Cisco WAN :: Configuring Two VLANs On 871 Router
Apr 23, 2013
I use the cisco 871 router as a firewall to my home-office. I have configured two vlans for each seperate port. That is, FE0 configured as VLAN 10 ----> connected to Layer 2 Switch, FE1 configured as VLAN 20 ----> connected to another Cisco Layer 2 Switch,FE2 not in use, FE3 not in use and FE4 is connected to WAN.I got 100Mbps speed from the ISP, but I can see that I only get 50mbps even connected to VLAN 10 or VLAN 20.Does configuring two VLANs on Cisco 871 router divides the bandwidth (to Internet) into half?
View 35 Replies
ADVERTISEMENT
Mar 29, 2013
I am trying to connect 2 VMWARE servers directly to my 5515-X firewall. [code]ASDM will not let me assign the same VLAN to both Gi0/2 and Gi0/3. I dont want to connect my VMWARE servers to a switch first (that just adds one more component that can fail).
View 4 Replies
View Related
Apr 19, 2011
I have 2 ASA 5505 firewalls and 1 cisco 3560 switch.
One ASA 5505 firewall and cisco 3560 switch located at SITE-A. Another ASA 5505 firewall located at SITE-B.
Below is the my connectivity:
Site-A IPSec VPN Site-B
cisco 3560 <----------------------------> ASA 5505<------------------------------------------------------------------------------------> ASA 5505
I planned to create 5 vlans in my cisco 3560 switch. these 5 vlans needs to have internet and needs to access Site-B.
I will write on dafault route to firewall in my cisco 3560 switch. Is ASA 5505 supports this scenario??? If it is then how to configure ASA 5505 firewall.
View 4 Replies
View Related
May 29, 2012
I has 4 VLANs and I want a MAC address has access to a VLAN, but not to another.
I used ACLs, but this will block the access to the access point, How to get the mac address will have access to a VLAN, eg no other Vlan? I has 4 VLANs and I want a MAC address has access to a VLAN, but not to another.
I used ACLs, but this will block the access to the access point, How to get the mac address will have access to a VLAN, eg no other Vlan?
View 6 Replies
View Related
Mar 29, 2012
As per my attached diagram, I have three switches (Cat 3560-E and couple of Cat 2960-G)
Each PC is on different vlan
PC -1 on vlan 100
PC-2 on vlan 200
I need to connect PC-1 and PC-2 to the server. Server has no fixed vlan and can be changed.
Restrictions:
1) can’t change PCs vlan assignment.
2) can’t add 2nd NIC in the server.
I’ve tried private vlan but it requires separate physical ports for host and/or community vlan and somehow it did not work. I could be wrong Trunking using dot1q enabled on port 2 on all switches and connection works fine (server to PC-1 or server to PC-2) by enabling switchport access vlan 100 or switchport access vlan 200. However I need port 5 on switch-1 to respond to vlan 100 and 200.
View 11 Replies
View Related
Jan 29, 2012
Here is what I have. Windows Domain Controller running DHCP with configured scopes.I have one ASA5510 And 4 HP Procurve switches with VLANS preconfigure from vender.
Here are my DHCP scopes/VLANS:
VLAN1 -Default 10.2.x.x/17
VLAN201 -DHCP 10.2.201.x/24
VLAN202 - WLAN EMP 10.2.202.x/24
VLAN203 - WLAN Guest 10.2.203.x/24
VLAN 252 - MGMT 10.2.254.x/24
Here is how I configured the DHCP Scopes:
Changes needed to make to the DHCP Server (AUSPDC) in order to get things working with the new switches.
1) Configure 3 new DHCP scopes on your DHCP server.
a) scope for 10.2.201.x/24 to serve LAN employees and give them a gateway address of 10.2.201.254.
b) a scope for 10.2.202.x/24 to serve WLAN employees and give them a gateway address of 10.2.202.254.
c) a scope for 10.2.203.x/24 to serve WLAN Guests and give them a gateway address of 10.2.203.254.
I just upgraded and decided to go with the VLAN configuration. None of my VLANS can get out to the internet or each other due to I think My ignorance in configuring the firewall.The PC's are getting proper IP address but they cannot get out or to the other VLANs. I tried to duplicate what is working for VLAN1 but it is not working.
Here is my config.
Result of the command: "show running-config"
: Saved
:
ASA Version 8.2(3)
!
hostname CiscoASA
domain-name hand.local
enable password 1FVULuGal5s1/ADt encrypted
passwd 2KFQnbNIdI.2KYOU encrypted
[code].....
View 6 Replies
View Related
Oct 4, 2011
We have 4 1142N LAPs that I want to divide between an internal wireless and a guest wireless network using the controller. Currently all of the APs are on an established internal network, but I want to migrate one over to a test guest network before buying more LAPs to augment the networks further. Currently the port connecting to the WCS from the 3560 switch is configured as an access port using VLAN 10. Whenever I make it a trunk port carrying VLAN 10 as well as the other ports we will be using for the guest and ap-manager networks, I lose connection with the controller. To me this implies that the port on the controller is configured as an access port as well. In the documentation I found for the controller it states that by default the ports are al configured to be trunks, but it appears as though something was changed by the previous tech. All of the APs are connected to other switches, not to the controller itself.
1) How can I get the port on the controller back to being a trunk port
2) Can I use the internal DHCP server for the guest network if the subnet is different than the management subnet, or will I have to use another external server and relay/proxy it through the controller to give guest clients IP addresses?
View 2 Replies
View Related
Apr 11, 2012
I would like to configure a 3750 switch port to be able to use two vlans. I know you can do this with a voice and data vlan, but what about two data vlans ? Say I have two devices, one on a 10 subnet and the other on a 172 subnet, but i only have one wall jack for both devices to plug into. So I use a mini switch to connect both devices and connect the switch to the wall jack; and of course this all leads back to one switch port. When I go to enter the switchport access vlan 172 cmd, how would I also make it so the device on the 10 subnet could route out ?
View 9 Replies
View Related
Jun 1, 2012
WE have to deploy ASA5585 in between User vlans & server vlans. we have to find all the ports that needs to be opened on firewall. any tools to do same.
View 2 Replies
View Related
Jun 20, 2012
I just got seriously nice toy to play with, Cisco SG300-10P - I know what you thinking now but with very tight budget...anyway.I configured two ports for VLAN101, Access, but when cabled in and out, it didn't work. Got Linksys switches setup the same way and they work like a charm (and I believe this should too).
View 12 Replies
View Related
Sep 12, 2011
I have a network that I want to split into 3 VLANs, One for the main traffic, another one for the kids so I can control the sites they visit via opendns and the 3rd for the playstation and the Wii. The catch is that I only want the kids network to access the printer and the NAS on the main network, and then the 3rd network not to be able to access the other 2 vlans. I am trying to perform this via a Cisco 871 router
View 1 Replies
View Related
Mar 21, 2013
We have two 2811 router with configured interfaces:
Router1
interface FastEthernet0/0.380 encapsulation dot1Q 380 ip address 192.168.232.18 255.255.255.248 no snmp trap link-status crypto map clientmap!
interface FastEthernet0/0.382 encapsulation dot1Q 382 ip address 10.132.1.126 255.255.255.252 no snmp trap link-status
interface Vlan1 ip address 192.168.5.1 255.255.255.128 ip nat inside ip virtual-reassembly
ip route 0.0.0.0 0.0.0.0 192.168.232.17
ip route 10.132.254.35 255.255.255.255 10.132.1.125
Router2
interface FastEthernet0/0.197 encapsulation dot1Q 197 ip address 192.168.222.2 255.255.255.248 ip nat inside ip virtual-reassembly no cdp enable
interface Vlan1 ip address 192.168.1.1 255.255.255.128 ip nat inside ip virtual-reassembly ip tcp adjust-mss 1452
So my case is: computer from router1's network can ping 192.168.222.2 (router2 -FastEthernet0/0.197 )computer from router2 network can ping 192.168.232.18 (router1- FastEthernet0/0.380),but can't ping 10.132.1.126 (router1- FastEthernet0/0.382).
How can i connect vlan 380 and vlan382.I want the three vlan to see each other.Is this happen with IRB or not?
View 4 Replies
View Related
Jun 2, 2011
my problem is this:we have two 2811 router with configured interfaces:
Router1
interface FastEthernet0/0.380 encapsulation dot1Q 380 ip address 192.168.232.18 255.255.255.248 no snmp trap link-status crypto map clientmap!
interface FastEthernet0/0.382 encapsulation dot1Q 382 ip address 10.132.1.126 255.255.255.252 no snmp trap link-status
interface Vlan1 ip address 192.168.5.1 255.255.255.128 ip nat inside ip virtual-reassembly
ip route 0.0.0.0 0.0.0.0 192.168.232.17
ip route 10.132.254.35 255.255.255.255 10.132.1.125
Router2
interface FastEthernet0/0.197 encapsulation dot1Q 197 ip address 192.168.222.2 255.255.255.248 ip nat inside ip virtual-reassembly no cdp enable
interface Vlan1 ip address 192.168.1.1 255.255.255.128 ip nat inside ip virtual-reassembly ip tcp adjust-mss 1452
so my case is:computer from router1's network can ping 192.168.222.2 (router2 -FastEthernet0/0.197 )computer from router2 network can ping 192.168.232.18 (router1- FastEthernet0/0.380),but can't ping 10.132.1.126 (router1- FastEthernet0/0.382)How can i connect vlan 380 and vlan382.I want the three vlan to see each other.Is this happen with IRB or not?
View 11 Replies
View Related
Apr 20, 2012
I'm trying to configure a dhcp service on a router for some vlans.I would like to give the range 172.16.0.0 - 172.16.10.255 to vlan 10, 172.16.20.0 - 172.16.20.255 to vlan 20.for some reason it doesn't work?here's the config.
ip dhcp excluded-address 172.16.0.1
ip dhcp excluded-address 172.16.20.1
ip dhcp excluded-address 172.16.30.1
ip dhcp pool vlan10
network 172.16.0.0 255.255.0.0
[code]...
View 10 Replies
View Related
May 28, 2012
the objective is to set up 2 vlans, one of which is a wireless access point connecting to our company network which is behind our firewall. the other is a wireless access point for admins and selct people to connect directly to the internet, bypasing all network devices and firewall. i am unable to get tech support unless i buy a contract for $800. I currently have it working and vlans setup but they both hook into the company network.
View 3 Replies
View Related
Jul 10, 2012
i am trying to get a SG300 work as a router between VLAN's?So fare without any lock?Test setup one SG300 switch and 2 PC's ?Ping works from host to VLAN IP's, but not from host A to host B
Here is the host configuration
<TABLE style="BORDER-BOTTOM: #000000 1px solid; BORDER-LEFT: #000000 1px solid; WIDTH: 400px; BORDER-TOP: #000000 1px solid; BORDER-RIGHT: #000000 1px solid" class=jiveBorder border=1 cellSpacing=0 cellPadding=3 mcestyle="BORDER-BOTTOM: #000000 1px solid; BORDER-LEFT: #000000 1px solid; WIDTH: 400px; BORDER-TOP: #000000 1px solid; BORDER-RIGHT: #000000 1px solid">
[code]...
Here is the switch configuration
SG300 with FW 1.1.2.0 configuration i L3 mode
set system mode router
confip routing (needed on SG300??? - ti is on a 3560 i PacketTracer)
vlan databasevlan 5vlan 6vlan 7
[code]...
View 5 Replies
View Related
Oct 25, 2012
I have a CISCO 851W router in the garage that I want to connect to my Linksys router in the office, which is connected to the internet.The 851W is connected from it's WAN port to Lan port 1 of the Linksys router. Now, currently that ethernet cable is a straight-through cable. Does it have to be crossover? If so, I can fix that.
I want the default gateway for the CISCO router to be 192.168.2.1. I am not sure how to configure that. [URL]
View 3 Replies
View Related
Mar 30, 2012
We have 7200 router on which two links from different ISPs are terminated. Right now one link is primary and the second one is redundant.Now we have procured our own IPs and plan to run BGP with both the service provider. Can we configure GLBP on the router so that both the links can be simultaneously used and when one goes down the other takes the full load.
View 2 Replies
View Related
Nov 19, 2012
configuring VPN in my cisco 1721 router to connect in vpn client
I have the public IPs.
View 2 Replies
View Related
Mar 4, 2012
i want to configure the router for internet access for hosts this is the my pub ip x.x.x.174 and mask 255.255.255.252 this is isp given subnetmask internal ip range is x.x.x.20-x.x.x.254
View 1 Replies
View Related
Jun 22, 2012
I just got Cisco 881 Ethernet Sec Router.
i would like to know how to setup this device to achieve the following:
1. Connect to my ISP
2. Do NAT on the device
3. Setup VPN to a remote site
View 1 Replies
View Related
Apr 5, 2013
I am having a cisco 861 series router.The Cable from the isp was connected to fastethernet4(wan port)
Following are my isp details
IP address:172.16.62.130
subnet:255.255.0.0
default gate way:172.16.62.1
dns primary:202.153.32.2
secondary:202.153.32.3
How do i configure this details in the router and access the internet in my devices.i want the network to be in 192.168.1.0 to 254.
View 3 Replies
View Related
Jan 28, 2013
I need to front-end my ISP's router with another, giving me a DMZ. I have bought an EA2700 for this but I can't find how to configure it.
I plan to have the DMZ network as 10.1.2.0/24, with the ISP's router at 10.1.2.254 and the EA2700's "upstream" connection as 10.1.2.1. The internal network (where most of the clients reside) will then be 10.1.1.0/24, with the EA2700 itself at 10.1.1.254 and a DHCP range 10.1.1.100 upwards.
On the basic setup screen I've set the Internet connection type to fixed IP, 10.1.2.1; I've set its default gateway and DNS1 as the ISP's router at 10.1.2.254. Then further down in network setup I've entered the *internal* address 10.1.1.254 and set the DHCP range and netmask appropriately. I'm getting the error message "The IPv4 address and gateway are not in the same subnet mask". But the only gateway I've entered is the one by which the *EA2700* knows how to route upstream traffic, viz the ISP's router at 10.1.2.254. Or am I misunderstanding?
More fundamentally, can the EA2700 be configured in this way?
View 6 Replies
View Related
Jul 17, 2011
I currently have an ISP in Singapore who provides me with Internet and Phone service. Both services are delivered via optical fiber, I have a 1Gb bandwidth and one singe phone line. It is all connected the following way:
TP-----ONT-----RG-----CMS-----WR
|
Phone
And what I am looking at having is something like this:
TP-----ONT-----CMS-----WR
|
RG
|
Phone
TP = Fiber Termination Point Not a really interesting piece, just a fiber junction box ONT = Optical Network Terminal (Huawei Echolife HG863 GPON)[URL]This is where the fiber from the TP connects to. It has one fiber port and four Gb ports. No problem with this piece (so far)RG = Residential Gateway (Huawei HG265s Wireless Router) [URL]. From the ONT Port 1 I have a CAT6 cable to the WAN port of this router. It also has four FE ports and two RJ-11 ports (I use port 1 of the RJ-11). The problems are several: the firmware has been modified by my ISP so that the configuration is resticted. The port forwarding does not work. The DMZ does not work. The network ports are 100/10 (what is the use of having 1Gb?) The wireless range is crappy. I just hate it.
CMS is a CISCO SLM2008 8 port Gb managed switch
WR is a Cisco Linksys E4200 with DD-WRT
OK now, my ISP does not allow me to use any other router except the HG265. It does this by using VLANs. As far as I have been able to tell there are at least three VLANs in use (there are more but I can't identify the use for the others), one for TR-069 to manage the RG, one for my phone and one for internet.
View 1 Replies
View Related
May 1, 2012
I have a cisco Swtich SGH 300-20 Gigabit switch i configure 2 vlan one is default and one is vlan 10
Vlan 1 ip range 172.16.0.0/23
Vlan 10 ip range 172.16.2.0/24
Client on Vlan getting Proper IP from DHCP Server all i need is to distribute internet bandwidth we have 6/3 mb and i want to give 4/2 mb to vlan 1 and 2/1 mb to Vlan 10
Int Gi16 on switch is configured as trunk port and is connected to cisco 2811 router
what are the command used to distribute bandwidth between these 2 vlans
View 3 Replies
View Related
Dec 27, 2011
configuring my Cisco 2951 router. There are three routed interfaces that I need to configure: one for the internal LAN, the second for another private subnet that connects to a Data Centre and the third for the WAN connection. I have configured the Ge0/0 interface as the LAN interface with the internal network 10.17.0.0/24. I have also configured my WAN interface Ge0/1 for internet connectivity. Now, I need to configure the third interface Ge0/2 that will connect to the Data Centre. This will be a private point to point switched ethernet link. The Data Centre will host a secondary domain controlller. So, I want it to be on the same network as the internal LAN, i.e., 10.17.0.0/24. I want to be able to see all other devices that will be located at the Data Centre just like I would see all devices connected to the internal LAN.The problem I am facing is that Cisco 2951 does not allow me to configure two routed interfaces to be on the same subnet. Is there any way to work around this problem and configure both the internal LAN and the Data Centre private network to be on the same subnet.
View 6 Replies
View Related
Jul 16, 2012
we have cisco 1801 router and want to configure for PPPoE.As our ISP has provided adsl connection having following settings:
Encapsulation: PPPoE
Multiplexing: LLC based
VPI = 0
VCI = 103
Login =xxxxx
Password =xxxxx
IP: dynamically from ISP
configuring cisco router 1801 for above configuration.
View 5 Replies
View Related
Sep 28, 2011
I'm having trouble configuring a vpn between a CISCO WRV210 and a FortiGate router.
View 1 Replies
View Related
May 16, 2012
I've created two configurations. One for the router side and one for the AP point side. However, I am having trouble getting the internal AP to bridge to the router properly. It is my understanding that the Wlan-GigabitEthernet is the internal interface connecting to the AP and the BVI1 together. I can't ping any ip address on the router side from the ap and the radio is active and we can see it but it seems that it doesn't give an ip address. [code] Is it a VLan issue or an ip issue but I could use a second opinion. I've included both configurations.
View 1 Replies
View Related
Jan 31, 2012
We are having problems configuring NAT on our Cisco 1921 Router. Below is the running config. The problem we're having is for example our FTP server 192.168.1.16, cannot be accessed from its outside IP address, which is NATed on the router. The server is verified to be up and running and when we do a show debug ip nat, we see the router is translating outside users attempting to access the ftp server to it's correct internal IP address.
View 3 Replies
View Related
Sep 6, 2012
I have DSL 8Mbps DL and 768kbps UL The setup look like this:Internet -> Modem -> Cisco Router -> Firewall -> Switch Core - > Multiple switches like sfe2000p? CiscoRouter: i use port gig0/1 for PPPoE and i use port gig0/2 for LAN static Router port gig0/2 with 122.54.144.153/29 connected directly to Firewall port13 with 122.54.144.154/29 ?i want 122.54.144.153/29 will my default gateway ? include no limit bandwidth,filter etc at router, Firewall will be DHCP Server and control the bandwidth, filtering etc and the client computer should get 8Mbps
Mode: Routing
Encapsulation: PPPoE
Username: xx
Password: xx
Service Name: ISP name
[code]....
View 9 Replies
View Related
Nov 24, 2011
I have configured Cisco 870 router ATM interface with following configuration
interface atm 0
ip address public ip 255.255.255.254
ip nat outside
pvc 0/38
encapsulation aal5snap
no shutdown
But when I check ATM interface it is still down and line protocol is down. how to make it up and up so that internet service could be used.Also I want to know that the provider has also given username and password for internet in their device.We want to replace that device with the router and facing problems.
View 1 Replies
View Related
Oct 10, 2011
I had purchased a HWIC-8A in an effort to provide terminal server capabilities into multiple routers. I had found a document that I thought would take me through the configuration but it doesn't appear that the command syntax is the same on the 2911's as it is in the document. Does any know how I would need to get this configured on the 2911 router?
Here is the document I was referencing
[URL]
View 3 Replies
View Related