Cisco Switching/Routing :: GVRP Not Working On SG300-28
Feb 28, 2012
I have three Cisco SG300-28 switches. I setup a test lab environment with a core (server) switch in Layer 3 mode and the rest are (clients) in Layer 2 mode. As I understand, these switches doesn't support VTP, only GVRP. And GVRP works the same with VTP. Whenever you create VLANs on the core or main switch, other switches will learn from the core switch and no VLAN creation for the client switches will be made. (Hope I got it right. I guess GVRP is more complicated than VTP). I want to use GVRP to create VLANs on the main switch so that I won't be doing it all over on the other switches. The following is my (so far) configuration through CLI only:I haven't use the web GUI. My SW version is 1.1.2.0.
1. I already enabled the GVRP globally.
2. I configured GE 12 & GE 24 as TRUNK ports for the core switch that connects both switches, I also configured GE 12 ports for both the client switches. All other ports are in ACCESS mode. (I am connected to GE 2 port)
3. I enabled GVRP on the TRUNK ports only for all switches.
4. I allowed all vlans on the TRUNK ports. (#switchport trunk allowed vlan add all)
5. All TRUNK ports registration mode is NORMAL and dynamic vlan creation is enabled on all trunk and access ports.
6. I created 3 VLANs without configuring its IP Addresses:
-vlan 2 = MGT
-vlan 3 = IT
-vlan 4 = MKTG
I don't know if I missed something on the configuration or the connection.
1. Is it necessary to enable all switches to layer 3 mode? Or depends on the network setup? Does this affect the GVRP?
2. Does switching ports to TRUNK mode means they are already 802.1q ports by default? Because I can't configure TRUNK ports to 802.1q (#switchport encapsulation dot1q) config like other switches. [code]
View 1 Replies
ADVERTISEMENT
Aug 10, 2012
I have 2 SG300 switches and all I want is to propagate VLAN info from one to other. I do not have computers with GVRP compliant NICs, so I dont want that auto registeration functionality on access ports. I want VLAN prop via trunks and switchport mode access on access ports just like VTP. I have read on cisco docs that this functionality is provided with GVRP Mode fixed, but there are only 2 modes that I can see on SG300 are Normal and Forbidden. Trunk configured correctly, gvrp is enabled globally and on port, ports are up and functional, tried different combinations of checking and unchecking boxes of dynmic vlan creation and enable registeration on both ends but no joy. When I create a vlan from one, it doesnt propogate to other.
View 1 Replies
View Related
Aug 28, 2011
I setup switch in layer 3 mode. I have a access port in vlan 10 and a access port in vlan 20. I am able to ping form vlan 10 client to vlan20 default gateway (192.168.20.1) I am able to ping form vlan 20 client to vlan10 default gateway (192.168.10.1) However, I am unable to ping from vlan 10 to vlan 20 client. If both the ports are in same vlan, then clients are able to ping each other. Proxy Arp in enabled.
vlan 10 client ip info
192.168.10.10
255.255.254.
[Code].....
View 12 Replies
View Related
Feb 5, 2012
I recently set up a small photography business and am trying to get a Cisco 877 and Cisco SG300-10 switch to talk to each other.
What I want is for the Cisco 877 to handle the internet and the SG300-10 to handle the local network,
I have set up 2 vlans in trunk mode on the switch and want vlan2 to manage local traffic and vlan3 to handle the internet.
I have got the 877 connecting to the internet what I dont have, traffic going to vlan2 on the switch from the 877
Look at the running configs for the switch and the router and tell me how to get the vlan on the router to pass traffic to the switch. In a nutshell I am inserting the internet into the switch but am not sure how to progress. I have the c870-advipservicesk9 image file on the router.
Switch Config
interface gi2
description connection-to-data-vlan
exit
interface gi3
description connection-to-internet-vlan
exit
vlan database (code )
View 11 Replies
View Related
Dec 8, 2011
I am currently having an issue with connecting a Catalyst 2960-S switch to a Small Business SG300 switch. When I connect them they are unable to form a link. When I do a show spanning-tree it says the mst link is in dispute.
View 1 Replies
View Related
Dec 10, 2012
I am trying to configure Cisco SG300-52 switch for the first time and stuck without CLI configuration option. The configuration can be done using GUI, however, configuring using CLI would be more comfortable (as I am used to work with CLI of other Cisco switches)..
I was able to lo gin to switch using SSH, but the CLI appears in MENU format and was not able to find any way to go to CLI mode.
As per some blogs, in SG300 switches CLI mode can be accessed using Ctrl + Z in Menu, which did not work either in my case.
Switch is running with latest firmware version Sx300 Firmware Version 1.2.7.76.
View 2 Replies
View Related
Jun 20, 2012
try to configure QoS on a Cisco Small Business SG300 Switch. I followed the instruction on [URL] and configured one Port for tagging my Traffic from a Aastra IP Phone. Tagging works fine (i verified with wireshark).The problem is, that all traffic to a PC connected directly to the Aastra IP Phone is blocked. Is there a possibility to tag any other traffic to the port as a default?
View 1 Replies
View Related
Jun 6, 2012
I just purchased an SG300-10 (negular, non-POE) and planning on using it with no special configuratinos initially. Longer term, will be using VLAN and QOS for VOIP.What I would like to know is if ports 9 & 10 can be used as standard copper cat5e ports, or are they only useful for special purposes? When I hookup my router/firewall to port 1 it all appears to work. If I hook it up to 9 or 10, the port lights do not come on and it doesn't work. I read that ports 9 & 10 don't have POE on the POE switch, but I assumed that all 10 ports would function with cat5e?
View 1 Replies
View Related
Apr 10, 2012
We are using the SG300 series switches, and have come across an issue where we need to block ARP broadcasts based on IP.
we have multiple computers, each with only one ethernet adapter, each adapter has two IPs configured, 10.10.10.x and 192.168.0.100.All machines have the same 192.168.0.100 address (Used for applications/hardware running locally to that machine and this IP cannot be changed).
When the machines are connected to the network, ARP is advertising BOTH the 10.10.10.x address and the 192.168.0.100 address.
As all machines have the same 192 address we receive IP conflict notifications on each machine.
How can the ARP broadcasts for the 192 address range be blocked?
View 1 Replies
View Related
Mar 13, 2012
I'm looking to configure the QOS for VOIP on my network.I have a switch SG300 and several no Cisco VOIP phone. What are the parameters to be taken to implement the QOS?
What is the procedure for installing the QOS? I need to create a VLAN for the data and one for VOIP?I read in the quick start guide that there is auto-QOS for VOIP?This can be done from the GUI? what are the options to put?
View 0 Replies
View Related
Jul 19, 2012
I have an SG300, configured with several VLANs. I'm replacing a E3000 with the RV180, I've got it in the environment, but I can't seem to get to the internet from hosts on the SG300.
I have Port 4 on the RV180 connected to Port 20 on the SG300...Port 20 is in the native VLAN (VLAN1) and VLAN1 is configured as a trunk. I'm relatively new to networking so I'm not sure where to start troubleshooting. I have the default route on the switch and I have the static routes for the VLANs on the router, should I be using tagging someplace?
View 3 Replies
View Related
Feb 28, 2012
I have a new redundant network with two cores C1 and C2 and five access switches A1 to A5. They are all Cisco SG300 switches. I have noticed there are too many STP messages emanating from one host which has a MAC address which cannot be traced on the network. In the redundant network, I made C1 the root bridge by giving it a priority of 4096 and C2 has been given a priority of 8192 so that it is the secondary root bridge in the network. I have left all other STP settings to default on the rest of the switches in the network.
The problem is that one host is advertising a RST root bridge all the time. Now it has a mac address which is different from the mac address of the root bridge itself and i cannot trace this mac address on the network. Look at the snapshot of Wireshark output in the attach.The source MAC address which is the host advertising all the time is 1c:df:0f:34:db and the root bridge is 1c:df:0f:bb:34:c4.
Why would the root bridge be resetted all the time?I've also noticed that one port in a LAG configuration on one of the access switches is flapping up and down all the time.I tried to troubleshoot this problem. It is not the cable. It would be something else. What could cause this flapping of the port?Could it be related to STP?
On the other Core switch C2 I can see a LAG status switching between forwarding and blocking all the time. What could make the LAG status to flap from forwarding to blocking and back all the time like this?
View 3 Replies
View Related
Apr 3, 2013
I have a cisco L2 SG300-10p Managed switch . I want to configure one port as a turn but cant find the command Encapsulation dot1q . Its a poe switch i want to use for both internet and voip in separate vlans.
View 1 Replies
View Related
Jan 31, 2012
it says that the cisco sg300-28 managed switch default system mode is Layer 2. but i want to change it to layer 3.
i can't get inside the "Console Interface Main Menu" where the switching from L2 to L3 will be done.
I have done the ff:
1. Upgraded firmware to 1.1.2.0 (latest)
2. Reset the switch to factory defaults.
3. The guide stated that in order to perform telnet to the switch, you need to enable it. So I logged in first in to the web GUI and enable telnet service.
4. I can now start telnet on the switch but I can't see the "Switch main menu".
All I can see are these lines from telnet:
User Name:cisco
Password:******
switchd5928c#
I just want to know how to get into the console interface main menu where these lines should appear so that i can change the system mode:
• System Configuration Menu
• Port Status
• Port Configuration
• System Mode
• Help
• Logout
View 3 Replies
View Related
Jun 1, 2012
I'm looking for feedback and constructive criticism on our network redesign project for our company.We are currently on a 192.168.1.x/24 and running out of addresses. We are looking to move to the following design and implement VLANs as well for segregation and security. We are probably going to use a few SG300s for switches. [code]
View 4 Replies
View Related
Jun 1, 2012
Can a Cisco SG300-10P switch power a Cisco SG200-08 switch over POE? Or an SG200-08P power an SG200-08 via POE? I have an area where I'd like to put a small switch, but would like to avoid having to have electrical power run to it. Or will the SG300 and SG200 POE switches only power endpoint devices such as cameras and IP phones?
View 4 Replies
View Related
Aug 27, 2012
A client of ours has installed an SG300-24P switch and would like to setup a LAG between the SG300 and the 3560 switch we manage for them. They would like the LAG to also pass the voice and two data VLANs currently in use; 5, 10, and 100 respectively. I configured the two ports as an Etherchannel with trunking on the logical port, but no luck. I reconfigured as follows:
interface GigabitEthernet0/1
switchport trunk encapsulation dot1q
switchport mode trunk
channel-group 1 mode active
end
[code]....
I see no output when I do show lacp nei. At this point the client is looking to use for the configurations to use as he does not know how to setup the SG300 and it is a switch I have never dealt with. I have found some configurations that I believe would allow a single VLAN across, but nothing I believe will allow the LAG to pass all the VLAN's.
View 7 Replies
View Related
Apr 20, 2012
I am having trouble with my Cisco SG300 switch big time. I have two servers with IP addresses 10.17.0.11 and 10.17.0.29 sitting on the same switch which is a Cisco SG300. I initiate a file transfer from 10.17.0.11 to 10.17.0.29. I could see lots of Dup Acks and retransmissions which means something is wrong in the connection. Further, I could see the session initiation a bit bizarre. I could see two SYN packets sent from 10.17.0.11 to 10.17.0.29 and also two SYN ACK packets returned by 10.17.0.29. The switch forms part of a network but since both the servers are sitting on the same switch I suppose the rest of the network doesn't come into play when one server talks to the other.
See also the number of Dup Acks and retransmissions. The two switch ports connecting the servers have speed and duplex set to auto negotiate, flow control is enabled. What could cause this sort of problem?Could it be any setting on the switch or the servers' NICs?Or could it be a bad switch that causes this?
View 4 Replies
View Related
Dec 12, 2012
I have an sg300-10 unit. I have recently swapped it into my LAN network to replace an aging switch that was exhibiting problems.
The SG300 is reporting near constant 100% cpu load with 11pps input. there are only 3-4 active ports on the switch at a given time. One of those ports does lead to my router and another switch with another half dozen devices.
By itself this doesn't concern me overly much, but I have found that the SG300 is occasionally freezing up for about 20 minutes then restarting. Syslog and SNMP traps don't appear to provide any hints as to what is going on.
I have tied my switch into my monitoring system (packettrap MSP, so if there is something I should be watching that I am not, that would be good to know). I am still troubleshooting getting all the monitoring functions working as well.
So, I have some questions there as well, which OID should I be monitoring for CPU utilization?
View 3 Replies
View Related
Apr 16, 2012
I am trying to setup VLAN's in the company I work for and I am almost there but missing the part when the internet works.I have an SG300 as a L3 Router IP 192.168.0.93.I have created VLAN20 and VLAN40 Assigned VLAN20 192.168.2.1 and VLAN40 192.168.4.1
The static routes have been created and a default router going to the Sonicwall firewall at 192.168.0.1.Port 24 is configured as Untagged VLAN1, Untagged VLAN20 and VLAN40 in trunk mode and going to the Sonicwall NSA 2400. [code]
Working to move all 192.168.0.x network off of VLAN1 and move it a management switch.I have DHCP helper on pointing to the DHCP server.Both VLAN's once the DHCP server is configured to Gateway 192.168.0.93 can get an IP from the correct subnet either 192.168.2.x or 192.168.4.x
All PC's are getting a GW IP of 192.168.2.1 pr 192.168.4.1.All test PC's on both VLAN's can ping each other and any server with the correct GW.When I try to ping google.com or open a web page and try google.com it times out.
View 3 Replies
View Related
May 7, 2013
I'm trying to examine the ARP table on specific phy ports on a SG300 switch. The Cisco CLI guide shows this syntax:
show arp [ip-address ip-address] [mac-address mac-address] [interface-id]
Using the CLI and the "?" key to get assistance, I'm not successful:
switch3#show arp
configuration Display ARP related configuration
ip-address Filter ARP show by IP
mac-address Filter ARP show by MAC
[Code]...
I don't have http server enabled, I prefer SSH and CLI to do my work.
View 3 Replies
View Related
Nov 8, 2011
I need the conception of the local network for my company. I have seen the sg300 switch that can be good for me (excuse my bad english, i am french). I have 12 servers (database + file servers) that i want to plug on the sg300 20 ports. I want to plug on it 3 switch sg300 52 ports that contains ipphone, desktops and printers. (about 70 users)
View 4 Replies
View Related
Sep 23, 2012
I just got my Cisco SG300 28, but I have some problems getting the routing to work. I get the vlans to get to the router, with the default route. But not getting them to talk with each other. I can ping the IPs from the cisco, but I am not getting traffic to go from vlan 1 to vlan 2. When I try to google, it say that it should do it automatically, and I found no setting for it. It looks like it not creating any route for the interfaces.
View 2 Replies
View Related
May 21, 2012
i am first time to trying to make Vlans. I managed to do 2 vlans to SA520 to ports 1 and 2. But when i try to separatethem to SG300 with web management it doesnt work. Vlan 1 works fine, i untagged wanted ports and forbid vlan 2 ports.In Vlan 2 there vice versa, is this right way to do? Both Vlans has their own DHCP range as i do them to SA520.
View 2 Replies
View Related
Jun 10, 2012
On a small Bording School we have the students living in several small houses, each equipped with an AP.Each Ap serve 4 Vlans.I want to restrict the switch for these AP, in a way to keep the students from removing the AP and connecting their own equipment.I tried using the secure port feature on the SG300, but that had the result of allowing the AP but denying all the users connected to the AP.The switch is a SG300-28P placed in L3 mode.
View 3 Replies
View Related
Jun 18, 2012
I was assigned a task to configure an SG300-28P to have 3 different vlans.Now on VLAN1 their will be only one device configured with static IP 192.168.0.230,On the other 2 VLANS there will be a separate router connected on each one of them and will also act as a DHCP server.
View 4 Replies
View Related
Mar 18, 2013
I have spent several days tearing my hair out trying to properly configure our small business switch (SG300-10p) for voice. The phones are a relatively new addition and will replace old POTS phones.Our network consists of a 1941 ISR router, the SG300-10P switch, a mac server (handing DHCP, DNS, AFP), 4 client desktops and 4 SGA525G2 IP phones. The router, server, desktops and phones all have their own connection to the switch and the second data ports on the back of the IP phones are not used. We do not have any unified comms devices for voice. Our VOIP solution is hosted by a local SIP provider, and each phone independently registers with the provider's SIP proxy over the internet.
Left almost to it’s own devices (or presumably flat, default settings on VLAN 1), this whole setup works just great. We can TFTP files, make and receive calls, and do all the usual XML stuff. Calls are crystal clear. Even the localisation and directory works. However, I’ve been told several times that to ensure good quality on VOIP calls during periods of busy traffic, I should set up some form of QoS. A Voice VLAN on the switch, I was told, is the best way to do this as it automagically gives priority to the whole voice VLAN over the normal data VLAN.
I have followed instructions in numerous manuals, articles and guides, and have managed to create the Voice VLAN, both manually and automatically (I can watch Smartport detect the phones and see the Auto Voice VLAN add the ports to the VLAN as I connect them). The trouble is, as soon as this happens, the phones lose connectivity with the rest of the network, including the DNS server and the router, and therefore the internet, causing them to lose registration with the SIP service.
I tried adding the server and router ports to the Voice VLAN and tweaking every possible combination of tagged, untagged, excluded, trunk, access, general and PVID settings I can think of (by the way, I have no idea what any of those mean). The switch is in Layer 2 mode, but adding the port connected to the router to all the VLANs does not result in internet connectivity to the phones. I have told the phones to tag frames with the VLAN ID and told them not to. I have tried upgrading firmware and I have rebooted the switch so many times I'm tired of those wretched little flashing lights.
Nothing seems to work. And so I am stuck with everything on VLAN 1. My most recent thought is that the 1941 needs to know about the Voice VLAN (I checked CDP and it knows about the switch), but I’m reluctant to start messing with the router config when this is our production network, at least without knowing what I'm doing. I don’t even know if QoS applies when a Voice VLAN is not set up and we're on VLAN 1, some articles say yes, others say no. And when it is set up right, how does that priority transfer to the router? I’ve looked in the router manual and config options and found something called 802.1Q, but I have no idea what it is, how it works or even if it applies to our situation. Can I forgo VLANs altogether and use QoS some other way, perhaps?I have googled enough to cobble together our setup in IOS up until now. Ideally, I would still like to be able to ssh or https into each device (as I do now) for management, and I’ve read about setting up a another VLAN for config, monitoring etc, but I guess that would mean routing between VLANs in Layer 3.
View 2 Replies
View Related
Jul 9, 2012
I have 2 SG300 switches, in layer3 mode, lag'd together for high availability, serving 2 Dell R815's and a Dell Equallogic 4100 for virtualisation. I have setup a number of vlan's, network traffic, mgmnt traffic, iScsi, vMotion etc and they seem to work.
However, Equallogic unit suddenly became unavailable to view for managment yet maintained iscsi traffic for the servers ok. After much head scratching, noticed that one of my SG300's had the vlan ports assigned to various vlans had *automagically* changed there assignment, ie tagged changed to excluded, but only for one of the iscsi traffic connections and the mgmnt port, both coming from the Equallogic, the other iscsi continued its assignment fine. The other SG300 hasn't changed. Guaranteee no one has been into change it and no changes have been made to Dell servers or Equallogic.
Q. Is there any circumstance where the switch can change the port setup itself? or is there any external circumstance that would trigger that change either?
This has now occured twice. The setup is running as a test lab, not in production until all setup is complete, then it will replace our existing harware.
View 1 Replies
View Related
May 14, 2013
I have a Routing issue with one of my SG300-28P units. It has several Trunked VLANs. I think I habe Narrowed it down to a Default Route on the offending SG300 though I cannot see to change or delete any of the Static Routes on the unit. I can Add Routes with no issues, but once Added I cannot Edit or delete them.
View 1 Replies
View Related
Feb 28, 2012
Just purchased a SG300-52 and am trying to upgrade the firmware to 1.1.2 but cannot get the Upgrade/Backup Firmware Language page to load in the web browser interface. I have tried IE 8 and 9, Firefox 3.16 and 10.02, and Chrome from Windows 7 and XP Pro systems also tried FF and Chrome from Ubuntu system. The page just never loads - doesn't show anything.The same is true of the Download/Backup/Configuration/Log page. The other links under Administration > File Management seem to work fine.
View 1 Replies
View Related
Feb 20, 2013
Is it possible to configure both Catalyst WS-C2960-24PC-L and Switch Cisco SG300-28 to work together for VLANs for voice and data ? If yes, can you give me the resources which I can refer to ?
View 4 Replies
View Related
Apr 17, 2012
Do Cisco Catalyst (IOS) and specially Cisco SG300/500 support a similar feature to HP's Loop Protection or DLINK's Loopback Detection? This is an interesting feature to avoid loops caused by unmanaged switches.
View 6 Replies
View Related
Nov 21, 2011
when I was using image 1.0.0.27, I was able to move the management VLAN from 1 to which ever VLAN I wanted. For some reason, after switching the image to 1.1.1.8, I no longer have that function.
View 1 Replies
View Related