Do Catalyst switches forward Precision Time Protocol (PTP) packets?

I understand that the Catalsyt Switch range do not provide PTP Boundary Clocks. However can they still forward PTP packets from a PTP server to a PTP client connected to a port on Catalyst Switch, in particular the 4900M and 3750-X series. I do understand that any switching delay would affect the accuracy of the PTP clock.

So if I have a L2 network consisting of severall access switches connected via trunks to a distribution, with PTP clients in differing VLAN's, as long as each VLAN has a connection to the PTP source then the client will receive the PTP timestamp allthough subject to switching delays?

Similar Messages

  • PTP (Precision Time Protocol) configuration

    Hi,
    Is there anyone has configured PTP on IE-3000 switches? I have some problems with the configuration and operation. Below is the summary of what I've done and the porblems.
    There are two IE-3000 switches with ip services 15.0 (2) SE4 IOS. One has configured in the boundary mode to become master clock and the other one has left in the e2etransparent mode. There are two inter-connection links (via Cat6 ethernet cable) on Gi1/1 and Gi1/2 interfaces on both switches. All inter-connect ports are up and running. Both switches have same IOS, same hardware almost identical except IP configuration etc. Main problem is SW2 is not able to sync with SW1 as master clock (this is my understanding), and also it seems PTP on SW1 has wrong reading of local clock time. But in fact I have NTP server in the network and NTP is syncd. I've included some of the configuration and output here, if someone has experience in configuring and running PTP I would be thankful to give me some help here.
    Regards,
    Tohid
    Configuration on SW1:
    ptp mode boundary
    ptp priority1 10
    ptp priority2 128
    ptp time-property persist 300
    SW1#show ptp clock
    PTP CLOCK INFO
      PTP Device Type: Boundary clock
      Clock Identity: 0x8:CC:68:FF:FE:7F:73:80
      Clock Domain: 0
      Number of PTP ports: 10
      Priority1: 10
      Priority2: 128
      Clock Quality:
            Class: 248
            Accuracy: Unknown
            Offset (log variance): N/A
      Offset From Master: 0
      Mean Path Delay: 0
      Steps Removed: 0
      Local clock time: 00:30:30 UTC Mar 1 1993
    SW1#sh clock
    16:18:10.856 UTC Thu Feb 27 2014
    SW1#sh ntp status
    Clock is synchronized, stratum 3, reference is 10.1.1.1
    nominal freq is 119.2092 Hz, actual freq is 119.2091 Hz, precision is 2**17
    reference time is D6B9E25E.3EAA5D0E (16:12:14.244 UTC Thu Feb 27 2014)
    clock offset is 45.5794 msec, root delay is 1.42 msec
    root dispersion is 57.46 msec, peer dispersion is 5.25 msec
    loopfilter state is 'CTRL' (Normal Controlled Loop), drift is 0.000000985 s/s
    system poll interval is 64, last update was 423 sec ago.
    SW2#sh ptp clock
    PTP CLOCK INFO
      PTP Device Type: End to End transparent clock
      Clock Identity: 0x3C:E:23:FF:FE:44:92:80
      Clock Domain: 0
      Number of PTP ports: 10
      Delay Mechanism: End to End
      Local clock time: 01:08:13 UTC Mar 4 1993
    SW2#sh ptp port gi 1/1
    PTP PORT DATASET: GigabitEthernet1/1
      Port identity: clock identity: 0x3C:E:23:FF:FE:44:92:80
      Port identity: port number: 9
      PTP version: 2
    Port state FAULTY: FALSE
    SW1#sh ptp port gi 1/1
    PTP PORT DATASET: GigabitEthernet1/1
      Port identity: clock identity: 0x8:CC:68:FF:FE:7F:73:80
      Port identity: port number: 9
      PTP version: 2
      Port state: MASTER
      Delay request interval(log mean): 5
      Announce receipt time out: 3
      Peer mean path delay: 0
      Announce interval(log mean): 1
      Sync interval(log mean): 0
      Delay Mechanism: End to End
      Peer delay request interval(log mean): 0
      Sync fault limit: 5000000004271-NET-001#sh ptp port gi 1/1
    PTP PORT DATASET: GigabitEthernet1/1
      Port identity: clock identity: 0x8:CC:68:FF:FE:7F:73:80
      Port identity: port number: 9
      PTP version: 2
      Port state: MASTER
      Delay request interval(log mean): 5
      Announce receipt time out: 3
      Peer mean path delay: 0
      Announce interval(log mean): 1
      Sync interval(log mean): 0
      Delay Mechanism: End to End
      Peer delay request interval(log mean): 0
      Sync fault limit: 500000000

    So if I have a L2 network consisting of severall access switches connected via trunks to a distribution, with PTP clients in differing VLAN's, as long as each VLAN has a connection to the PTP source then the client will receive the PTP timestamp allthough subject to switching delays?

  • Can IPSLA work with PTP(Precision Time Protocol) or Synchronous Ethernet?

    Hello Sir.
    I'm working on IPSLA with NTP, but I couldn't get the value of One-Way Delay in IPSLA.
    I think the time gap between the Source and Responder is bigger than the acceptable time gap for One-Way Delay in IPSLA.
    So, One idea hitting my head is to use the PTP or SynchE, but I'm sure if it will be working or not.
    And another condition in this scenario is that the network device which was originally working as a master in NTP should give the time value to other systems i.e PC and servers. PTP or SynchE can give ??
    I'm using ME3600X-24FS-M (License : Advanced Metro IP Access) 15.3(2)s1.
    This model doesn't support the SynchE, right ?
    Thanks & Regards

    Hello Sir.
    I'm working on IPSLA with NTP, but I couldn't get the value of One-Way Delay in IPSLA.
    I think the time gap between the Source and Responder is bigger than the acceptable time gap for One-Way Delay in IPSLA.
    So, One idea hitting my head is to use the PTP or SynchE, but I'm sure if it will be working or not.
    And another condition in this scenario is that the network device which was originally working as a master in NTP should give the time value to other systems i.e PC and servers. PTP or SynchE can give ??
    I'm using ME3600X-24FS-M (License : Advanced Metro IP Access) 15.3(2)s1.
    This model doesn't support the SynchE, right ?
    Thanks & Regards

  • TCP delay on catalyst switch

    i experienced a TCP delay on catalyst 4506, avoid the problem when i replaced 4506's with dummy unmanaged switches.
    i used two PCs(PC 1 and PC 2) and two 4506 switches (S1 and S2)
    PC 1 is connected to S1 (fast ethernet port)
    PC 2 is connected to S2 (fast ethernet port)
    S1 is connected to S2 (SFP gigabit ethernet port)
    -I started continuous UDP,TCP,MULTICAST and PING from PC1 to PC2
    -I unplugged link between Switch 1 and Switch 2
    all communication stopped.
    -I plugged link between Switch 1 and Switch 2
    -UDP,MULTICAST and PING started immediately but TCP started with approximately 15 seconds delay. :-(
    I repeated same procedure with unmanaged dummy switches instead of 4506, there wasnt 15 seconds delay. TCP showed up in 1 second.
    How can I avoid TCP delay on catalyst switches? Probably some tuning with configuration would do the job?
    tx for helping

    hi gp and thank you very much for responding to this unusual problem.
    - switch ports to the PCs are configured as portfast.
    - switch ports between two catalyst switches are not configured (default)
    - i didnt use the 'switchport access' command since they are default layer 2 interfaces. would 'switchport access vlan 1' command make any difference?
    - i looked at the port status and confirmed connection is 100 mbps full duplex.
    unusual issue is; ping, udp, multicast shows up in a very short time after I re-plug the uplink. that proves all ports are in forwarding state. only TCP shows up with delay, which doesnt occur on 200 $ unmanaged switch??
    thanks in advance for any suggestions

  • Firewall blocks Apple's Network Time Protocol

    Hi,
    I admit to not fully understanding everything about the Firewall on OS X server 10.4.11 and I'm hoping someone can help with a little(?) problem.
    On the WAN side, my "gateway" server is connected directly to my SpeedTouch 780 modem with a fixed IP address. On the LAN side are a couple of switches and then an Airport Extreme base station (192.168.2.249). This broadcasts wirelessly to a more distant Airport Express (192.168.2.247). Both WiFi devices are configured to obtain the time from Apple's European servers.
    After completing a Carbon Copy Cloner of my OS partition and rebooting on my usual volume I noticed the following denials in my Firewall log:
    Dec 28 12:50:16 nl1 ipfw: 65534 Deny UDP 17.72.255.12:123 192.168.2.249:3987 in via en0
    Dec 28 12:40:25 nl1 ipfw: 65534 Deny UDP 17.72.255.12:123 192.168.2.247:3814 in via en0
    In SA --> Firewall --> Settings --> Services --> Edit Services for: 192.168.1-net (en0/modem connection)
    I have the "Allow only traffic for: 192.168.1-net on these ports" checked and
    NTP - Network Time Protocol UDP/TCP is also checked.
    Under, Edit Services for: any
    I have the "Allow only traffic for: any" checked and
    NTP - Network Time Protocol UDP/TCP is also checked.
    Under, Edit Services for: 192.168.2-net (en1/LAN)
    I have the "Allow all traffic for: 192.168.2-net" checked.
    1) Why is this traffic being blocked?
    2) Why does the port number seem to get changed in transit? (I've got NAT running and Open Directory).
    3) Does the configuration under, "Allow only traffic for: any" overrule all other Firewall settings? So if for example a port under, "Allow only traffic for: 192.168.1-net on these ports" wasn't checked but was under, "Allow only traffic for: any", would the traffic be allowed through?
    Thanks and happy new year!
    Michael Franks

    Do you have NTP activated? Does it work? If it doesn't and you have the firewall activated, then open the required port. If it is working then don't worry about it.

  • The difference of the IEEE802.1x Auth between Cisco Routers and Catalyst switches

    Hello
    I am investigating the difference of the IEEE802.1x Auth between Routers and Switches.
    Basically dot1x auth is availlable on Catalyst Switches. however if I want to check to
    PortBased Multi-Auth , MAC address Auth and any certification Auth with this feature,
    Is it possible to integrate into Cisco Router such as Cisco 891F ?
    In my opinion Cisco891F is also available to use basic IEEE802.1x but if it compares with Catalyst switches such as Cat3560X
    I think there might be any unsupported feature on Cisco 891F.
    I appreciate any information. thank you very much in advance.
    Best Regards,
    Masanobu Hiyoshi

    Many time in interviews asked comaprison between cisco  routers and switches that i was answerless bcoz i dont have much knowledge about that.Can anyone provide me the compariosin sheet of the same.how are the cisco devices differ with each other how much Bandwidth each routres support and Etc...
    Ummmm ... The most common question I get is "what is the difference between a router and a switch".
    However, if you get a question like this, then my impression to this line of questioning are:
    1.  The candidate they are looking for has in-depth knowledge of routers and switches.  And I mean IN-DEPTH!;
    2.  They are not looking for a candidate.  They just want to stroke their ego.  There is not alot of people who can give you the "names and numbers" of routers and switches at a snap of a finger.  And if you do happen to know the answer, then and there, then expect a tougher follow-up question. 

  • Can a Catalyst switch terminate a QinQ (double vlan tagged) connection on an SVI?

    Can a Catalyst switch terminate a QinQ connection on an SVI?  Is anything similar possible?
    I know I can pass through QinQ traffic through a switch at L2, but can I take it in at L2 with double tags and terminate it on a L3 SVI somehow?
    Im looking for a simple way of making a WAN lab environment.
    IE I want to do the equivalent of this on a Catalyst such as a 3560/3750:
    interface GigabitEthernet0/0.1
     encapsulation dot1Q 101 second-dot1q 1
     ip vrf forwarding 100101
     ip address 1.1.1.1/24
    interface GigabitEthernet0/0.2
     encapsulation dot1Q 101 second-dot1q 2
     ip vrf forwarding 100102
     ip address 2.2.2.2/24
    thanks in advance.

    Can a Catalyst switch terminate a QinQ connection on an SVI?  Is anything similar possible?
    I know I can pass through QinQ traffic through a switch at L2, but can I take it in at L2 with double tags and terminate it on a L3 SVI somehow?
    Im looking for a simple way of making a WAN lab environment.
    IE I want to do the equivalent of this on a Catalyst such as a 3560/3750:
    interface GigabitEthernet0/0.1
     encapsulation dot1Q 101 second-dot1q 1
     ip vrf forwarding 100101
     ip address 1.1.1.1/24
    interface GigabitEthernet0/0.2
     encapsulation dot1Q 101 second-dot1q 2
     ip vrf forwarding 100102
     ip address 2.2.2.2/24
    thanks in advance.

  • NTP(Network Time Protocol) Error whil installing Oracle 11gR2 RAC

    Dear Friends,
    I have installed oracle 11gr2 clusterware software in two node RAC. While i run the CLUVFY.SH, It shows error in NTP configuration.
    1)I add "-x" parameter in "/etc/sysconfig/ntp" configuration file. and start the ntpd service and run the cluvfy.sh . then i got the below error.
    Check: CTSS state
    Node Name State
    rac2 Observer
    rac1 Observer
    CTSS is in Observer state. Switching over to clock synchronization checks using NTP
    Starting Clock synchronization checks using Network Time Protocol(NTP)...
    NTP Configuration file check started...
    The NTP configuration file "/etc/ntp.conf" is available on all nodes
    NTP Configuration file check passed
    Checking daemon liveness...
    Check: Liveness for "ntpd"
    Node Name Running?
    rac2 no
    rac1 no
    Result: Liveness check failed for "ntpd"
    PRVF-5415 : Check to see if NTP daemon is running failed
    Result: Clock synchronization check using Network Time Protocol(NTP) failed
    PRVF-9652 : Cluster Time Synchronization Services check failed
    Post-check for cluster services setup was unsuccessful on all the nodes.
    =============================================================================================
    2)Down the ntpd service in both nodes and run the CLUVFY.SH.
    Check: CTSS state
    Node Name State
    rac2 Observer
    rac1 Observer
    CTSS is in Observer state. Switching over to clock synchronization checks using NTP
    Starting Clock synchronization checks using Network Time Protocol(NTP)...
    NTP Configuration file check started...
    The NTP configuration file "/etc/ntp.conf" is available on all nodes
    NTP Configuration file check passed
    Checking daemon liveness...
    Check: Liveness for "ntpd"
    Node Name Running?
    rac2 no
    rac1 yes
    Result: Liveness check failed for "ntpd"
    PRVF-5415 : Check to see if NTP daemon is running failed
    Result: Clock synchronization check using Network Time Protocol(NTP) failed
    PRVF-9652 : Cluster Time Synchronization Services check failed
    Post-check for cluster services setup was unsuccessful on all the nodes.
    ==========================================================================
    3)Based on some website advice, I down the ntpd service and move the "/etc/ntpd.conf" to another location.Then i got the below error.
    Result: Query of CTSS for time offset passed
    Check CTSS state started...
    Check: CTSS state
    Node Name State
    rac2 Observer
    CTSS is in Observer state. Switching over to clock synchronization checks using NTP
    Starting Clock synchronization checks using Network Time Protocol(NTP)...
    NTP Configuration file check started...
    ERROR:
    PRVF-5402 : Warning: Could not find NTP configuration file "/etc/ntp.conf" on node "rac2"
    PRVF-5405 : The NTP configuration file "/etc/ntp.conf" does not exist on all nodes
    rac2
    PRVF-5414 : Check of NTP Config file failed on all nodes. Cannot proceed further for the NTP tests
    Result: Clock synchronization check using Network Time Protocol(NTP) failed
    PRVF-9652 : Cluster Time Synchronization Services check failed
    =============================================================
    What should i do to solve this issue?? Please help me ...

    Hi,
    I start the ntpd start the service in both node and done the CLUVFY.SH.
    The output is below,
    Checking if CTSS Resource is running on all nodes...
    Check: CTSS Resource running on all nodes
    Node Name Status
    rac2 passed
    rac1 passed
    Result: CTSS resource check passed
    Querying CTSS for time offset on all nodes...
    Result: Query of CTSS for time offset passed
    Check CTSS state started...
    Check: CTSS state
    Node Name State
    rac2 Observer
    rac1 Observer
    CTSS is in Observer state. Switching over to clock synchronization checks using NTP
    Starting Clock synchronization checks using Network Time Protocol(NTP)...
    NTP Configuration file check started...
    The NTP configuration file "/etc/ntp.conf" is available on all nodes
    NTP Configuration file check passed
    Checking daemon liveness...
    Check: Liveness for "ntpd"
    Node Name Running?
    rac2 yes
    rac1 yes
    Result: Liveness check passed for "ntpd"
    Checking NTP daemon command line for slewing option "-x"
    Check: NTP daemon command line
    Node Name Slewing Option Set?
    rac2 yes
    rac1 yes
    Result:
    NTP daemon slewing option check passed
    Checking NTP daemon's boot time configuration, in file "/etc/sysconfig/ntpd", for slewing option "-x"
    Check: NTP daemon's boot time configuration
    Node Name Slewing Option Set?
    rac2 yes
    rac1 yes
    Result:
    NTP daemon's boot time configuration check for slewing option passed
    NTP common Time Server Check started...
    PRVF-5410 : Check of common NTP Time Server failed
    PRVF-5416 : Query of NTP daemon failed on all nodes
    Result: Clock synchronization check using Network Time Protocol(NTP) passed
    Oracle Cluster Time Synchronization Services check passed
    ========================================================================================
    [oracle@rac1 ~]$ /u01/app/grid/oracle/product/10.2.0/db_1/bin/cluvfy comp clocksync
    Verifying Clock Synchronization across the cluster nodes
    Checking if Clusterware is installed on all nodes...
    Check of Clusterware install passed
    Checking if CTSS Resource is running on all nodes...
    CTSS resource check passed
    Querying CTSS for time offset on all nodes...
    Query of CTSS for time offset passed
    Check CTSS state started...
    CTSS is in Observer state. Switching over to clock synchronization checks using NTP
    Starting Clock synchronization checks using Network Time Protocol(NTP)...
    NTP Configuration file check started...
    NTP Configuration file check passed
    Checking daemon liveness...
    Liveness check passed for "ntpd"
    NTP daemon slewing option check passed
    NTP daemon's boot time configuration check for slewing option passed
    NTP common Time Server Check started...
    PRVF-5410 : Check of common NTP Time Server failed
    PRVF-5416 : Query of NTP daemon failed on all nodes
    Clock synchronization check using Network Time Protocol(NTP) passed
    Oracle Cluster Time Synchronization Services check passed
    Verification of Clock Synchronization across the cluster nodes was successful.
    [oracle@rac1 ~]$
    ================================================================================
    I hope the problem solved. Am i correct??

  • Old problem with precision time counting and /usepmtimer solution.

    Hello, all!
    There was a problem in Windows XP and 2003 Server with using QueryPerformanceCouner() function. Sometimes it can cause problem with precision time measurements on CPUs which support powersaving modes by changing clock frequency. The simplest solution for that was /usepmtimer key in boot.ini file which forces the system to use another timer.
    I just want to know does this problem appear in Windoes 7? And how to solve it since there is no boot.ini file in Windows 7?
    Thanks a lot!
    P.S. This is a page with detailed description of the problem:
    http://support.microsoft.com/default.aspx/kb/895980

    Hi ,
    There is official documentation released on userpmtimer for windows 7 operating system.
    Also the KB article only refere to the OS which have performance problem.
    After reading the below article , i feel that this problem is taken care in windows 7 / windows 2008 ( though there is no formal written documentation )
    http://blogs.technet.com/perfguru/archive/2008/02/18/explanation-for-the-usepmtimer-switch-in-the-boot-ini.aspx
    you can post in windows 7 dedicated forum, so that MVP / Microsoft Engineers and community members would suggest you with latest data if any.
    http://social.technet.microsoft.com/Forums/en-US/category/w7itpro

  • RV220W DMZ not working and protocol 41 packets not forwarded

    After fighting a brand new RV220W for hours I am just about giving up on it.
    It does not forward anything the to the DMZ server including the IP protocol 41 packets needed for our IPv6 6in4 tunnel.
    Nor does it send protocol 41 packets to the WAN.
    TCP and UDP packets are only forwarded to the DMZ server if specifically done by a firewall rule.
    CISCO support was not able to solve the problem after half an hour on the phone.
    Factory resets and absolutely minimal configuration changes have been tried to no avail.
    Firmware is 1.0.1.0.
    The hairpinning problem as well as the weird time problem cause by ticking the daylight savings box has been observed as well.
    Should I return this thing having learned that CISCO quality is a thing of the past ?
    The Netgear WNDR3700 it was supposed to replace, due to the SNMP support found in this router, happily forwards packets at half the price.

    Manually creating a firewall rule with protocol 41 in the backup config file and restoring it makes no difference.
    (A new checksum for the configuration file may be generated by md5sum when the checksum line has been deleted)
    Default should be to route all IP packets regardless of protocol number to the DMZ server, when DMZ is enabled. Now the router returns a ICMP port unreachable message to the WAN sender.
    Update:
    The problem is only present when the dual stack IPv4/IPv6 feature is enabled, so after all it may be a bug and not a design decision. Waiting for Cisco support to verify/advice on this.
    BTW it is unbelievable, that the configuration file (plain text) saved by the backup function in the router cannot be read / used by Cisco suppport. They can only handle something which can be displayed in a browser (sic!)
    Update 2:
    Further testing has shown, that the option of forwarding of protocol 41 packets for 6in4 tunnels in any mode (IPv4 only or IPv4/IPv6) is randomly enabled. Sometimes suddenly working after 30 minutes. At other times not at all even after a reboot. Occasionally it has been working in both modes.
    I have provided information about this to CISCO.
    Cisco support has recognized this to be a problem of the current software 1.0.1.0 and is issuing a refund of the router.

  • Cisco 4507 Catalyst switch goes down

    Hi,
        We have  cisco 4507 catalyst switch in which end users are connected. today this catalyst switch goes down , i checked the input power was normal but the Switch is not running. All the notification lights like supervisior engine and Fan status lights are showing in RED colur . So i switched off the SMPS and wait for some time and i switched ON , the switch starts running and in 3-4 minutes it again goes down.  
    Thanks and Best Regards,

      Get on the console port and watch it while it is booting up.  It will usually tell you why it is failing in the logs or messages as it is booting up . 

  • Can MPLS aware Netflow ver. 9 be enabled on the catalyst switches 6500

    HI, I'm working for KOREA TELECOM, and currently providing MPLS VPN.
    We're planning to provide our customer with traffic report using NetFlow..
    I read some documents which reads Netflow ver.9 can be enabled on Cisco GSR 12000 Series, but no mention about catalyst switches. So, I ' m curious about that Netflow ver 9 can be activated on catalyst 6500 series.. because the point where switch is located already have mpls encapsulated packet ( mpls vpn packet).
    Thank you , in advance.

    NetFlow is now integral to Cisco 6500. A configuration we recommend is as below:
    mls netflow     // This enables NetFlow on the Supervisor.
    mls nde sender version 7
    mls aging long 64  // This breaks up long-lived flows into (roughly) one-minute segments.
    mls aging normal 32  // This ensures that flows that have finished are exported in a timely manner.
    mls flow ip interface-full
    mls nde interface
    The  next two commands will help to enable NetFlow data export for  bridged  traffic which is optional. You can specify the list of VLANs  here to  enable bridged traffic.
    ip flow ingress layer2-switched vlan
    ip flow export layer2-switched vlan
    Apart from this, NetFlow has to be enabled on the MSFC using the below commands.
    ip flow egress       // This command has to be executed on all the L3/VLAN interfaces.
    ip flow-export destination {hostname|ip_address} 9996  // The hostname or IP address of the flow server
    ip flow-export source {interface} // The interface through which NetFlow packets are exported. eg: Loopback0
    ip flow-export version 9
    ip flow-cache timeout active 1
    snmp-server ifindex persist
    The new Cisco Flexible NetFlow actually allows for export of MPLS specific information (I believe it is stack lables) in addition to information on IP Address, port, etc. But you will need a tool that can support these additional fields. Otherwise you can view IP, port, protocol, etc related information from MPLS links.
    Regards,
    Don Thomas Jacob
    ManageEngine NetFlow Analyzer

  • Cannot Establish Gigabit Link Between Catalyst Switches and GSR Router

    The GSR Gigabit interface is configured for no negotiation auto and the line protocol goes up when connected to the Catalyst switch.
    The Catalyst switch port remains unconnected even when it is physically attached to the GSR router.

    The flow control settings must match on both sides for the link to come up. It is highly recommended that you configure auto-negotiation to on for both devices. (Auto-negotiation is enabled by default on all Catalyst switches.) Otherwise, if you have a layer 1 problem, the link remains up and a unidirectional link will result.
    The initial software releases that support Gigabit Ethernet on the GSR router do not support gigabit auto-negotiation.
    The following command configures gigabit auto-negotiation on the Catalyst 6000/6500:
    set port negotiation module/port disable|enable

  • Standard Catalyst switch vs. Enhanced routing version

    I have question regarding the Cisco catalyst switches with the enhanced routing option.
    As I understand it to do layer 3 routing between vlans on a standard catalyst switch IOS requires me to configure a port on the switch with 802.1Q, plug that port into a seprate router and configure the router's port (also configured with 802.1Q) as a 'router on a stick' for each vlan i need to route. Then any additional switches I want to add to the network I would simply trunk them back to the switch that has the router plugged in so i could have inter-vlan routing. Does this sound correct?
    Now if I used a switch with the enhanced layer-3 IOS (A WS-C3560G-24TS-E for example) would i be able to remove the extra router from the design? would the packet routing go at the speed of the back-pane of the enhanced switch, rather than the wire-speed of the connection to a external router? I would also be able to get a gigabit SFP for each of my additional switches (3500XL's) and plug them into a trunked port on the 3560 thus giving a full gigabit trunk to each access layer switch.
    Or would a router on a stick be a fine solution for inter-vlan routing? There will be a need for a integrated services router in the future to act as our CME for this site, so we will be purchasing a router anyways.

    Hi Friend,
    If you have layer 3 switch with standard image then also you will be able to configure intervlan routing on layer 3 switch.
    Enhance image on layer 3 switch will let you configure routing protocols like ospf, bgp and enhance qos features whih is not possible with standard images.
    But just for intervlan routing any layer 3 switch like 3550,3560 will let you achieve inter vlan routing without using external router.
    Have a look at this link for intervlan routing on layer 3 switch like 350/3560 switches
    http://www.cisco.com/en/US/tech/tk389/tk815/technologies_configuration_example09186a008015f17a.shtml
    HTH, if yes please rate the post.
    Ankur

  • Can you tell the IP address of a device attached to a 6500 Catalyst Switch

    I have devices attached to a Catalyst switch, and I wanted to find out which device is attached where by checking the IP address of a specific device attached to a port. The ARP tables don't show any devices. Anyone know a quick/dirty way to do this?

    The arp table on your switch does not show this as the switch does not talk to devices directly and thus does not need this information. Do this:
    - From the switch ping devices you want to find where attached to.
    - type "sh arp" on the switch. This time it will contain the information you need.
    Similar to this:
    switch6500> (enable) sh arp
    ARP Aging time = 1200 sec
    + - Permanent Arp Entries
    * - Static Arp Entries
    10.0.0.1 at xx-xx-xx-xx-xx-xx port 1/1 on vlan 15
    10.0.0.30 at yy-yy-yy-yy-yy-yy port 1/1 on vlan 15
    switch6500> (enable) ping 10.0.0.20
    ----10.0.0.20 PING Statistics----
    5 packets transmitted, 5 packets received, 0% packet loss
    round-trip (ms) min/avg/max = 1/1/1
    switch6500> (enable) sh arp
    ARP Aging time = 1200 sec
    + - Permanent Arp Entries
    * - Static Arp Entries
    10.0.0.1 at xx-xx-xx-xx-xx-xx port 1/1 on vlan 15
    10.0.0.30 at yy-yy-yy-yy-yy-yy port 1/1 on vlan 15
    10.0.0.20 at zz-zz-zz-zz-zz-zz port 3/22 on vlan 15
    switch6500> (enable)

Maybe you are looking for