How to disable inter-VLAN ping response from L3 switch

Correction - This was originally posted for my SG300, but it's actually one of my SGE/2010
I am experiencing an odd behavior from my SG300.  When pinging an IP that is in another VLAN (which requires L3 routing), my switch responds if an IP does not exist on the network.  For example, let's say I am on subnet A (192.168.0.0) and I want to ping an IP on subnet B (192.168.1.0).  If the IP does not exist on subnet B, the SG300 will respond that 'Destination host unreachable'.
You may ask, so what's the big deal?  And for the most part I agree, however, there are some circumstances where certain searches on the network falsely identify this as a device residing at that IP.  One example is Spiceworks and another is Symantec Endpoint Protection Manager.  In both instances, the software is looking for devices to add to inventory and when it receives this 'Destination host unreachable' message from the SG300, it believes something is on that IP.
This problem does not occur if the search is on the same subnet, but only appears when it crosses over to another subnet and routing is involved.
My question is, how do I tell the SG300 to NOT respond with "Destination host unreachable" when an IP does not exist in another VLAN on the switch?
Thanks in advance!

The PC10 in vlan 10 can not ping the gateway (10.64.16.1) of vlan 20. It can only ping its own gateway 10.64.8.1
Both hosts are running Windows 7 professional with firewall turned off.
The same for the PC20 in vlan 20. It can only ping its own gateway (10.64.16.1) but not vlan10's gateway (10.64.8.1)
In fact, just for testing purposes.
I temporarily assign g0/1/2 (which was on vlan20) to vlan10 now. Changed the host (PC20) IP to 10.64.8.3.
After this change, the 2 hosts can ping each other (in the same vlan 10)....that's expected. So, the OSes and firewalls issues on the hosts are not the issue. They can ping each other when they are in the same vlan.
However, now that they are in the same vlan, they still can't ping out to G0/0 192.168.0.162.
So, the problem is how to ping from the layer 2 EHWIC to the built-in G0/0 and G0/1 router ports?

Similar Messages

  • How to disable App tabs (pined tabs) from being started automatically?

    how to disable App tabs (pined tabs) from being started automatically?
    because the option [Don't load tabs until selected] dose not work with it, and it keeps starting every time when I restart Firefox.
    Please help me!

    Don't bother, I reached to the solution by my self, you can do it as following:
    Type "about:config" [ without quotation marks! ] in the Location Bar (address bar) and press Enter to display the list of preferences, as shown in the picture '''#1''' in Firefox 17 on Windows 7.
    If you see a page with the warning message as shown in picture '''#2''', This might void your warranty!, click the button labeled "I'll be careful, I promise!", to continue (in fact, there is no warranty whatsoever, it's more a joke to ensure that users are aware of what they are about to do). uncheck the check-box there to avoid the warning in the future.
    Now at the search bar in the picture '''#3''' type: ''tab'' and look for the
    '''preference name:'''
    browser.sessionstore.restore_pinned_tabs_on_demand
    or you can '''copy''' it directly to the search bar,
    '''Next,''' follow the instruction in picture '''#3''' .
    Just in case if the pictures didn't appear, do ''these steps'':
    '''First:''' Right click at the preference name that we searched for.
    '''Next,''' click Toggle to change the value from false to true.
    '''Or,''' double click on it and it will change.
    '''Finally,''' restart Firefox and you will notice that they don't load automatically until you click on it.
    That's it, Good luck to all. ''';-)'''
    '''Note''': The bolded font preferences list is the user modified, and the un-bolded is the default setting.
    '''Warning''': Modifying preferences can, in rare circumstances, break Firefox, Thunderbird or the Mozilla Suite, or can cause strange behavior. Only do so if you know what you are doing or are following trustworthy advice.
    Additional INFO:
    about:config is a feature of Mozilla applications which lists application settings (known as preferences) that are read from the profile files prefs.js and user.js, and from application defaults. Many of these preferences are not present in the Options or Preferences dialog. Using about:config is one of several methods of modifying preferences and adding other "hidden" ones.

  • 881 - How to configure inter-VLAN routing

    I hesitate to post here -- I know that I should know my job. But here goes...
    Small business wants to use an ASA 5505 firewall on the edge connected to VDSL modem, and then an 881 to route internally (see attachment). The 881 has a downstream link to a 2960.
    Want the following "blocks":
    VLAN 33 - CLIENTS
    VLAN 55 - SERVERS
    VLAN 101 - CDLAB
    The lab is for testing, and will be connected via Cisco 2500 series router. The server farm (Server 2008 domain +) will be connected via layer 2 switch over VLAN. A DMZ is anticipated after basic connectivity is established. Connectivity is already verified from a client connected to the INSIDE interface of the ASA going to the OUTSIDE and back.
    Before I started I wiped the devices in order to start clean. Both the router and the switch are in vtp mode transparent.
    To build a trunk link, I connected the 881 and the 2960 using a crossover cable from int fa0 to int fa0/8 respectively.
    On both devices' interfaces I set switchport mode trunk.
    I configured the 3 VLANs on the 881, assigned IP addresses to them, and used switchport trunk allowed vlan add 33,55,101 to assign them to the trunk but that doesn't appear in the sh run output under the interface.
    I set both devices' to switchport nonegotiate (best practices?). Once again, on the 881 this command doesn't appear in the running config.
    I configured the 3 VLANs on the 2960, then used the same switchport commands as above to assign them to the trunk.
    Here's the deal.
    From a client connected to a VLAN 33 access port on the 2960, I can't ping, for example, the VLAN 55 IP address. I can ping the VLAN 33 IP address. I also can't ping the IP address of the interface on the far side of the router headed to the ASA (int fa4).
    What am I doing wrong? I'll gladly post the running configs if anyone wants to see. I've spent most of the day on this racking my brain and literally scouring the Internet. I'd be very grateful for some assistance.
    Help!

    Thanks, Mike.
    Yeah, I might not have been too clear. But on the router, each VLAN was created using the vlan 33 command (for example) and given a name. Then I went to int vlan 33 (for example) and used ip address 10.0.33.xx 255.255.255.0 for the address and subnet mask. Those have been in place since I started. And like I said, I can ping the SVI for VLAN 33, which is mapped to the client access port I'm on.
    The problem is, I still can't ping inter-VLAN and I still can't ping the far side interface.
    Bummer...

  • How to disable text can be adopted from inforecord (PO text)

    Hi,
    I have a issue in PO output, when I try to create a PO through ME21N transaction, the inforecord PO text is not printing in PO output.
    It is printing only when I click on the option text can be adopted from inforecord (PO text).
    This option is there in item details text tab.
    Please let me know how to disable this option, because when I create PO automatically, it is not printing inforecord PO text.
    Here we almost all PO's create through automatically, so we should not have any restriction to print this.
    When we create PO, automatically the text should print.
    Please advise.
    Thanks,
    Sandhya

    In customizing for purchasing , under SPRO -? materials management-?Purchasing-? Purchase Order->Texts of rpurchas eorders->define copying rules for item texts , here select 02-info record PO text  and click on "text linkages" .
    Here for sequence 0 ,"Info record PO text " , the fix indicator should be " "  BLANK.  In this case, the text should automatically be adopted in the PO , and should come in print

  • How to disable "overwrite exisintg files" checkbox from Upload.aspx

    Hi Folks,
    I have a requirment to disable 'Overwrite existing files' check box from upload.aspx for only 2 specific libraries and it should be in visible for rest of libraries.
    could you please share the code snippet / any other suggestions to make it full this requirement.
    Thanks,
    janaiah

    Hi 
    you can use jquery to do so.
    $(document).ready(function()
        var
    form = $('form');
        if
    ( form.attr('action').indexOf('YOUR 36 character List ID - Without Braces') > -1 )
            var
    checkbox = $('#ctl00_PlaceHolderMain_UploadDocumentSection_ctl03_OverwriteSingle');
            checkbox.prop('checked',false);
            checkbox.parent().hide();
            var
    multiple = $('#ctl00_PlaceHolderMain_UploadDocumentSection_ctl03_UploadMultipleLink');
            multiple.hide();
    https://sharepoint4u.wordpress.com/2013/08/13/how-to-disable-overwrite-exisintg-files-in-a-library/
    Regards,
    Rajendra Singh
    If a post answers your question, please click Mark As Answer on that post and Vote as Helpful
    http://sharepointundefind.wordpress.com/

  • How to set up VLANs for Cisco SG500 - 28 switch

    Hi,
    First of all, this is my first post in here, I hope someone can help me, and please be patient since I am very little experienced.
    OK, so let me explain you the scenarion that I am facing and hopefully someone will be able to help me.
    We have a Cisco SG500 - 28 port gigabit switch in our workplace.
    Our goal, is to create 3 VLANs and seperate the networks between different departements.
    VLAN1 (which is the default VLAN in the switch) - will be used for IT department and the management.
    VLAN100 - will be used for business .
    VLAN200 - will be used for guests who need to connect to the internet through WiFi.
    I have created VLAN100 and VLAN200, and VLAN1 is there by default.
    I want to use port 13 for VLAN200 and to connect the Wifi access-point there.
    The uplink is in port 25.
    I would be glad if you could explain me the stuff first in a abstract more general level, and then we can look at the specific scenario that we have.
    The Cisco SG500 - 28 gets internet from a Sophos UTM 9 router.
    I will need to take care of inter-VLAN routing as well, and subnet, and DHCP
    Thanks in advance,
    Kindest regards,
    D

    Hello Desmond,
    You have two different options:
    Option 1:
    Configure Sg500 switch as a Layer 2 switch and let the Sophos firewall do all the Layer 3 routing along with internet access. If you choose this option, then, you need to configure your uplink port as a trunk port and allow all 3 vlans to pass through. Also, you need to make sure that the Sophos device supports VLANs and trunking (or at least sub interfaces and create sub interfaces for each vlan). Also, all LAN devices will have the respective sub-interface/VLAN interface IP on the Sophos as their default gateway.
    Option 2:
    Configure SG500 switch as a Layer 3 device and configure intervlan routing to manage internal network traffic locally and send just the internet traffic to Sophos device.
    You need to create Layer 3 interfaces for VLAN1, VLAN100, and VLAN200 on SG500 and then make those Layer 3 interfaces default gateway for respective VLAN.
    You can configure the uplink port as an access port in one of the VLANs.
    Make sure that the Sophos device has an IP on the same subnet as the VLAN you chose for the uplink port.
    You also need to enter static routes on the Sophos device for the remaining two subnets on the SG500 (next hop address pointing to the IP address of the VLAN that the uplink port belongs to).
    Also, on the SG500, you need to configure a default route, next hop address pointing to the Sophos interface IP address.
    Hope this helps.
    Nagaraja

  • HOW TO DISABLE WEB CONSOLE IN A 2950 CISCO SWITCH

    HOW TO DISABLE WEB CONSOLE IN A 2950 CISCO CATALYST SWITCH ?

    I have disabled HTTP access but enabled HTTPS access on my switches. 
    switch(config)#no ip http server
    (this will disable web or http access)
    switch(config)#ip http secure-server
    (this will enable https access or no ip http secure-server will disable https access)

  • No ping response from PC to iMac

    After many problems and fixes to iMac G5 and Windows XP PC
    connected via a router, this one specific problem is immutable:
    Do a ping from the iMac to the PC -- no response. Ping from
    PC to iMac or iMac to router or PC to router -- good response. Just in case it means anything, the PC firewall is disabled.
    Both computers can connect to the Internet (via router to Cable modem), but until I did a disk cleanup (via VCOM SystemSuite) the PC would disconnect after about 2 minutes (but only if the iMac was up and running w/router).
    Any idea why the PC will not respond to the iMac ping?

    The problem was not a cable after all. I have two firewalls
    installed in the Windows XP computer: Windows and SystemSuite. At least one of them remains active when disabled; I think it is SystemSuite. Rebooting the PC after disabling the firewalls allows the ping. That has been pretty consistent.
    When I enable the Windows firewall with the box "Don't allow
    exceptions" unchecked, leave the SystemSuite firewall disabled, on start up the ping is ok. That allowed Samba to work and I can transfer files.
    Moral of the story: If I load up the system with enough junk something will not work.
    Thanks again.

  • How to disable browser back/forward buttons from JSF

    Hi,
    I am working on one JSF based project
    I have a requirement where I don't want the application users to go back/forward using browser back/forward buttons so I want to disable the browser's back/forward buttons for my application.
    Can anyone tell me how to do that?
    Thanks in advance.
    Regards,
    Vijay Kumar

    Hi,
    Thanks for your response on this.
    My problem is that I am opening the new popup windows using setOnLoad Handler in JSF like following:
    getTmpBody().setOnLoad("window.open(\"abc.jsp?grantId="+txtGrantId.getValue().toString() + "&sunId=" + empDetails_Global + "&tmplNm=" + aggrTmplName + "&ctryCode=" + ctryCode +"\", \"Agreement\",'width=800,height=600,scrollbars=yes');return false;");
    Now everytime I am going to any other tab or page, I am setting the setOnnLoad handler to blank like
    getTmpBody().setOnLoad("");
    Now the problem is when I open a popup window and close this and then click on browser back/forward buttons, the last opened popup window again come up. This is the problem since I don't want last opened popup window to get opened again on the click of a browser back/forward buttons.
    This is a very urgent issue and I need to resolve this asap.
    Please help me on this.
    Thanks,
    Vijay Kumar

  • How to disable report's execution requests from the browser

    Hello gurus,
    We are implementing several security measures in our application, some of them are related to reports execution/visualization, we need to avoid users accessing reports that they don't have privilege to see. The reports were execute by Forms via RUN_REPORT_OBJECT, destination type CACHE and destination format PDF, then we displayed the output using the jobId provided to Forms by the Reports Server. Because these jobIds are sequential numbers any person was able to change the jobId in the URL and get the output of another report. This violated the Confidentiality of information.
    Now we generate all reports output to file, the file name is a random value, to avoid guessing. The problem is that even though the official way to execute a report is via the application, the report servlet is accepting request as URLs, and this violates the access controls we have implemented in the application.
    Is there a way to stop the reports servlet without affecting the valid requests (from RUN_REPORT_OBJET in Forms) or is there another possible way to disable URL requests?
    TIA
    Victor.

    If you are using Portal and SSO, you can assign privileges on Reports and Reports Servers to groups and/or users. For more info, see Chapter 10 of the "Publishing Reports to the Web" documentation: http://download.oracle.com/docs/cd/B14099_19/bi.1012/b14048/pbr_sec_arch.htm#i1006221

  • How to disable auto header and footer from firefox desktop Application

    I build a Firefox desktop application for my company. i need to print some page from that application using JS window.print(). It Works Perfectly in my application. But the problem is when it printing my document it prints a header and a footer automatically. I Want to remove this. I can remove this on Firefox browser , but i cant remove this on my application. Please Somebody Help Me.
    here is my application link: https://marketplace.firefox.com/app/hmspro
    User Login : admin / Password: 123
    if you want to get into printing page navigate invoice > paid invoice > print button.
    I also tryed from about:config and disable all default header footer. but it wont worked.

    Hi saaiful,
    Thank you for posting your question. window. will print header and footer.
    Here are some solutions I found after researching your issue:
    *[http://forums.mozillazine.org/viewtopic.php?f=12&t=216810]
    *[http://stackoverflow.com/questions/8228088/remove-header-and-footer-from-window-print]
    *[http://www.dreamincode.net/forums/topic/22598-using-windowprint-without-printing-header-and-footer/]
    *take a screenshot and create a page that is printable [http://www.webdeveloper.com/forum/showthread.php?210947-Using-window-print-without-printing-header-and-footer]
    *Target to another window then print: [http://www.liferay.com/community/forums/-/message_boards/view_message/3401817]
    Hope this helps.

  • How to disable a specific windows service from a monitor?

    Hi,
    Recently I created a SCOM 2012 R2 Pool to mange around 40 Win 2012 servers,  however from the first day i got heaps of RemoteRegistry Services stopped alert.
    What i want to do is to disable the RemoteRegistry Service monitoring, but still can hear the voice from other services.
    From the Service Alert Monitor : "Service Running State", i have following options to disable
    1.: For the object: RemoteRegistry, it's OK, but i don't want to do it 40 times.
    2.For the objects of Class: Windows.ServiceClass: it will disable all Service monitoring
    3. For a group: same, stop all services
    4 . For a Specific object of class: Windows.SersviceClass, i can't choose multiple servers.
    5. For all objects of another class: no idea what to choose.
    Anyone has same experience like this? thanks!

    You will need to Select override For all objects of class:
    Class and disable monitoring Services and select enforce to ensure that applied.
    Please remember, if you see a post that helped you please click "Vote As Helpful" and if it answered your question, please click "Mark As Answer"
    Mai Ali | My blog: Technical | Twitter:
    Mai Ali

  • How to disable Photoshop Elements 4.0 from opening up.

    Hi all, just wanted to thank all of you for answering my two other questions I had. My question now is when I start up Photoshop Elements 4.0 up it goes through alot of info before it actually opens up to view my pic's. Is there a way to just open my pic's up without it going through Photoshop's window first? Can I disable that start up feature?
    One more quick question. When opening up any pic's it automatically open up in Photoshop. I don't want it to do this I want to open pic wherever I want. Thanks again all for you great help.
    [email protected]

    While in windows, right click on an image file, go to "open with" and choose the program you prefer--it was probably "windows picture and fax viewer"(or something like that) before you installed PSE--and check the box "always use this program".
    You need to do this for all of the image types you want to open with the alternate program: jpg, gif, etc.

  • CS4 How to disable anti alias when pasting from Illustrator to Photoshop?

    Hello,
    I'm trying to paste vector artwork from Illustrator into Photoshop but it seems no matter what I do Photoshop anti aliases the illustration. Is there a way to keep this from happening?
    The whole point of making the art in Illustrator was to keep the edges clean and the colors limited.
    Your suggestions are much appreciated.

    In Illustator >> Object >> Rasterize >> Anti-aliasing>> None
    Copy and paste this into Photoshop.
    Or
    Illustrator >> File >> Export >> psd >>turn off anti alias

  • How do you handle a large response from a command that overflows the buffer?

    When I am SSHed into a radio and execute the mca-status, the output is very long and is truncated.
    action 040 cli command "mca-status" pattern "#"
    Here is the output of this mca-status command.   The items I want to access are:
    wlanTxRate=240.0
    wlanRxRate=181.0
    distance=0
    With such a long output, can an Applet work?
    XM.v5.5.6# mca-status
    deviceName=2.4_AP.11,deviceId=DC:9F:DB:6A:A2:17,firmwareVersion=XM.ar7240.v5.5.6.17762.130528.1755,platform=Rocket M2,deviceIp=192.168.2.11
    apMac=DC:9F:DB:6A:A2:17
    wlanOpmode=ap
    wlanConnections=3
    wlanUptime=1233005
    essid=2400
    freq=2429
    signal=-40
    noise=-89
    ccq=991
    uptime=1233005
    loadavg=0
    memTotal=62012
    memFree=42868
    memBuffers=2340
    ackTimeout=24
    distance=0
    lanIpAddress=0.0.0.0
    wlanIpAddress=0.0.0.0
    wlanTxRate=240.0
    wlanRxRate=181.0
    wlanTxLatency=1
    wlanPolling=1
    wlanPollingQuality=79
    wlanPollingCapacity=63
    lanRxBytes=1154446904
    lanRxPackets=486877943
    lanRxErrors=0
    lanTxBytes=2283315134
    lanTxPackets=62737619
    lanTxErrors=0
    lanPlugged=1
    lanSpeed=100Mbps-Full
    wlanRxBytes=2786682138
    wlanRxPackets=69646125
    wlanRxErrors=1
    wlanTxBytes=491437955
    wlanTxPackets=488901868
    wlanTxErrors=0
    wlanRxErrNwid=1210557
    wlanRxErrCrypt=0
    wlanRxErrFrag=0
    wlanRxErrRetries=0
    wlanRxErrBmiss=0
    wlanRxErrOther=0
    latitude=0.000000
    longitude=0.000000
    cfgCrc=1dee1a80
    XM.v5.5.6#

    How is it truncated?  You should be able to extract something using:
    regexp "wlanTxRate=([0-9\.]+)" $_cli_result match txrate

Maybe you are looking for

  • Movies I have purchased through Itunes show up on my computer, but do not show up on Apple TV

    Latley I have notices that movies in my Itunes library are "missing" from my apple TV's.  I have checked under get info "type", checked show in windows explorer, but certain movies just are not in the purchased catagory on the apple tv.

  • Need help on use of OBYC-FRN key

    Hi Gurus Need your help urgently, We are using manual freight condition type ZFRC and it has ac key FRE and FR1 in PO. When we do GR it is trying to post to a GL account which is configured in OBYC-FRN. Is this correct? Need to confirm how GL will be

  • Dynamic update to Inbound Directory for File Adapter Read

    I've seen references to others asking similar questions but never a good answer. I have a process that outputs files into daily dated directories. In other words, my Inbound Direct name is dynamic. I would like BPEL to be able to pick up these files

  • Adapter Engine

    I am trying to learn on Adapter Engine. Any good blogs or any good links? Specially I am tryingto understand How a message is Treated in Adapter Engine on what methodology an Adapter Engine process a Message? Thanks.

  • Installation Serial for Acrobat Pro dows not match

    Hello, I have installed my Adobe Design Standard this morning. All items of this Installation went right. The serial of my Student and Teacher Edition match properly for all of the programms except the Adobe Acrobat pro. Where can I find the right in