer3-Switch(config)# ip route 0.0.0.0 0.0.0.0 10.0.0.250

! Configure Etherchannel on Cisco 4500-2
Layer3-Switch(config)# int range Te1/1 - 2
Layer3-Switch(config-if-range)# no switchport
Layer3-Switch(config-if-range)# no ip address
Layer3-Switch(config-if-range)# channel-group 4 mode active
Layer3-Switch(config)# int channel-group 4
Layer3-Switch(config-if)# ip address 10.0.0.240 255.255.0.0

! Configure Etherchannel on Cisco 4500-1
Cisco-4500-1-Switch(config)# int range Te1/7 - 8
Cisco-4500-1-Switch(config-if-range)# no switchport
Cisco-4500-1-Switch(config-if-range)# no ip address
Cisco-4500-1-Switch(config-if-range)# channel-group 4 mode active
Cisco-4500-1-Switch(config)# int channel-group 4
Cisco-4500-1-Switch(config-if)# ip address 10.0.0.241 255.255.0.0

Sorry if this is unclear.
ASKER CERTIFIED SOLUTION
rowansmith

Our community of experts have been thoroughly vetted for their expertise and industry experience.

Join our community to see this answer!
Unlock 1 Answer and 4 Comments.
Start Free Trial
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 1 Answer and 4 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros