Need help adding a VLAN to Cisco Catalyst 3850

Hello - we need help adding a VLAN to our network.  In short, we have to wait 2 weeks for Cisco to help us, due to a support lapse.  So we're seeing if we can get this done without them, with the help of a guru.  We currently have 6 VLAN's (1 - 6) that have been created by either Cisco or VMWare, over the years.  we need another one now - 7.  We are using Catalyst 3850's.  

thanks for your help
Damian GardnerIT AdminAsked:
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

x
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Andy BartkiewiczNetwork AnalystCommented:
config t
vlan 7
name "vlan name"
exit
interface vlan 7
ip address "Vlan Gateway IP and mask"
exit
exit
wr
0
Andy BartkiewiczNetwork AnalystCommented:
Also, if you use a DHCP server that is on a different vlan you would need the following command on the vlan interface
ip helper "dhcp server ip"
0
Ricardo Jose Jr. PalmaNetwork and Security ConsultantCommented:
Hi,

Don't forget to apply it to the interface you want the vlan to operate.

sample:

interface GigabitEthernet0/10
       switchport access vlan <vlan number>
       switchport mode access
       no cdp enable
       spanning-tree portfast
0
Determine the Perfect Price for Your IT Services

Do you wonder if your IT business is truly profitable or if you should raise your prices? Learn how to calculate your overhead burden with our free interactive tool and use it to determine the right price for your IT services. Download your free eBook now!

Hello ThereSystem AdministratorCommented:
First, create a VLAN:
switch#configure terminal
switch(config)#vlan 7
switch(config-vlan)#name NewVlanName

Second, assign a VLAN to a port:
switch(config)#interface FastEthernet0/22 (just example)
switch(config)#switchport mode access
switch(config)#switchport access vlan 7

You might also need to configure InterVLAN Routing.
switch(config)#ip routing
See more here.
1

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Damian GardnerIT AdminAuthor Commented:
ok great - thanks for everyone's input.  When you say assign the vlan to a port - do you mean as part of setting the vlan up on the switch? or simply for whatever device will be using the vlan after it's set up?  thanks again
0
Ricardo Jose Jr. PalmaNetwork and Security ConsultantCommented:
Hi,

Yes, as part of the vlan setting on the switch.
For the devices, if your statically assigning the ip address, you need to configure the subnet for the vlan 7.
0
Damian GardnerIT AdminAuthor Commented:
ok got it.  the VLAN setup seems pretty straight-forward.  My goal for this VLAN is to segregate XP clients on the network from the rest of the network.  Will it be possible to only allow certain types of network access thru to our main VLAN, and limit everythiung else (thinking viruses and hackers, etc)?  In other words - can a "small hole" be opened up to our main VLAN from this new VLAN, that only allows an XP machine on this new VLAN to access our network storage server, for example - or access a printer on the network - but nothing else?  

Thanks guys
0
Andy BartkiewiczNetwork AnalystCommented:
Yes, use an access-list, but if you are not familiar with networking you should let Cisco help you with this.
0
Damian GardnerIT AdminAuthor Commented:
ok - yeah I figured I would let Cisco help on this.  just wanted to know in general.  So I could connect the two VLANs, but then limit the communication thru an access-list.  ok great.  thank you
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
VLAN

From novice to tech pro — start learning today.