Cisco WAN :: VLAN Routing Across 1921's?

Apr 9, 2012

I asked this in the LAN forum but I don't think people understood what I was asking.  I want to know if I can route VLAN's across my T1 point to point connection using 1921 routers.  I currently have AdTran 3205's and although I found info on the internet saying you can make them do this I could not after many hours of trying.  I also found this article: [URL] that also seems to say I can do what I want but I just want to verify.
 
We have two main locations currently connected by a point to point T1 (1.54Mbps) through the AdTran 3205's.  We are running out of IP addresses as we just have a single subnet on each end.  I want to move to a VLAN setup for a couple reasons including security and QoS for our voice system.  Each location has it's own dedicated internet and proxy server.  Here is my planned layout:
 
ISP 1                                      ISP 2            |                                          |            |                                          |            |                                          |              |                 10.0.0.0/30              |    Layer-3 Switch 1 -- 1921-1 ---------- 1921-2 -- Layer-3 Switch 2    |      |       | .1                          .2 |      |       |    |   VLAN 20    |                                |   VLAN 20    |    | 10.1.20.0/24 |                                | 10.2.20.0/24 |    |              |                                |              |  VLAN 10        VLAN 30                          VLAN 10        VLAN 3010.1.10.0/24   10.1.30.0/24                    10.2.10.0/24    10.2.30.0/24         Building #1                                     Building #2 
 
Can I do this with the 1921s?  Is there a better design for what I want to accomplish (seperate our users, servers, and phones onto seperate VLAN's)?

View 6 Replies


ADVERTISEMENT

Cisco Switching/Routing :: 1921 VLAN Routing

Aug 1, 2012

I will be installing two Cisco 1921 Routers to connnect a T1 between two offices.  We are changing out our current AdTran routers as we would like to bridge three VLAN's across the T1 link.  I followed the instructions at (URL) shtml to the best of my ability and my two Gigabit Ethernet ports are tied into a bridged virtual interface (BVI1).  I then assigned a IP to BVI1 and another to my Serial0/0/0 then made a route to get to the other side of the T1 and a defualt route out our proxy. What I want to do now is setup QoS to make sure my voice data gets priority. 

I setup a QoS ACL called "Voice" with the TCP and UDP source and destination ports that our phone system uses.  I then setup a QoS policy on the Serial0/0/0 outgoing interface called "VoiceTraffic" and under the "match" list I match DSCP 46 or my "Voice" access rule.  For the action I turned on "Queuing" and set it up for LLQ at 50%.  Does this sound about right?  Is there anything els eI can setup?  I tried ot setup something else on the ethernet side but because they have the BVI I can't.  I read some article sin this forum that said I could still apply QoS to the GigabitEthernet ports even if they are in the bridge group but it doens't let me do that.

View 10 Replies View Related

Cisco Switching/Routing :: 1921 - Multiple VLAN Supported?

Feb 6, 2013

I have a Cisco 1921 Router, a Cisco Catalyst 2960 and a Cisco Catalyst 2970 and I want the router to be able to assign ip-addresses by what VLAN a device is active on.
 
VLAN1: 10.0.0.0/24

VLAN2: 10.0.1.0/24
 
The router is connected to the Catalyst 2960 and there on to the Catalyst 2970 so the VLAN1 and VLAN2 is active on the to switches and the Router.is it possible?

View 8 Replies View Related

Cisco Switching/Routing :: IP SLA Support On 1921/K9 Or 1921-SEC/K9?

Oct 5, 2012

We want to puchase new Cisco ISR 1921/K9 .   i want to know does it support the following sample IP-SLA commands
 
ip sla 2icmp-echo 172.16.1.2timeout 500frequency 1ip sla schedule 2 life forever start-time now
 
track 10 rtr 1 reachability
delay down 1 up 1
!
track 20 rtr 2 reachability
delay down 1 up 1 
ip route 0.0.0.0 0.0.0.0 192.168.1.2 track 10ip route 0.0.0.0 0.0.0.0 172.16.1.2 track 20
  
Im asking above question because we will need to enable ip-sla  on  the mentioned router.   as i read on the cisco webside, it says Cisco-ISR-1921/K9-IP Base  support only  IP-SLA RESPONDER  feature nothing else. If  Cisco-921/K9  does not support the above commands , should i go for ordering Cisco-1921-SEC/K9 ? 

View 4 Replies View Related

Cisco WAN :: Keep VLAN Tags Between 1921 Over T1?

Aug 8, 2012

I am looking to transfer 3 VLANS (10, 20, and 30) over a T1 point to point using Cisco 1921 routers.  I do not want to "Bridge" the connection, one location has a 10.1.0.0/16 subnet and the other location has a 10.2.0.0/16 subnet because we don't want to saturate the already slow link. 

I tried the instructions here: [URL] With these routers couldn't I create the three VLAN's then tell the GigabitEthernet0/0 interface it's a trunk port?  Or do I setup sub interfaces (.10, .20, and .30) for each vlan?  I've tried all of the above and I can't get it to work.  I can directly plug into the router and ping the other router on the other side of the T1 but I can get the info coming from my Dell PowerConnect 6248 (plugged into a trunk port) to go through to the router which is why I think it's a vlan issue.

View 17 Replies View Related

Cisco Switching/Routing :: 1921 Routing Access From Mixed IP Ranges Between VLANS

Jan 23, 2013

I have the following config using a Cisco 1921.  I am trying to get devices on the the native VLAN to get internet access via the gateway x.x.x.73.Any thing being routed from the other Vlans 15/20/30 can get access, but nothing from an internal IP address.  Is there something I am missing.
 
The Xs replace the same 3 octets for each interface.I am trying to route from VLANs 15/20/30 to see VLAN 5.  I have tried a few things, in terms of adding extra ip routes, but can't get anything to work.  Each of those Vlans have another router on the other side of them, which I have also tried adding ip routes too, but nothing.  One of the routers (Vlan15 is a Draytek 2830). [code]

View 5 Replies View Related

Cisco Switching/Routing :: 3560 Possible To Create Vlan Inside Transport Vlan?

Jan 10, 2012

Between our hosting and a customer we have an extended vlan, traveling on a fiber, between two cisco 3560 switches.The thing is, that we want to create one or more vlans inside that extended vlan, in some way if possible?

View 3 Replies View Related

Cisco Switching/Routing :: 3750 - Extending VLAN To Remote Switch That Already Has VLAN ID In Use

Jan 10, 2013

I have two networks at two sites with a dot1q trunk between the two L3 switches at both sites (no routers involved)
 
SITE A - Cisco 3750 L3 - VLAN ID 50
10.10.50.0/24
 
SITE B - Cisco 3750 L3 - VLAN ID 50
10.20.50.0/24
 
I would like to extend the SITE A VLAN to SITE B so that I can move hosts from SITE A to SITE B without needing to change their IP address but the vlan ID is already in use. Obviously the easy solution is to change the VLAN ID for one or other of the sites but both sites contain hosts that run 24/7. Is there a way to join two VLANs with different IDs together.So for example I create a new VLAN 60 at SITE B and associate it with VLAN 50 at SITE A.

View 4 Replies View Related

Cisco Switching/Routing :: Route Data From Vlan 10 To Vlan 20 On 2960s?

Mar 31, 2013

i need to solves this little problem on 2960S lan BASE but i dont know if it is possible.
 
Uplink port config for gi 1/0/28 is:
 
switchport mode trunk
switchport trunk alloved vlan 10,11
  
but on interface gi 1/0/1 i want to have data from vlan 10 tagged as VLAN 20.
At this time i have solved this issue very primitively
 
I have set up gi 1/0/2 as int mode acces, acces vlan 20 and i have connected gi 1/0/2 with gi 1/0/3 with eth cable. int gi 1/0/3 is switchpor mode acces, switchport acces vlan 10

View 4 Replies View Related

Cisco Switching/Routing :: 3750G / VLAN 1 Is The Only VLAN And Its Disabled

Sep 16, 2012

I have a 3750G switch in my production network that only has VLAN 1 on it. All ports are in a default state and VLAN 1 is disabled. The switch is passing traffic but shouldn't having the default VLAN shut down cause the ports not to pass traffic? If I start to create VLANs will that cause the switch to stop passing traffic?

View 4 Replies View Related

Cisco Switching/Routing :: L2tpv3 Vlan-to-vlan Tunnel On 890

Jun 13, 2011

I am trying to setup a L2tpv3 VLAN-to-VLAN tunnel.My setup has two Cisco 890 router with Cisco IOS Software version 15.0(1) M4. These routers are connected directly on FastEthernet port 8.
 
One linux machine is connected on FastEthernet port 0 on each router. The two linux machines are on same vlan. I am trying to establish a vlan-to-vlan tunnel between the routers and send traffic between the linux machines.
 
I followed the case study 11.4 from [URL] and configured the l2tp-class and pseudowire-class. However, the vlan interface configuration is different on 890 router.
 
I configured a vlan interface as follows.

(config)#vlan 200
 (config)# interface FastEthernet 0
#shutdown
#switchport access vlan 200
(config)# interface vlan 200
 
I don't see the 'xconnect' command in this context. What's wrong with my configuration? 

View 3 Replies View Related

Cisco Switching/Routing :: Low Bandwidth On 3750 From Vlan To Vlan?

Nov 20, 2012

We have a low bandwith (15-20 Mbit/s) to the ASA from our Client vlan. If i connect the Client to the same vlan as the ASA is, the bandwith (90 Mbit/s) is good.
 
Here are the Layer 3 Design:
 
Client     ->     vlan 2 - Switch - vlan 7     ->     vlan 1 - ASA 5505     ->     ISP
 
The Layer 2 Design:
 
Client     ->     Gig2/0/13 - Switch - Gig4/0/43     ->     Eth0/1 ASA5505     ->     ISP
 
IP Address:
Client: 172.16.2.10Vlan2: 172.16.2.1Vlan7: 172.16.7.1ASA: 172.16.7.2
  
I assuming the switch has a problem with routing ?It is a stacked Switch with following members:

switch 1 provision ws-c3750g-12sswitch 2 provision ws-c3750g-24tsswitch 3 provision ws-c3750g-24tsswitch 4 provision ws-c3750x-48
 
And we have following error message in the log from the switch:

%PLATFORM_UCAST-4-PREFIX: 

One or more specific prefixes could not be programmed into TCAM and are being covered by a less specific prefix, and the packets may be software forwarded I first get the idea that the switch is overloaded with router traffic. Thats why i assuming i have to check the sdm templates, but i'm not sure if this resolves the issue. 
 
Here are the relevant config:
 
ASA Interface on the Switch:

interface GigabitEthernet4/0/43description ASA-inside LANswitchport access vlan 7switchport mode accessspanning-tree portfast
 
Client Interface on the Switch:

interface GigabitEthernet3/0/1switchport access vlan 2switchport mode accessswitchport port-securityswitchport port-security aging time 2switchport port-security violation restrictswitchport port-security aging type inactivitymacro description cisco-desktopspanning-tree portfastspanning-tree bpduguard enable

[code]...

View 2 Replies View Related

Cisco WAN :: 1921 - Comcast EDI Routing

Apr 30, 2013

I just purchased Comcast Fiber EDI service. Comcast delivers this service on a /30 network and a /27 network. The customer (me) has to route the /27 network through the /30 network .
 
Here’s an example of the IP’s they gave me:
 
10.202.187.128/30       Sub net Mask: 255.255.255.252         Gateway: (.129)     Customer Layer 3 (.130 10.202.187.160/27              255.255.255.224
 
I have a Cisco 1921 router with 2 on board Gigabit Ethernet interfaces. Would I be correct if I put 10.202.187.130 on GigabitEthernet0/1  and  10.202.187.161 on GigabitEthernet0/0  and then do a static route 0.0.0.0 0.0.0.0 10.202.187.130 ?
 
Obviously I have very little Cisco router knowledge and I’m doing this with the Cisco Configuration Professional software.

View 1 Replies View Related

Cisco :: Routing Traffic From Non VLAN To VLAN On Same Interface?

Nov 21, 2012

i'm going mad on following problem. I'm trying to get 2 networks seeing each other while one of the network is a non VLAN network and the other one is a VLAN network.They should use the same interface so i added VLAN e0/0.122 to the interface e0/0.Send a ping from my asa to both gw-IP's made me happy at first. In second in figured out that i cannot reach any client in the other network. For testing purpose i created an permit acl to any/any for both networks, but the packets still get dropped by the default implicit rule. (deny any/anyMaybe i'm to stupid for this

View 10 Replies View Related

Cisco Switching/Routing :: 1921 How To Set Password

Jan 24, 2013

How do I set a password? new Cisco 2911 router, C1900 Software (C1900-UNIVERSALK9-M), Version 15.1(4)M4 ?

View 6 Replies View Related

Cisco Switching/Routing :: 1921 Can't Go Any Further To Internet

Apr 30, 2012

I am setting up a new 1921 for a public library and I am running  into a problem and I bet I am missing something simple. All the internal stuff works and I can ping the outside IP on the 1921 but can't go any further to the internet. The 1921 has the 2 gig ethernet ports, 0/0 is connected to a DSL getting DHCP settings fine from the DSL modem. The other gig ethernet port 0/1 is running the inside network and its function fine, I have a server on it and other clients and they can ping and get dhcp settings etc.I've pasted the config output below and IP addresses of the main actors. [code]

View 1 Replies View Related

Cisco Switching/Routing :: Upgrade IOS From 1921 ISR?

Dec 18, 2012

How I can upgrade the iOS from CISCO 1921 ISR? Without losing my configurations.

View 3 Replies View Related

Cisco WAN :: 1921 - Routing Between Built-In Interfaces

Nov 19, 2012

I am trying to figure out exactly what I need to buy to to connect to an ISP's fiber switch. We need to install a router between the fiber switch and our own core switch to be able to access the IP's allocated to the property. We installed a 1700 with the below config, but we want to purchase a brand new router and we were looking towards possibly the 1921 if the budget allows. Our distributor is telling us that we need to purchase an Ethernet WIC also, but if the router already has 2 ethernet interfaces, why do we need to purchase more hardware? I am a little out of the loop with routers at the moment, so I am not sure if they correct or not, just looking to see if this is the case and if so, why?
 
interface Ethernet0/0
ip address x.x.x.x 255.255.255.248
full-duplex
!
interface FastEthernet0/0
ip address y.y.y.y 255.255.255.252
speed 100
full-duplex(code)

View 5 Replies View Related

Cisco Switching/Routing :: ISR 1921 - IP SLA Tracking

Oct 5, 2012

I have already ordered a Cisco ISR 1921/K9.    but as i read on Cisco website, it is written that Cisco 1921/K9 only support  (IP SLA Responder) feature.
 
I don't know actually what is sla- responder.  but our requirement is we will connect that Router 1921/K9  into 2-ISP links and i want to enable  IP- SLA probes on that router so that it can track  both the routes into those isp links. so my question is  does  CISCO 1921/K9  have the support for what i need ?How about  Cisco 1921-SEC/K9 ?

View 1 Replies View Related

Cisco Switching/Routing :: L2 Bridge On 1921 Interface?

Nov 20, 2012

I need to set up a L2 llink between my LAN and this 1921 router. I though IRB would do it but its not working yet. Here is the topology- I dont want to see another hop on this 1921 rtr so I hope I can just trunk it or something with IRB. Not working.

View 6 Replies View Related

Cisco Switching/Routing :: 1921 Router LAN Configuration

Mar 27, 2012

I have recently configured a cisco 1921 router for internal routing on my network.  Here is what i am trying to accomplish:
 
Main network 10.65.1.0   mask 255.255.255.0- all office devies and computers.
Second network 10.65.2.0  mask 255.255.255.0 - All plant equipment machinery and production lines
 
i have configure gig 0/0 for my company network and gig 0/1 for my plant network.  I can ping the router from both networks but am unable to route traffic betwenn them.  what am i missing?

View 8 Replies View Related

Cisco Switching/Routing :: Using 1921 With Watchguard Firebox?

Dec 6, 2012

Im having some major issues with my new setup.  I have a Cisco Router (1921ISR) that is connected to the internet through a t1. In addition to that is another cable modem.  Each of these are connected to my firebox through an external interface.My router is on the 10.1.10.X network.  My internal network is 192.168.1.X I have several NAT statements on my router pointing to 10.1.10.X addresses.  These addresses are defined on my firebox as seconday external addresses and I am SNAT'ing them to 192.168.1.X addresses on my local LAN.This is mostly working well for everything.  However, there is an FTP I am connecting to through the a VPN on the cisco that will not connect.  The source is a 192.168.1.X address. 

View 1 Replies View Related

Cisco WAN :: Routing Table Entries Support On 1921 / K9?

Nov 27, 2012

Is there a Table which the list the route table entries on Cisco ISR Router especially ISR 1921 Router.

View 3 Replies View Related

Cisco Switching/Routing :: 1921 To Replace A Software Firewall

Feb 26, 2013

We purchased a cisco 1921 router to replace a software firwall not long ago. The router was sold as a firewall with the suggestion that an ASA would be unnecessary.Unfortunately a router does not replace/do the jobs a firewall does, so I looked online and noticed that Cisco do offer firweall security features in one of their IOS.How do I tell if this is implemented on my router?If not, does my IOS support this, or do I need to buy an extension/another version of the IOS?,The version of the IOS I have is: c1900-universalk9-mz.SPA.151-4.M4.bin.

View 3 Replies View Related

Cisco Switching/Routing :: 1921 LAN Adapter Unable To Reach Outside

Apr 2, 2012

The Cisco 1921 router has two routed adapters. One is GE0/0 which I am using for my WAN interface. It is working properly. The 2nd interface is GE0/1 which is being used as my internal adapter. It is running NAT. When I attempt to reach the internet it fails while checking the exit interface. Here is the report.
 
AttributeValueRouter ModelCISCO1921/K9Image Namec1900-universalk9-mz.SPA.151-3.T.binIOS Version15.1(3)THostnameBulldog 
Interface Details   
AttributeValueInterfaceGigabitEthernet0/1IP address192.168.1.1DescriptionNOC Link Test Activity Summary

[Code].....

View 1 Replies View Related

Cisco Switching/Routing :: 1921 - Can't Login To Brand New Router

Nov 29, 2012

I have a brand new 1921 router that I can't login to using cisco/cisco.  Is there a new password?
 
[URL]
 
I don't have physical access so I can't reboot it until Monday.  Just wanted to get it working today. 

View 8 Replies View Related

Cisco Switching/Routing :: Decipher Differences Between Two Models Of 1921?

Mar 7, 2013

I am trying to decipher the differences between the two models of the 1921 router. One has an IP Base IOS and the other has a Security IOS. I have an ASA so I don't think I need all the Security IOS bells and whistles on an internal router. Although, does the IP Base IOS allow for trunking and sub interfaces? I definitely need that and on CDW's website it says that the 1921-Sec/K9 w/ Security IOS includes 802.1Q and that spec is not listed on the 1921/K9 IP Base IOS model.

View 3 Replies View Related

Cisco Switching/Routing :: 1921 - Dynamic Port Forwarding With PAT

Feb 29, 2012

How can I implement this with Zone-based Firewall on my 1921?
 
I'm looking for something as simple as the port triggering function on a Linksys or Netgear router.

View 4 Replies View Related

Cisco Switching/Routing :: 1921 Limiting Upload To 1.5mbit?

Nov 28, 2012

We recently got a 1921 for our main office and we have a dedicated 15/15 connection. We're running on an 1871 right now that is not under my control so I can't even see it's running config. OK! So when I set my gateway to be the 1871, we can get our upload to over 6mbit (we have 8 branches, so won't ever get full 15 since they're using it too). With the gateway set as the 1921, it seems like we're stuck at 1.5. I haven't seen it go higher than that. I've looked over the config but can't see anything that would imply some kind of bandwidth limit but I have copied the config here.
 
Building configuration... 
 
Current configuration : 6688 bytes
!
! Last configuration change at 10:59:47 PCTime Thu Nov 29 2012 by admin
! NVRAM config last updated at 10:04:31 PCTime Thu Nov 29 2012 by admin
! NVRAM config last updated at 10:04:31 PCTime Thu Nov 29 2012 by admin
version 15.1

[code]....

View 3 Replies View Related

Cisco Switching/Routing :: 1921 Default Password Invalid

Apr 17, 2013

I bought a cisco router last week. The reseller said it is a brand new one. However, when I try to set it with console cable connecting to PC, the default password does not work. I tried to use control+break to get access to rommon for password recovery. The tera term pro displayed nothing at all! In thin case, what should I do to setup the router? Dose the reset button in the back work to restore the router to factory setting(which means i can use default username and password)?

View 1 Replies View Related

Cisco Switching/Routing :: Not Detecting HWIC-2T In 1921 Router?

Oct 15, 2012

I Have installed HWIC-2T card in my cisco 1921 router but it is not able to detected in router. find the ver of router
 
Cisco IOS Software, C1900 Software (C1900-UNIVERSALK9-M), Version 15.1(4)M4, RELEASE SOFTWARE (fc1)
Technical Support: [URL] Copyright (c) 1986-2012 by Cisco Systems, Inc.Compiled Tue 20-Mar-12

[Code]......

View 8 Replies View Related

Cisco Switching/Routing :: 1921 / HSRP - Cannot Ping Any Of VLANS

Jul 13, 2012

I have configured HSRP with InterVlan routing. All communication is flowing properly between the vlan's on Router A but when I test failover to Router B I cant ping ANYWHERE. I cannot ping any of the VLANS.

Also, From the primary router I cannot ping any of the interfaces on the secondary router.

I have 2 Cisco 1921 Routers configured for HSRP. Both the G0/1 ports plug into a Cisco 2960S 48 port POE switch (STACKED) (port 1 and port 2 which are trunked and allowing all vlans to pass through. And both of the G0/0 ports are plugged into a Cisco ASA5510.

I have attached a diagram of the setup and the interface configs of the routers.

View 1 Replies View Related

Cisco Switching/Routing :: No Power Inline Commands On 1921?

Jan 27, 2013

I am running a 15.1 or so version of the IOS on a 1921 router. I have plugged in the external PoE injector into the router, and the PoE light on the front of the case is lit green. I have no options in the IOS to enable power on the EHWIC ports. I have most licenses enabled, including data and security.

View 6 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved