Cisco Switches :: Ip Address To Vlan In SG300 Switch
Feb 3, 2013
i have a SG300-52 Switch, route mode is enabled, and it is using the latest IOS.I have created 4 Vlans in this switch, till this point its OK, but once i try to give ip addres to the created Vlan either from the GUI or CLI the switch is not responding. i have to go and manually reset the switch using a pin.
View 8 Replies
ADVERTISEMENT
Mar 4, 2012
i was trying to set up a new SG300-52 L3 switch for switching and Vlan. The problem is that the vlans on this switch cannot get their DNS resolved. Probably a stupid thing i can't get to see, but i think it is a simple solution given switchin is not my expertise.So my setup:
- ISP Wan router: LAN ip 10.0.0.1, DMZ: 10.0.0.2 -> i have to use this router for ISP support. But it suckes, that's why we use own router for firewall, port forwarding etc.
- Nice Router: WAN: 10.0.0.2, LAN: 192.168.1.1
- SG300 L3 switch
This works. I can ping switch, nice router, ISP router and google's ip from VLAN 5.But i cannot ping google using host name. From within SG300 i can. So it has something to do with SG300 not doing DNS right.My Client on VLAN 5 has ip 10.1.1.5 / 24, default gateway and dns pointing to switch: 10.1.1.1.I have put an entry in DNS servers in SG300: 192.168.1.1 active (pointing to Nice router). On client leave default gateway pointing to switch. But put DNS server : 192.168.1.1
View 11 Replies
View Related
Dec 13, 2011
I am trying to assign static ip address on vlan 1 interface , the model no of switch is SG300 & the firmware version is 1.1.2.0 .But whenever I type the IP address & press enter , a question is popped up asking for confirmation (switch0d851f(config-if)#ip address 1.1.1.1 255.0.0.0.
Please ensure that the port through which the device is managed has the proper settings and is a member of the new management interface.Would you like to apply this new configuration? (Y/N)[N] N )
View 3 Replies
View Related
Aug 7, 2011
Any snmpset commands to add, modify and delete vlan table entries on SG300-10 switches? I checked url... however this information is apparently only valid for catalysts. The latest firmware is installed and the provided MIB files are used.
View 8 Replies
View Related
Mar 25, 2012
I want to set up a vlan only for the wifi APs and wifi clients on my network. They can't access to any server, only internet acces. I already implement this configuration and its working, but now I want to allowed a couple of laptops to connect to servers in other vlan. what should I do? Should I do it using Mac address of laptops or IP?
View 9 Replies
View Related
Jan 26, 2012
I am using a couple cisco sg300 28P switches along with a sonciwall firewall/router. The sonicwall was already in place and working so they didnt want to replace it. I understand how to configure the vlan on the sonicwall, but could use some info on the cisco. I would basically like to create 3 vlans, 1 default for management, 2 for pc's on lan, and 3 for the cisco spa504g phones/'voip. Would i just go into the vlan managment, configure the 2 new vlans and give them two id's? These offices have one network drop, so the phones and pc's will be sharing the switch ports, however the phones have a setting to configure the vlan id so they know which one theyre on. Is there anything i need to do after that? I want to make sure that vlan 3 has the highest priority becuase its voice, is there some qos configurations i need to make on that switch as well? Also, the port that links the two cisco swtiches together, does that need to be set as "trunk" port? I understand what vlans are, but its just the first time ive run into these cisco models. .
View 0 Replies
View Related
Apr 22, 2012
Before I launch into this can I say that I am very much a novice with regards to Managed Switches and their configuration. I have the following equipment which I have connected to the switch: [code] All of the above are on subnet 255.255.255.0.All of the above communicate with each other during normal operation.Our client is connecting to the switch but his requirement is for his system to "see" the PLC Comms Card as follows:IP: 10.0.3.61 on Subnet 255.255.252.0 .
Using the Internet Explorer interface connection I have created an additional VLAN (ID 2) on Port 10 with the intention of using this as the connection to the client ( I assume there will be further settings required to route the PLC connection to this port) but every time I try to assign the IP and Subnet values and click "APPLY" the changes are not made and the connection appears to hang leading me to reboot the switch.I have connected to the switch via console and changed the mode to Layer 3. I also assume that it is OK for the three pieces of equipment to remain on the default VLAN. How I should setup this VLAN and ultimately achieve my goal.
View 5 Replies
View Related
Mar 28, 2013
I am facing an issue to setup what I initially called simple network but still unable to put it together.On SG300-20 I want to setup 4.3 of the vlan are to separate users in to different groups and to secure data confidentiality.1 is for the NAS. All users on the 3 vlans must access the NAS vlan.All user should have access to internet via SG300 through the ISP provided router. How to configure this, I have every little knowledge of switching and routing? And the routing seems to be the issue I am encountering because I am able to create the VLANs and assign static IP address to them but not able to get them talk to each other. I use each vlan ip as gateway on each port assigned. [code]
View 13 Replies
View Related
May 10, 2013
I want to use Multicast TV VLAN with my SG300-10 to join Multicast Groups in different Data VLAN's. It's working fine, but the problem is that it isn't possible to add all the Multicast Groups to the Multicast VLAN because each TV channel use other groups. For me it's only to handle if I can use wildcards to add a specific range of multicast traffic to the Multicast TV VLAN. Is that possible with that Switch?
View 1 Replies
View Related
Feb 19, 2013
i purchased 300-28 how it config for stp and trunk
View 2 Replies
View Related
Mar 31, 2012
We have recently purchased a SG300 to break up our network which most consists of virtual machines via Bridged networking on network machines. I have created successfully Vlans and the physical machines are capable of communicating across the different subnets that I have created via the SG300 however the Virtual machines can no longer be reached.
View 2 Replies
View Related
Jun 6, 2012
I have a connection on IP 192.168.1.21, Subnet 255.255.255.0 - this is on the default VLAN1 on the switch. I need to route this to IP 10.0.3.101, Subnet 255.255.252.0 - which is set up on VLAN2 on the switch. I have set the switch to Layer 3 via console.
how I setup this route? I am use the Browser based interface.
View 15 Replies
View Related
Sep 11, 2012
I am wondering what the best way to separate a network, both data, on a cisco SG300. I do not want network 1 to able to communicate with network 2 or vice versa. I have one server for DHCP for network 1, 192.168.1.X. I would like network 2 to have ip of 10.0.0.X, can the cisco SG300 do dhcp for this vlan?
View 1 Replies
View Related
Jul 13, 2011
Using a sg300-52 switch I created two VLANs that share a port for access to the internet. All original devices added to the VLANs are functioning correctly so I have to beleive the VLANs are set up correctly. I added a new desktop and an old laptop to the VLAN and neither worked. I was able to get the desktop to work by enabling VLAN tagging in the network adapter. The laptop is 5 years old and it does not have any such setting in network adapter. There are 2 other devices that share the same port with the laptop and they both function properly. My conclusion is that the laptop does not support VLAN tagging. Is there someway to configure the switch to account for this?
View 6 Replies
View Related
Mar 25, 2012
I set an SG300 switche in layer 3 mode with 3 vlans.I need to give IPs to a whole vlan machines. Do the switch have a DHCP server per vlan? How to configure this?
View 3 Replies
View Related
Mar 17, 2012
configure my new SG300-28P. When I have started the switch, I have specified a new password and enabled telnet in order to setup the switch in Layer 3 mode.
After a restart, the switch took its IP address from a DHCP server. When I try to set a static IP address (192.168.2.1), I receive the following error message: Duplicated IP interface on the same subnet.
The IP address 192.168.2.1 is not used by any device within the network. For information, the message doesn't appear when the switch is in Layer 2 mode.
why I can't change the IP address of default vlan in Layer 3 mode ? All I can do is set the IP address to static or dynamic.
For test purpose, I have added 2 vlans. But I wasn't able to route traffic between vlan. how to configure the switch to route traffic between vlan?
find below details informations about my VLANs.
- Default (VLAN ID 1)
IP Address : 192.168.2.1
Subnet : 255.255.255.0
[Code].....
View 3 Replies
View Related
Sep 4, 2011
Any snmpset commands to modify port vlan membership on SG300-28 switches? I checked [URL] however this information is apparently only valid for catalysts.
The latest firmware is installed and the provided MIB files are used.
View 5 Replies
View Related
May 15, 2013
we have an SG300 latest 1.3 firmware, we have it acting as our DHCP server, we have a 10.10.1.x range, 10.10.3.x range, and 192.168.24.x range, they are all on seperate VLANs and all can talk to each other which is what we want. However we have someone who wants to use the 192.168.1.x range to add IP cameras to our network using there own switch. I figured I'd just setup our server to do DHCP etc and it would communicate with the 10.10.1.x range of IP addresses no problem. It turns out the SG300s can't do DHCP for that range, so if he has all static address on the 192.168.1.x range how can i setup inter VLAN communication so we can talk to that range?
View 1 Replies
View Related
Jul 25, 2012
I am having a problem with 6941 phones on a SG300.When connected Smartport assignes the native and tagged voice vlan correctly, however the phone connects to the native vlan. After running a few tests I have found it only happens when the voice vlan is also the default vlan, though this has only been tested with the default left as VL1.I can get to the phone on the native vlan, it picks up an address via dhcp, and the Operational VLAN ID is shown as 4095.Manually configuring the port as a trunk with the native and tagged voice vlans gives the same result.CDP properties for the ports show the voice vlan as correctly advertised.This happens on multiple phones/ports.The 7962 phones on the same switch work as expected.If I set the voice vlan to be something other than the default vlan 1, a vlan with dhcp available, the phone uses the configured, tagged vlan as expected and the Operational vlan shown on the phone is correct.The switch is running 1.2.7.76 I have a test setup with a number of 7900 and 6900 series phones running on a SF300 and have tested all phones as working if the voice vlan is not on the default. I intend to test with the voice vlan as the default shortly to confirm it is not an issue with the specific switch and discover if it occurs on more than just the 6941.
View 1 Replies
View Related
Apr 14, 2013
I have a Cisco SG300 small business switch and 541 APs. There are 2 VLANs in our network. One must be limited by bandwidth. How to configure vlan rate-limiting on SG300? And describe CIR & CBS.
View 1 Replies
View Related
Mar 22, 2012
why i can not found ip router setting by main menu? the sg300-28 can not support ip router command?mor informations,see my img. If sg300-28 can not support ip router command,what i can do it that communicate by multi-Vlan ?
View 2 Replies
View Related
Dec 10, 2012
I am having a problem with 6941 phones on a SG300.
When connected Smartport assignes the native and tagged voice vlan correctly, however the phone connects to the native vlan. After running a few tests I have found it only happens when the voice vlan is also the default vlan, though this has only been tested with the default left as VL1.
I can get to the phone on the native vlan, it picks up an address via dhcp, and the Operational VLAN ID is shown as 4095.Manually configuring the port as a trunk with the native and tagged voice vlans gives the same result.
CDP properties for the ports show the voice vlan as correctly advertised.This happens on multiple phones/ports.The 7962 phones on the same switch work as expected.
If I set the voice vlan to be something other than the default vlan 1, a vlan with dhcp available, the phone uses the configured, tagged vlan as expected and the Operational vlan shown on the phone is correct.
The switch is running 1.2.7.76 I have a test setup with a number of 7900 and 6900 series phones running on a SF300 and have tested all phones as working if the voice vlan is not on the default. I intend to test with the voice vlan as the default shortly to confirm it is not an issue with the specific switch and discover if it occurs on more than just the 6941.
View 1 Replies
View Related
Aug 31, 2012
I have two Cisco SG300-20 switches. Both of them are configured in L3 mode. They have several VLAN's configured.
When I reboot my switches some VLAN membership settings are lost! I have already saved the settings over and over before rebooting, and even tried to save it to the backup memory and so on. Say for example I have changed port 9 to 14 from VLAN 101 to VLAN 105. I save the configuration, reboot the switch. And then the changes are lost. This is a big problem, because servers and my iSCSI network loose connectivity. They already have the latest firmware. This issue was there three firmwares before.
This issue pop-ups when I have a power loss, or I need to reboot/shutdown them manually. It may be off-topic but I also have the feeling that the performance of the switches goes down during uptime. A reboot solves the performance issue. I don't have a performance benchmark, but I can notice it on the performance transfer rate between clients and servers.
View 4 Replies
View Related
Aug 21, 2012
I am using several SG300-28 Switches with firmware version 1.1.2.0.I have dynamic VLAN enabled. As RADIUS server I am using free radius 2.1.12.Authentication is only based on the MAC address. (I configured that on the switches)On the switches I created three VLANs. VLAN100 for the authenticated clients, VLAN200 for Management interface and VLAN300 as Guest VLAN. After a wrong authentication the clients should be put into this Guest VLAN immediately (I configured this on the switches). I am using Windows XP and Windows 7 clients in my network. I did not configure any EAP settings because I just wnat to use the MAC address.
In most cases the dynamic VLAN assignment and authentication is working fine. The switch log says that the client is authenticated and the same I can see on free radius log. But in some (rare) cases the client is rejected. The CISCO log says "MAC aa:bb:cc:dd:ee:ff was rejected on port ge17" but when I look at the free radius log then this MAC address was successfully authorized.
The problem is that the client gets an IP address based on the Guest VLAN300 but after that the switch seems to "switch" the VLAN on the port and then the client is authenticated correctly on the right VLAN but the client does not request a new IP on the new VLAN. If I unplug and re-plug the LAN cable in most cases the client get the correct VLAN and the correct IP. This is happening randomly on nearly all my PCs.
Do I have to set some timers higher ? I don't think it is a problem between switch and RADIUS but a problem between communication of the host and the switch.
View 14 Replies
View Related
Feb 16, 2012
I did the config below but unable to obtain the ip from the subnet scope 10.10.9.0. The switch is in the layer 3 mode.
no spanning-tree
vlan database
vlan 2
exit
voice vlan oui-table add 0001e3 Siemens_AG_phone________
voice vlan oui-table add 00036b Cisco_phone_____________
voice vlan oui-table add 00096e Avaya___________________
[code]....
View 1 Replies
View Related
Aug 10, 2012
I have 2 SG300 switches and all I want is to propagate VLAN info from one to other. I do not have computers with GVRP compliant NICs, so I dont want that auto registeration functionality on access ports. I want VLAN prop via trunks and switchport mode access on access ports just like VTP. I have read on cisco docs that this functionality is provided with GVRP Mode fixed, but there are only 2 modes that I can see on SG300 are Normal and Forbidden. Trunk configured correctly, gvrp is enabled globally and on port, ports are up and functional, tried different combinations of checking and unchecking boxes of dynmic vlan creation and enable registeration on both ends but no joy. When I create a vlan from one, it doesnt propogate to other.
View 1 Replies
View Related
Jul 27, 2011
We have recently purchased a Cisco SG300 and have been configuring it. [code] The VLANs have ACLs set up to prevent any communication between the Holly and Tempo VLANs (and their associated WAN VLANs).Each VLAN has a WAN available for it's use, which connects to external networks (including the Internet).In order to facilitate this, we have set up all the necessary ACLs and routes and confirmed that this all works.However, the problem comes when we assign the static routes that specify the default gateways.We add the two static routes below:
-0.0.0.0 next hop 10.10.200.254 metric 1
-0.0.0.0 next hop 192.168.200.254 metric 1
In this case, only one of the VLANs has WAN access. It is either Holly or Tempo (it can be either if the order the static route is added is changed).What we need is to force Holly to use Holly WAN and Tempo to use Tempo WAN, but we cannot see a way of doing this.Effectively, we want the following static routes: [code]
View 2 Replies
View Related
Feb 18, 2012
We connected 4 wireless access points (AP541N-E-K9) to an SG300-10P switch.We want to be sure that no wireless clients can alter settings to the network by connecting to any of the networking devices. We also want that no wireless devices (except a few) can connect to computers that are on the wired network. I'm new to configuring networking devices so how to set up the switch for this.We already added all the MAC-adresses of all the wireless devices (that are allowed to use the wireless network) to the access points.
View 3 Replies
View Related
Feb 26, 2013
My organization wishes to host a LAN gaming event. The setup I have in mind involves a 24-port switch for connecting all the player computers and having that switch connected to a smaller "core" switch which has the the game server and router connected to it. I'd like to know if I can set things up as follows...
SG200-26 with ports 1-24 on seperate VLANs so they cannot talk to eachother. I'd then like ports 25 and 26 to be an aggregated (for bandwidth and redundancy) trunk port to carry all 24 VLANs plus an additional management VLAN (ex. VLAN 100) that will be used for accessing the switch. I'd like those aggregated trunk ports to connect to an SG300-10 "core" switch which will be connected to the game server and to a router for internet access.
I'd like the ability to have two network connections from the game server to the switch, one on the management VLAN and one on a different VLAN (ex. VLAN 50) that will be accessed by the players (ports 1-24 on the SG200-26). The core switch needs the ability to perform restricted inter-VLAN routing, in that it doesn't allow VLANs 1-24 to talk to eachother but they can talk to the server's VLAN but only through specific service ports (ex. port 12345, 12346). Is this possible?
Furthermore how would I configure the SG300-10 to allow VLANs 1-24 to talk to VLAN 50, but not themselves or VLAN 100. As well, I'll probably have the router on it's own VLAN (ex. VLAN 60) and allow VLANs 1-24 to access it but only through HTTP port 80 for web access.
View 9 Replies
View Related
Nov 7, 2011
At our office we use seven Cisco 300 Series Small Business Switches. One main switch in the server room and one in each room. They work great! But I’m having difficulties getting the Auto Voice VLAN to work correctly. In fact, it seems to works straight away on a PoE model, but not on the non-PoE models.
Switch (main server room):
Cisco SG 300-28 (PID:SRW2024-K9)-VSD
Switches (one in each room):
Cisco SG 300-10 (PID:SRW2008-K9)-VSDCisco SG 300-10 (PID:SRW2008-K9)-VSDCisco SG 300-10 (PID:SRW2008-K9)-VSDCisco SG 300-10 (PID:SRW2008-K9)-VSDCisco SG 300-10 (PID:SRW2008-K9)-VSDCisco SG 300-10P (PID:SRW2008P-K9)-VSD
All these switches use firmware v1.1.1.8. The switches in each room are connected to the central switch by Link Aggregation. The main switch is configured in Layer 3 mode and all the others in Layer 2 mode. We have a lot of VLAN’s configured. For this problem allow me to describe only the two that are relevant.
VLAN 102 - Internal Network (Clients)VLAN 104 - Internal Network (Voice) The switches on each room are mainly used for clients, printers and IP phones. The clients and printers should operate in VLAN 102. The IP phones should operate in VLAN 104. For this to work I have the 10 port switches configured as following.
GE1 – Trunk – 102U;104TGE2 – Trunk – 102U;104TGE3 – Trunk – 102U;104TGE4 – Trunk – 102U;104TGE5 – Trunk – 102U;104TGE6 – Trunk – 102U;104TGE7 – Trunk – 102U;104TGE8 – Trunk – 102U;104TGE9 – Trunk – 1P (LAG 1, with 1U;102T;104T)GE10 – Trunk – 1P (LAG 1, with 1U;102T;104T)
The network is fully routable. A DHCP Server is available. Each VLAN uses DHCP relaying. If we statically assign a VLAN to a port, that just works fine. Auto Voice VLAN is enabled with VLAN ID 104. All switches are configured the same. But this is what occurs…
When I connect an IP phone on the SG300-10P the IP phones are assigned to the Voice VLAN ID 104. If I would connect a desktop to that same port it is assigned to VLAN ID 102. Exactly as it should.But when I connect an IP phone on a SG300-10 the IP it is assigned to VLAN ID 102. But I also noticed that in some cases they are assigned to VLAN ID 1 and don’t get an IP Address. That depends in which order I change settings. The port its VLAN membership is then even changed to 1P. Although the port is recognized as an “IP Phone” by the smartport feature. I have noticed it does make difference if I modify the smartport macro and change the native_vlan paramater from "1" to "let's" say "102". That seems to affect it. Of course it may be just coincidence. What am I doing wrong? How should it work?How should you actually configure each port on a switch? (trunk?, Tagged/Untagged VLAN?)If you do not use Telephony OUI. Do you still need to configure the macros on the smartport defenitions?
I have tried about everything. I have also tried Telephony OUI, but it doesn't make any difference. I just can't get it to work properly on the non-PoE switch.
View 6 Replies
View Related
Apr 24, 2011
What i am trying to achive is allow only specific mac addresses on switch and deny all others by using MAC ACE. What should i do? First deny any any and then permit or ?
View 1 Replies
View Related
Aug 1, 2011
model: SG300-52
version: 1.1.0.73
Switch is running in layer 3 mode.How can I turn off mDNS broadcast coming from the vlan interface on the switch.Getting mDNS broadcast from switch every 5 seconds.
View 1 Replies
View Related
Jan 7, 2013
In troubleshooting another issue I set up another SG300 on the same VLAN as my SG300-28P and then setup a Monitor Port on it to see what Broadcasts I was getting.
Low and behold the SG300-28P is sending out quite a few Broadcast Packets. Most of them are the same, ARP Request for its Default Gateway Address. Others are for a few other AD Servers on our network.
Arp Entry Age Out is set to the default of 600000 with "Normal Age Out" selected. Though in a few minutes of logging Packets, there were almost 7,000 broadcasts from it for the its Gateway Address. The Gateway Address that it has is the IP of a Cisco ASA 5510. Is there some TTY on the ARP entry like DNS?
This is the Wireshark Packet. The Frame check sequence is Bad, what can cause that?
No. Time Source Destination Protocol Length Info 1737 67.457763000 Cisco_a9:93:84 Broadcast ARP 64 Who has 10.1.0.3? Tell 10.1.2.3 [ETHERNET FRAME CHECK SEQUENCE INCORRECT]
Frame 1737: 64 bytes on wire (512 bits), 64 bytes captured (512 bits) on interface 0 Interface id: 0 WTAP_ENCAP: 1 Arrival Time: Jan 8, 2013 14:44:06.952611000 Pacific Standard Time [Time shift for this packet: 0.000000000 seconds] Epoch Time: 1357685046.952611000 seconds [Time delta from previous captured frame: 0.000106000 seconds] [Time delta from previous displayed frame: 0.000106000 seconds] [Time since reference or first frame: 67.457763000 seconds] Frame Number: 1737 Frame Length: 64 bytes (512 bits) Capture Length: 64 bytes (512 bits) [Frame is marked: True] [Frame is ignored: False] [Protocols in frame: eth:arp] [Coloring Rule Name: ARP] [Coloring Rule String: arp]Ethernet II, Src: Cisco_a9:93:84
[code]....
View 6 Replies
View Related