Campus Network Question

In a Campus Network design where you have Core switch, Distribution switch and Access switch layers and SVI's acting as your gateways for different VLANs.
Since it is advised that Core Switches should be the root bridges, does that mean that the Core Switches should be the default gateways for your Vlans?
I thought that it was the job of the distribution layer for being the default gateways.
Anyone clarify?

hi friend,
It generally depends on your LAN design.
If you follow Cisco's 3 tier architecture, you should restrict your VLAN boundaries on the distribution switch and should be running a L3 link between the core and the distribution. This means the SVI's are created on the distribution switch which will act as gateways for your VLANs.
This helps in restricting the broadcasts from reaching the core.
If your LAN is actually a collapsed core, you end up configuring the SVIs on the distribution switch which also acts as your core.
HTH, rate if it does
Narayan

Similar Messages

  • WiSM Redundancy in Campus Network L3 Access

    Hi guys,
    I'm designing a Campus network L3 Access in a Building with 30 floors and aproximately 250 APs,8 APs in each floor.
    For each floor I will use two /24 subnet (one for data and one for voice). I have 2 WiSM...
    I don't wanna to use another two /24 subnet for each floor only for redundancy, so I want to know
    if i can use the following idea (Please take a look in the PPT File)
    I will create a AP Group in each controller to include the APs for each 2 floors (for example floor 1 and 2).
    The only diference between those AP Group in each controller is the network subnet associated with the Dynamic
    Interface. The AP Group in controller WiSM1-A will be associated with the 192.168.1.0 network and the AP Group
    in controller WiSM2-A will be associated with the 192.168.2.0 network.
    The APs in the first floor I will configure to use the controller WiSM1-A as primary and I expect to see the hosts with the 192.168.1.0/24 network.
    The APs in the second floor I will configure to use the controller WiSM2-A as primary and I expect to see he hosts with the 192.168.2.0/24 network.
    If one of those controllers fail (for example WiSM1-A), I think all the APs will use the another controller and I expect to see the hosts with the 192.168.2.0. In this case I know that network 192.168.2.0 is used for both the two floors, not more just one floor. I accept that half the users can use the wireless network during the fail..
    Is this works and if yes, can I use this idea with Mobility Group, Roaming L3, etc ????
    Thanks in Advanced,
    Andre Lomonaco

    Hi gamccall,
    First thanks for your reply...
    I like you idea but initially I can't use it cause I put each wism in a ospf tottaly stub area and I use area summarization to have less networks in the core routers....
    In my designing, the wism1 is in the
    range 10.0.0.0 -> 10.0.95.0 and the
    wism2 is in the range 10.0.96.0 ->
    10.0.191.0
    My Best Regards,
    Andre Lomonaco

  • I bought the iPad 4 of America through the Apple Store of almost a month, and I am now in Egypt, and went to Tradeline company in Egypt, and said in an error made, and they do not do anything, what can I do.  (Find Permanent telephone network)  QUESTION:

    I bought the iPad 4 of America through the Apple Store of almost a month, and I am now in Egypt, and went to Tradeline company in Egypt, and said in an error made, and they do not do anything, what can I do.
    (Find Permanent telephone network)
    QUESTION: -
    1 / What to do
    2 / Can you switch the iPad in Egypt (Tradeline)
    3 / Can you switch the iPad in the Apple Store is located in the countries of the world, and what these countries.
    * I do not speak English

    Switching an iTunes Store account to a different country
    http://www.ilounge.com/index.php/articles/comments/switching-an-itunes-store-acc ount-to-a-different-country/
    iOS: How to change the language when it’s set to one you don’t understand
    http://support.apple.com/kb/HT2371
    iTunes: Changing the display language
    http://support.apple.com/kb/ht2242
    iOS: Using international keyboards
    http://support.apple.com/kb/HT4509
     Cheers, Tom

  • Hey Everyone...  I have a networking Question...

    Ok well its more then just one networking question...
    I'm working on a game engine (2d) and for the time being it just has two blocks in a 600 by 480 area, both controled by user input on a single comp. I would like to change this so that i can have the blocks be controled by sepeart computers. I know this is possible I just dont know how, any help would be great.
    My experience with Java is some what limited i've only been programing for the past 6 months and i've never messed with any network code before.
    Any and all help would be great
    Thanks
    Mike

    Boy, that other poster was really helpful, yes? :-P
    What you probably want to do is open a "socket" between one computer and the other. (TCP is probably the easiest/best for your application, as opposed to UDP). This is actually pretty simple, and basically consists of:
    (this client/server arrangement is the easiest. Peer-to-peer would work too, but is generally more complex.)
    1. Computer A decides to become the server and opens a java.net.ServerSocket on port 1234.
    2. Computer B opens a java.net.Socket to computer A's port 1234.
    3. Computer A accepts the connection and gets a java.net.Socket from the ServerSocket.
    4. Now anything computer A writes to the Socket is recieved by computer B, and vice-versa. This is a TCP connection and is stream-based, so it should be familiar if you've done any Java I/O before; in face, you can use java.io.Reader's and Writers, and so on with your Socket.
    See http://java.sun.com/docs/books/tutorial/networking/sockets/ for a good introduction to sockets.

  • 2911 ISR G2 as a core switch in campus network?

    Hello experts,
    Just wonder about having a Cisco 2911 ISR G2 router with Cisco SM-X Layer 2/3 EtherSwitch Service Module (16 port) can be used as a core switch in a campus network. Possible? Our goal is to find a way to simplify our company's network infrastructure by re-using/re-assigning/upgrade some of our existing Cisco network devices in order to reduce cost.
    Kindly advice.
    Regards,
    Alex

    1Gbps backbone between the switch and router? Where can I find the information?
    Go HERE.  
    The interface communication between router-to-module may be 1 Gbps but you won't be able to push 1 Gbps.  

  • Share files in ibook - networking question

    Hello, I have a networking question.
    I have a brand spakin' new 13' MacBook Pro and an older 14' iBook G4 (with a broken airport wireless card).
    My internet is set up so that I have the modem connected to a "wired" ethernet hub, then to an airport express. This way I have wireless for my new MacBook Pro, and I can connect my old iBook to the internet with a ethernet cable.
    Herein lies my question: I want to access all my files on my ibook from my MacBook Pro. I've tried the file sharing and etc on system preferences, but for some reason it still doesn't work. I believe its because they are on different networks? (one wireless, one wired?)
    Any ideas to make my ibook a simple file server.

    Try repairing disk permissions.
    *"The external HD has two partitions, one is a backup of the ibook, and the other has mixed media. When I access my ibook over the network, Only the backup partition appears, and not the mixed media partition. "* Try repairing permissions but not sure if that's going to work. Can't hurt to try.
    Launch Disk Utility. Select MacintoshHD in the panel on the left, select the FirstAid tab. Click: Repair Disk Permissions. When it's finished from the Menu Bar, Quit Disk Utility and restart your Mac.
    Also, your profile indicates you are running 10.4.3. If that is the case, you might want to run Software Updates (from the Apple Menu , then click Software Updates.
    Message was edited by: Carolyn Samit

  • Various Network Questions

    Hey all,
    If anyone saw my last post, and is curious what's happening with me, my school's IT department essentially told me to "proove it" (which is how support personnal should work, right?), which is what I'm now trying to do.
    Regardless, I have a few questions/issues for anyone:
    1) I can't seem to ping ANYTHING (except myself and my school's domain) without receiving a 100% packet loss. Is this because I'm behind the network? That's just a guess on my part, I could always ping outside domains back on my home network, but here I can't ping anything. It boggles my mind! Any other possible causes? I'm still connected to the internet, no doubt.
    2) Is it possible to see a netstat that shows the port connections? I'm using the Network Util. right now, for simplicity, but the terminal isn't a problem for me.
    3) Is it possible to do a traceroute from behind a big network, such as my college campus's? So far, I have failed. Perhaps this is related to #1....
    Thanks in advance!

    >1) I can't seem to ping ANYTHING (except myself and my school's domain) without receiving a 100% packet loss. Is this because I'm behind the network? That's just a guess on my part, I could always ping outside domains back on my home network, but here I can't ping anything. It boggles my mind! Any other possible causes? I'm still connected to the internet, no doubt.
    There is a multitude of reasons why you can't ping. If you're on a private network you don't have a direct connection to the internet, and whatever you talk through might not pass ping packets. This could be a proxy, a router, a firewall or any number of other devices.
    In short, a lack of ping response does not necessarily indicate a lack of connectivity.
    >2) Is it possible to see a netstat that shows the port connections? I'm using the Network Util. right now, for simplicity, but the terminal isn't a problem for me.
    netstat -a will show a list of all active connections on your machine.
    3) Is it possible to do a traceroute from behind a big network, such as my college campus's? So far, I have failed. Perhaps this is related to #1....
    This is almost certainly related to #1. If you can't ping through your network edge it's likely you can't traceroute, either.

  • Host Flapping - Brought entire campus network down

    Hello,
    Yesterday we had a desktop tech patch a linksys switch into 2 different access ports on 2 different 3560s on our campus. This in turn created a major problem in which the entire network was acting sporadic. The core 4510 CPU spiked to 99% and sat there, also all the trunk ports were transmitting 90mpbs consistently throughout the campus.
    I have BPDUGUARD enabled on all the switches by default.
    My question is why didn't the Cisco switches sense this and shut one of the ports off? The second I shut the culprit port down, the network went back to normal.
    How do I prevent this in the future? It took 2 hours to figure this out, in the mean time the network was basically down. I need to know how to prevent this in the  future.

    Leo,
    Both ports he plugged into were set to:
    'switchport mode access'     and
    'spanning-tree portfast'
    'spanning-tree portfast bpduguard default' are enabled on all the switches.
    He was not plugged into a Trunk port.

  • Small office network questions

    I have a small office with 4-5 mac computers. I have a Mac mini set up as a file server and I use a standard cable connection for my internet service. I use a wired router (ethernet cables) all going to a netgear switch.
    Just bought a mac mini and a drobo storage device. I have successfully set up the drobo on the mac mini and I can "see" the files and read & write to the external drive. I also have a few other people in the office -- which will need access to the drobo via the network, but have a few questions there:
    1. I don't see the name of the other computers that can connect to the unit. When I get on one of the other machines and look for the drobo I can find it & edit files but from the mac-mini side, I can't see the proper name of the other computer. How do I do this?
    2. Can I limit which folders are accessible within the drobo that attached to the mac mini
    3. Am I missing anything from a safety standpoint? Can Anyone come into my office and access the files that are on the mac/mini drobo? Worse off, is the mac mini vulnerable to the outside world with this setup?
    Thanks for the help, new to all this networking stuff.

    It's been a week, so i don't know if you have already worked this out, but...
    while I am not familiar with your router, when I have used linksys before, i find it better to use static IP addresses for everything.  Try setting static IP addresses and make sure everyone's mask is 255.255.255.0.  Some routers also have a flag to allow computers to see each other.
    Best of luck.

  • Cisco ASA 5505 VPN Routing/Networking Question

    I have a very basic question about Cisco ASA 5505 IPsec Site to Site VPNs.  I want to install a Cisco ASA 5505 at a Data Center, in a LAN subnet that utilizes publicly routable IP addresses.  I would like to install a second Cisco ASA 5505 in a remote branch office as its peer. 
    Regardless of whether I use publicly routable IPs at the branch office in the "inside" network or non-routable IPs, how would the devices and servers at the Data Center know to route IP packets destined for the branch office back through the Cisco ASA instead of through the default gateway at the Data Center?  I can see accomplishing this if every single device at the Data Center is configured with routing table entries, but that isn't feasible.  It also isn't feasible to use the Cisco ASA 5505 as the default gateway for all of the devices as the Data Center, allowing it to decide where the traffic should go.
    What am I missing?  Is the solution to try to map branch office IPs to IP addresses within the Data Center's LAN subnet so that all of the traffic is on the same subnet?

    You can do it in several different ways.
    One way is to tell the server that if it has traffic to network x then it needs to go to the ASA all other traffic is to head for the default gateway.
    In windows this is done via the route command
    do not forget to make it "persistent" otherwise the route will disapear when your reboot the server.
    in unix/linux
    It is also the route command
    Or you can tell your "default gateway" to route that network to the ASA
    Good luck
    HTH

  • How do I use Home Sharing on campus network?

    I attend Auburn University and they use 802.11X authentication for wireless devices on campus. Right now all my Macbook Pro, iPhone 4, and iPad can all connect to the network just fine. The only problem is that they cannot see each other over AirPlay or iTunes Home Sharing. Does anybody know how I can get this fixed or is this something I am going to need to work through with campus IT?

    go to home-sharing on Apple TV and type in your info as ask.
    hope this help

  • Apple remote and multiple Apple TV's on same network question

    I have 1st gen apple TV, Want to add 2nd gen apple tv.  I assume I can do that.  My real question is when using apple remote, can I control both Apple TVs independently?
    Anyone have any knowledge of if this will work or not?

    Welcome to the Apple Community.
    If you are talking about the supplied remote, as Rudegar suggests you can pair each remote with each device so that only that remote will control the device it's paired with.
    To pair a remote with a device hold down the menu and FF buttons together for six seconds or until you see a chain icon on screen. However it's not all that common for the TV's to be in different locations where an unpaired remote is unlikely to control both Apple TV's together. If you leave the remotes unpaired you should be able to use either remote with either Apple TV.
    Alternatively if you are talking about the remote App for the iPhone, iPad or iPod, each Apple TV will show up as a separate device and you can control any Apple TV on your network from anywhere in your home.

  • Can you help me with an OS 9 OSX Networking question?

    Hi, I'm hoping that this would be the right forum for this question.
    Deal is this... I have an entire archive of material on a Beige G3 with
    OS 8.6 - much of the material in files and so forth require staying in
    that Legacy environment to access stuff that can only be retrieved on
    older Native OS 8.6/9 apps.
    Is there a way, that I can access this computer from an OSX machine via a
    network? I know this may be a radical cross-platform situation but it
    would eliminate alot of headaches if i could figure out a way to create
    either a Remote Desktop, or Networked set-up where I can access the OS 8.6
    machine from one of our OSX (10.4.11) laptops or desktops.
    Any advice on the simplest/easiest way to set this up? The networks do all
    share a router for internet access, so they are physically connected via
    ethernet - that much is in place. If anyone's got a primer on how to make
    this configuration happen on the older machine, I'd be most grateful as I
    need to get a bunch of stuff off of there for a project and am currently
    having to shuttle things via old SCSI-port zip drives to a newer machine...
    (The Beige doesn't recognize USB or FW PCI cards -tho i have em installed...)
    THANK YOU!
    Mike

    Hi, I understand what you mean. The Shareway app as i understand it, is only designed to run on the older OS as the 'host' - per se. When I tried entering the "remote" computers' username/pw on it, it did not recognize it. Is there a version of Shareway that would go on the newer OSX computer? In any event, I was able to get an OSX machine to read the OS 8 machine - by using the IP Server address entry and the "Connect to Server" option for File Sharing from OSX to OS 8/9.... Problem I now have is, as per other post - i wanted to simply open Filemaker on the older OS 8.6 machine from a newer machine to enter some data.
    When I try that, the message is that A) I must have a newer FM version on my OSX
    machine to open that app - and B) it will convert the file on the OLDER machine
    to the NEWER machine's FM version - which isn't the goal as i still want to maintain my FM 4.1 database as an OS 8.6 file for when I am logging in on that machine.
    Doesn't seem it should have to be this complicated eh? Arrgh.
    Isn't there just a way to access and open docs on an 8.6 machine from another computer and perform tasks/functions "as if" i were logged into OS 8.6 -- would
    that be Remote Desktop? Can i run THAT from OSX to OS 8.6 ?
    Thanks!
    Mike

  • Network questions/concerns... please help

    Hi, I need some networking help/advice.  My neighbor asked if she can use my wifi to stream tv/movies only. I couldn't say no because I felt bad and didn't want to say i didnt trust them.  So I hooked up a Netgear router for the wifi while connecting my gaming systems by ethernet to my modem…  I tested the wifi from the Netgear system and it seemed to be working.  I stepped a way for a while and decided to check it again & was able to connect to the NETGEAR but not the internet anymore…..  I know I made no changes but couldn’t find the problem until i ran the network diagnostics on my MacBook….  it created a diagnostic log and suddenly repaired the connection. Is it possible the neighbor was trying to access my local network and caused problems to the wifi?…  how do I find something like this and is there a way to give her access without exposing any of my devices?… and is the way i’ve chosen to do it even protecting at all??…. 

    You have posted your question in a forum and section devoted to Apple and in particular to the MacBook Air. You may get an answer here -- but you may want to consider posting it somewhere that dedicated to networking issues where it may attract an answer from people with more expertise and interest in that type of issue. One example is http://forums.anandtech.com/forumdisplay.php?f=12

  • Network Questions on 2012 R2 Hyper-V Cluster

    I am going through the setup and configuration of a clustered Windows Server 2012 R2 Hyper-V host. 
    I’ve followed as much documentation as I can find, and the Cluster Validation is passing with flying colors, but I have three questions about the networking setup.
    Here’s an overview as well as a diagram of our configuration:
    We are running two Server 2012 R2 nodes on a Dell VRTX Blade Chassis. 
    We have 4-dual port 10 GBe Intel NICS installed in the VRTX Chassis. 
    We have two Netgear 12-Port 10 GBe switches, both uplinked to our network backbone switch.
    Here’s what I’ve done on each 2012 R2 node:
    -Created a NIC team using two 10GBe ports from separate physical cards in the blade chassis.
    -Created a Virtual Switch using this team called “Cluster Switch” with “ManagementOS” specified.
    -Created 3 virtual Nics that connect to this “Cluster Switch”: 
    Mangement (10.1.10.x), Cluster (172.16.1.x), Live Migration (172.16.2.x)
    -Set up VLAN ID 200 on the Cluster NIC using Powershell.
    -Set Bandwidth Weight on each of the 3 NICS.  Mangement has 5, Cluster has 40, Live Migration has 20.
    -Set a Default Minimum Bandwidth for the switch at 35 (for the VM traffic.)
    -Created two virtual switches for iSCSI both with 
    “-AllowManagementOS $false” specified.
    -Each of these switches is using a 10GBe port from separate physical cards in the blade chassis.
    -Created a virtual NIC for each of the virtual switches: 
    ISCSI1 (172.16.3.x) and ISCSI2 (172.16.4.x)
    Here’s what I’ve done on the Netgear 10GB switches:
    -Created a LAG using two ports on each switch to connect them together.
    -Currently, I have no traffic going across the LAG as I’m not sure how I should configure it.
    -Spread out the network connections over each Netgear switch so traffic from the virtual switch “Cluster Switch” on each node is connected to both Netgear 10 GB switches.
    -Connected each virtual iSCSI switch from each node to its own port on each Netgear switch.
    First Question:  As I mentioned, the cluster validation wizard thinks everything is great. 
    But what about the traffic the Host and Guest VMs use to communicate with the rest of the corporate network? 
    That traffic is on the same subnet as the Management NIC. 
    Should the Management traffic be on that same corporate subnet, or should it be on its own subnet? 
    If Management is on its own subnet, then how do I manage the cluster from the corporate network? 
    I feel like I’m missing something simple here.
    Second Question:  Do I even need to implement VLANS in this configuration? 
    Since everything is on its own subnet, I don’t see the need.
    Third Question:  I’m confused how the LAG will work between the two 10 Gbe switches when both have separate uplinks to the backbone switch. 
    I see diagrams that show this setup, but I’m not sure how to achieve it without causing a loop.
    Thanks!

    "First Question:  As I mentioned, the cluster validation wizard thinks everything is great. 
    But what about the traffic the Host and Guest VMs use to communicate with the rest of the corporate network? 
    That traffic is on the same subnet as the Management NIC. 
    Should the Management traffic be on that same corporate subnet, or should it be on its own subnet? 
    If Management is on its own subnet, then how do I manage the cluster from the corporate network? 
    I feel like I’m missing something simple here."
    This is an operational question, not a technical question.  You can have all VM and management traffic on the same network if you want.  If you want to isolate the two, you can do that, too.  Generally, recommended
    practice is to create separate networks for host management and VM access, but it is not a strict requirement.
    "Second Question:  Do I even need to implement VLANS in this configuration? 
    Since everything is on its own subnet, I don’t see the need."
    No, you don't need VLANs if separation by IP subnet is sufficient.  VLANs provide a level of security against snooping that simple subnet isolation provides.  Again, up to you as to how you want to configure things. 
    I've done it both ways, and it works both ways.
    "Third Question:  I’m confused how the LAG will work between the two 10 Gbe switches when both have separate uplinks to the backbone switch. 
    I see diagrams that show this setup, but I’m not sure how to achieve it without causing a loop."
    This is pretty much outside the bounds of a clustering question.  You might want to take network configuration questions to a networking forum.  Or, you may want to talk with Netgear specialist.  Different networking
    vendors can accomplish this in different ways.
    .:|:.:|:. tim

Maybe you are looking for

  • IMac G5 Internal Hard Drive Not Recognized

    I shut down my iMac G5 with the power button and not through the typical shutdown procedure once and then when it booted up it would not get past the gray screen. I eventually used the Leopard DVD to try to boot it and was able to get to disk utility

  • Standardize a flat file format w.r.t OWB

    Hi Pat, or anyone, Can u help me to standardize a flat file format with respect to OWB? I have 15 financial source systems. The client agreed in giving the data in csv format. Now I need to standardize the feed file so that it would be easy for me ha

  • Install from recovery disks to virtual machine?

    So, I put Windows 7 on my Erazer x510, very happy with it. I have the full set of recovery disks, Windows 8.1. Any way this can be installed to a VirtualBox VM? I suspect no but thought I'd ask.... Solved! Go to Solution.

  • Some links are not working

    Could someone please look at the code on this page.  The Home link and the Prices link work in the table on the left but the other links in that table do not work.  I can't figure out what is wrong, perhaps another set of eyes can spot it. Any help w

  • File processing by date

    HI all, I configured file to file scenario, in the sender comm channel I selected file Processing sequence as "By date" which means that Files are processed according to their time stamp in the file system, starting with the oldest file. While testin