Management port for management switch(2960x) / IP default-gateway for L2 management switch

1)   
I am going to connect all mgmt ports of server to this access switch (L2; 2960x) like below. Then I have a management port in 2960x (FastEthernet / L3 port). As you can see below, even though one of Core switch is down, I am able to access through the other Core switch for mgmt SW. Do I need this FastEthernet port of 2960X?
Core Pri -------  Core Sec   (Core Pri 192.168.1.2 / Sec 192.168.1.3 / HSRP VIP 192.168.1.1)
            mgmt SW ----- (FastEthernet0) ------ Goes to where? I don't have RAS (Remote Access Server)
                  |
                  |
      servers' mgmt ports
http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst2960/software/release/12-2_55_se/configuration/guide/scg_2960/swint.html#wp2220949
2) From server side, server put default gateway (192.168.0.1) so if destination is not known, it dumps all to default gateway. This is L3. I understand this. What about L2 default gateway from switch itself? The L2 access switch supports "ip default-gateway" command. I know that without this command still servers do not have any problems to connect to network. Then this command is for switch (2960x) itself? i.e I log into the switch and ping google.com then switch will try to resolve through DNS, but if DNS is not set up in the switch, it sends all traffic to "ip default-gateway"? Is it right?
3) If L2 (Access) switch has multiple data vlans and mgmt vlan (10.0.0.0/24  10.0.10.0/24 192.168.0.1). Then what will be the "ip default-gateway" for this switch?
Thanks for your time and knowledge.
======================== Reference from Cisco regarding ip default-gateway --------------------------------------
How to configure the ip default-gateway command on a Cisco 3550 series switch
VERSION 2 
Resolution
To define a default gateway when IP routing is disabled, issue the ip default-gateway global configuration command. Then, enter the IP address of the next-hop router interface that is directly connected to the switch where a  default gateway is being configured.
The default gateway receives IP packets with unresolved destination IP addresses from the switch. Once the default gateway is configured, the switch has connectivity to the remote networks with which a host needs to communicate.
Note: When the switch is configured to route with IP, it does not need to have a default gateway set.
For more information, refer to Assigning the Switch IP Address and Default Gateway.
ip default-gateway
https://supportforums.cisco.com/docs/DOC-5090

Vlan 99 is management port. This is an access switch. I am accessing this swtich through SSH remotely (10.1.2.x)
WirelessSWLab#sh ip int b
Interface              IP-Address      OK? Method Status                Protocol
Vlan1                  unassigned      YES NVRAM  administratively down down   
Vlan99                 10.1.99.35      YES manual up                    up     
GigabitEthernet0/1     unassigned      YES unset  up                    up     
GigabitEthernet0/2     unassigned      YES unset  down                  down   
GigabitEthernet0/3     unassigned      YES unset  down                  down   
GigabitEthernet0/4     unassigned      YES unset  down                  down   
GigabitEthernet0/5     unassigned      YES unset  down                  down   
GigabitEthernet0/6     unassigned      YES unset  down                  down   
GigabitEthernet0/7     unassigned      YES unset  down                  down   
GigabitEthernet0/8     unassigned      YES unset  down                  down   
GigabitEthernet0/9     unassigned      YES unset  down                  down   
GigabitEthernet0/10    unassigned      YES unset  down                  down   
GigabitEthernet0/11    unassigned      YES unset  down                  down   
GigabitEthernet0/12    unassigned      YES unset  down                  down   
GigabitEthernet0/13    unassigned      YES unset  down                  down   
GigabitEthernet0/14    unassigned      YES unset  down                  down   
GigabitEthernet0/15    unassigned      YES unset  down                  down   
GigabitEthernet0/16    unassigned      YES unset  down                  down   
GigabitEthernet0/17    unassigned      YES unset  down                  down   
GigabitEthernet0/18    unassigned      YES unset  down                  down   
GigabitEthernet0/19    unassigned      YES unset  down                  down   
GigabitEthernet0/20    unassigned      YES unset  down                  down   
GigabitEthernet0/21    unassigned      YES unset  down                  down   
GigabitEthernet0/22    unassigned      YES unset  down                  down   
GigabitEthernet0/23    unassigned      YES unset  down                  down   
GigabitEthernet0/24    unassigned      YES unset  up                    up     
WirelessSWLab#

Similar Messages

  • Incorrect Default Gateway for Clients using a Concentrator

    Hey all,
    Hopfully an easy one - I'm trying to configure a VPN Concentrator for use with the old VPN Client for an IPSec CVPN.
    The clients connect fine, but they are getting the incorrect default gateway during the address assignment.
    My address pool is 192.168.0.128/25.  The client correctly picks up the first address in the range, 192.168.0.129, but the default gateway for the VPN adapter is assigned as the next address in the range, 192.168.0.130.
    I need the gateway address to be 192.168.0.254 (the SVI of the L3 switch connected to the Concentrator), but I can't for the life of me fine a configuration option anywhere in the pool assignment.  I've set the tunnel default gateway to this 192.168.0.254, but this makes no difference.
    Any ideas where I can find this config option?
    Thanks!

    Andrew
    In the chart that you posted about the routing setup it refers to a DMZ network and DMZ gateway. Can you clarify what these are since I do not see them in the drawing that is in that post?
    I agree with Herbert that it is cleaner to have the address pool on the concentrator use addresses that do not overlap with the concentrator subnet connecting to the layer 3 switch. And as long as the layer 3 switch has a route to that address pool, and the next hop in the route is the address of the concentrator interface then the separate pool addressing should work just fine.
    I have re-read this thread and want to make sure that after some changes that you have made that the problem symptoms are still the same. You told us earlier that: "Now the client can ping the interfaces on its local LAN (concentrator  interface 192.168.0.253, and the L3 switch, 192.168.0.253), but it  cannot reach the rest of our internal LAN behind the layer 3 switch." Is this still an accurate statement of the problem?
    As Herbert said earlier this could either be caused by the concentrator not have a correct route for the inside or it could be  because the inside does not have a correct route to the client. In re-reading your description of the routing set up it looks like the concentrator has a default route configured but not the tunnel default route. May I suggest that you try configuring a tunnel default route (in addition to the normal default route) and see whether that makes any difference?
    If that does not help the problem then I would suggest that you verify that the devices on the inside do have their default gateway set correctly and that the layer 3 switch does have a route for the VPN address pool with the concentrator interface address as the next hop.
    HTH
    Rick
    [edit] I just focused on the question that you asked about the concentrator possibly needing a route for the address pool. The concentrator does not need any route statements for the address pool - it knows its own address pool, pretty much like having a connected interface subnet. The layer 3 switch is what needs a route for the address pool.

  • Best practice to change default gateway for HA-CAM

    Hi,
    The next week end, i will have a downtime to change it's HA-CAM's default gateway.
    My question is, how can i do that?.
    This change is not synchronized if i change only from an active cam (service Ip) o it does?
    I was thinking on stops services for standby cam, then connect to a service ip, change its default gateway to active cam, then stops services and start them for standby cam and so on...
    This is correct or this idea is wrong?
    Please, I need suggestions.
    Thanks for advance.

    Kaylan
    If the user vlan is routed on a L3 device before going to either the MPLS router or the firewall you could use PBR on the L3 device (if supported).
    But as Reza says, we need more info on your network layout.
    Jon

  • Type defined array of clusters for holding configuration data - setting default values for each array element

    Hi,
    I was wondering if I could get some information and opinions about using a type defined array of clusters to hold configuration data.  I am creating a program to test multiple DUTs and wanted to have a type defined control for each DUT containing the information needed to create the DAQmx tasks for all of the signals for that DUT.  I am wanting to do this so that the data is hard-coded and not in a file that the user could mess up.
    The type def controls are then put in a subVI that chooses the appropriate one based on the DUT Type enumeration wired to a case structure.  
    I am having problems with the type defined control.  I am seeing issues when attempting to save a unique configuration to each array element in the array of clusters.  Somehow it worked to begin with, but now clicking "Data Operations --> Make Current value default" on individual elements of the cluster or the entire cluster (array element) is not saving the data when I re-open the type def control.  What am I doing wrong?  Am I trying to do something with arrays of clusters that I should not be doing?
    I have attached one of the type defined controls for reference.  I tried changing it to Strict to see if that helped, but no luck.
    To reproduce, change the resource string for array element 0 and make the new value the default value.  Then close the type def, and re-open it.  The old value is still present in that element.  The VI is saved in LabVIEW 2012.
    Solved!
    Go to Solution.
    Attachments:
    CM_AnalogInputs.ctl ‏11 KB

    Values of a typedef are not proprigated to instances of the control. THey will pick it up if created AFTER the data values have been changed. THey will not get updated with future changes. You should either create a VI specifically for hardcoding your values or implement a file based initialization. The file based would be much better and more flexible. If you don't want users to modify the data simply encrypt it. There is a noce blowfish library you can download.
    Mark Yedinak
    "Does anyone know where the love of God goes when the waves turn the minutes to hours?"
    Wreck of the Edmund Fitzgerald - Gordon Lightfoot

  • Default "Gateway" for page name

    I am using pt:pagename in a banner portlet. It works fine in 5.04 , but in 6.0 when the page is a hosted remote portlet, the banner text displays "Gateway" by default.
    Any clue how to display a custom text instead, or just blank?
    Thanks!
    Val

    1. I have a banner portlet
    I've inserted pt:pagename tag on the html, and every time I navigate on the portal, the banner displays the page name.
    2. I have a remote portlet (C#) running on a different server.
    When I open the page containing the portlet, the banner displays the name of the page(correct)
    but if I try to navigate inside the C# app, opening a different page, the "Gateway" text is displayed.
    The same portlet on 5.04 just displayed blank. The 6.0 is comming with this "feature", and I do not know how to get rid of it.
    Unfortunately, Chris B. idea is not working, because if I delete the
    "edkRes.SetHostedDisplayMode(HostedDisplayMode.Hosted);"
    the page is not hosted anymore.
    Val

  • Management port in Cisco Switches (are they really physical port)

    Hi all,
    I have been taught to console into my cisco switch for configurations through console cable + putty (serial terminal).
    Then I have been taught to configure a management ip and gateway on the cisco switch.
    Switch# conf t
    Switch(config)# interface vlan 1
    Switch(config-if)# ip address 192.168.1.11 255.255.255.0
    Switch(config-if)# no shut
    Switch(config-if)# exit
    Switch(config)# ip default-gateway 192.168.1.1
    All the while, i thought this is the way to remote in to the switch via putty/telnet through the network to configure the switch, until i saw the picture below (cisco catalyst 2960)
    =======================================
    There is a physical port call ethernet management port.  What is it ?   What is the difference between this port and the earlier example of setting a management ip in VLAN 1 ?
    If i set an IP on this particular interface and I ssh in, will i see the same screen/display/console from the earlier example in which i set a management ip in VLAN1 and I ssh in ?
    Regards,
    Noob

    Hi Leo,
    Sorry if you find it hard to explain to me.
    I have understood to think of the ethernet management port as a separate entity from the original switch.
    Maybe with the help of the diagram below, can you let me know if i have understood correctly ?
    *please assume connected port is a management port separated from the normal switch ports
    q1) does the ethernet management port need to be connected to another switch ?
    I have thought of it as a device on the network and it is mentioned by you previously that it will be connected to a switch
    "he traffic goes up the cable connected to the Management port and up a switch.  Now that switch holds all the information because it is a switch.  "
    q2) In the current setup then, terminal B will be able to access the management port - am i right ?
    q3) you mentioned that the management port is not able to set any gateway, (which is the router fe0/5 - 192.168.0.3 in my illustration), in that case do you mean that terminal A will not be able to access the management port remotely and it can only be accessible locally ?
    Please do correct me if my understanding is wrong.
    Thank you so much for your advices.
    Regards,
    Noob

  • Control and management port for nm-cids

    Can any body help me to find the difference between the ip address that we use at the interface ids-sensore 1/0 and the ip address of the sensor and its default gateway
    10.10.10.2/24,10.10.10.1

    NM-CIDS information:
    There are 3 interfaces that you need to be aware of with the NM-CIDS.
    The NM-CIDS module has 2 interfaces (FastEthernet0/0 and FastEthernet0/1).
    The 3rd interface actually belongs to the router (IDS-sensor1/0)
    The Fa0/0 interface of the NM-CIDS is the external port of the NM-CIDS. When an IP Address is assigned to the NM-CIDS through the "setup" command, the IP is assigned to this Fa0/0 interface.
    The Fa0/0 interface is the external interface and so will need to be plugged into a hub (or switch), and the IP addresses assigned to it must be an address within the network address range for that network (vlan). The default gateway should be the same default gateway for the other boxes on that network, the default gateway may be one of the addresses of the router in which the NM-CIDS was installed, or could be a completely different router. The NM-CIDS Fa0/0 interface could have been plugged into a completely different network than any of the interfaces of it's parent router.
    Say for example that FastEthernet2/1 of the router is connected to vlan 10 on the switch and assigned an IP Address of 10.1.1.1. The Fa0/1 interface of the NM-CIDS is also plugged into the same switch on vlan 10. Because Fa0/1 of the NM-CIDS is plugged into the same network as Fa2/1 of the router, then both ip addresses can be in the same network and the router IP can be the gateway for the NM-CIDS. The Fa0/1 can have IP 10.1.1.30 with gateway 10.1.1.1 (Fa2/1 of the router).
    Alternatively the Fa0/1 of the NM-CIDS could have been plugged into vlan 30 (network 192.168.1.0) of the switch where the router does not have any of interfaces. In this case the Fa0/1 of the NM-CIDS won't be in the same network as any of the router interfaces. So the Fa0/1 of the NM-CIDS will need an IP address with that network: 192.168.1.27 for example. And the gateway for the NM-CIDS would need to be whatever OTHER router is the default gateway on that network: 192.168.1.1 for example.
    The Fa0/1 interface of the NM-CIDS is the internal interface of the NM-CIDS on the backplane of the router. The Analysis Engine should be configured to monitor this interface.
    The "IDS-Sensor1/0" interface is the router's backplane interface to the NM-CIDS, and has 2 functions.
    1) When the router is configured to send packets to the NM-CIDS for analysis the packts will be sent through the router's IDS-Sensor1/0 interface to the router backplane into the Fa0/1 interface of the NM-CIDS. You can almost think of IDS-Sensor1/0 and Fa0/1 as having a wire between (the wire being the router backplane).
    2) The IDS-Sensor1/0 also serves a second purpose. The IDS-Sensor1/0 ALSO connects to a special part of the NM-CIDS hardware that acts as a console port for the NM-CIDS. When you "session" to the NM-CIDS what is actually happening is a telnet through this IDS-Sensor1/0 interface into the backplane of the router to that special part of the NM-CIDS hardware. So when you session to the NM-CIDS it looks like a console port. It is because of this "telneting" as part of the session command that the router needs an address for the IDS-Sensor1/0 interface.
    The address assigned to the IDS-Sensor1/0 interface is never seen by the IPS software on the NM-CIDS, it is only used by the router inorder to support the session command. This IDS-Sensor1/0 address does not need to be routable so it can be an internal loopback address as seen in this example: http://www.cisco.com/univercd/cc/td/doc/product/iaabu/csids/csids12/cliguide/clinmcid.htm#wp1030678
    The loopback address is just a single address on a network that you are never going to use and never need to route packets to.
    This IP Address for IDS-Sensor1/0 should NOT be confused with the IP Address that was assigned to the Fa0/1 interface of the NM-CIDS.

  • CSS11503 Management port connection loss

    Hi we run 2 x CSS11503 with box-box redundancy. I have configured both management ports with IP's and default gateways. The management ports work fine when the box is in "master mode" but as soon as it goes in to "ackup mode"I loose connection to the management port. It seems to me that when the box is in back up it shuts down it's TCP/IP stack??? Is there anyway to override this on the Management port?
    Cheers

    the management port should not be down when the CSS is in passive state.
    Are you sure the response from the CSS was going out via the management port ?
    Where you in the same vlan of the management port ?
    If not, did you configure a management route to reach your pc ?
    Regards,
    Gilles.

  • Default value for Read-Only Picklist Field

    Hi, all--
    I would like to have a default value ("Undetermined") for the "Associated Account" read-only picklist value. I have an account record of this value for this purpose. This is because if there is no value in the field, the record will not be included in a report that includes the field. I do not want to make the field required at this point.
    Field management doesn't appear to allow any default value for read-only picklists. Does anyone know how to get around this, either at the lead record stage or at the lead report stage (without resorting to an analytic, which won't work for what we are doing)?
    Thanks.

    That's a great question. It doesn't appear as though you can select it from the typical method of Admin | Application Customization | Lead | Lead Field Setup | Associated Account.
    Have you tried creating a workflow to populate the field using Before Modified Record Saved?

  • Should Default Tablespace for User DIP be "SYSTEM" or "USERS"?

    Oracle Enterprise Manager is giving me a warning about some non-system users who have a default tablespace of SYSTEM. One of the users is DIP. Is it OK for me to change the default tablespace for DIP to USERS, or should it remain SYSTEM?
    Thank you,
    Bill

    To the best of my knowledge user DIP was created automatically by Oracle software when I upgraded my database from 8i to 10gR2. In my mind that means it is needed for managing some system function in the database. That is why I hesitate to change the default tablespace from SYSTEM to USERS.
    If user DIP is tied to use of Oracle Directory Integration and Provisioning then I am not knowingly using the DIP account. I do not know what Directory Integration and Provisioning is and read about it only when researching this tablespace question. That being said, I expect that Oracle software does a lot of things internally that I am not aware of.
    I was hoping someone familiar with user DIP could tell me that changing the default tablespace to USERS for this Oracle supplied account would do no harm.
    Thank you,
    Bill

  • Changing the default view for Line Items in an Auction.

    Hello All,
    We have a version 5 client who is asking for us to change the default view for line items in an auction.
    Currently, if you have an auction setup, and you go to the Line Items tab, the default view is the "Basic View". The client would like to change the Default from "basic view" to "price view".
    Is there a way to change this default in the system? Can this be configured using query groups? Any information would be helpful.

    Hi wood cloud,
    This is not possible, bcz there is no VLV for that drop down and we cant set it  to the price view.
    Thanks,
    Ankur Goyal

  • DRQ: Different default warehouse for Sales,Purchase and Production Process

    Hi Experts,
    In my recent Implementation Project I realised that there should be provision of capturing and using different default warehouse for Sales,Purchase and Production.
    For example in manufacturing company
    1. Default ware house for Purchase process should be QC ware house for raw material.
    2. Default ware house for Production process should be RM ware house for raw material (components).
    3. Default ware house for Production process should be QC ware house for Finished Good (Parent Item).
    4. Default ware house for Sales process should be FG ware house for Finished Good (Parent Item).
    I hope the idea is clear, I am looking for 3 different set as default warehouse for each item in Item master Inventory tab.
    Internally when a user create a document than default warehouse is to be picked up from this setting !
    Best Regards,
    Samir Gandhi

    Hi !
    I guess the indicator "Exclusive" in the accessess of the access sequence can meet the requirement if I have note misunderstood the issue.
    Press : F1 help on Exclusive Indicator -
    Indicator: Exclusive condition access
    Controls whether the system stops searching for a record after the first successful access for a condition type within an access sequence.
    Thanks & Regards

  • Making Numbers 09 Default Programm for .xls

    How can I make numbers (same for pages and keynote) the default program for .xls and .xlsx files?

    Select the icon of such a file.
    cmd + i to open the Infos window
    In this window enter the menu "Open With"navigate to Numbers
    Select it
    Click the button "Apply to all of them" (I don't know the exact English wording).
    Yvan KOENIG (VALLAURIS, France) jeudi 15 avril 2010 21:46:15

  • Cascaded network unable to access default gateway att 5031nv

    Hello -  I have a Cisco 3750 sitting behind an ATT 5031 NV.  The Cisco device has the following networks 'living' on it: 10.1.1.1 /2410.1.2.1 /2410.1.3.1 /24 All of these have DHCP pools living on the Cisco device.  The default gateway they had out is the IP of the SVI (mentioned above).  I am using OSPF between those networks - and they can all talk fine.  I am using the 'default-information originate' command to obtain default route information. I have port Gi1/0/3 on the cisco device plugged into LAN port 4 on the ATT 5031 NV.  Port Gi 1/0/3 is configured with a static IP in the 192.168.1.x network as follows:
    ip address 192.168.1.2 255.255.255.0 On the ATT 5031 NV:  Settings > broadband > link configuration, I have the 'cascaded network' option selected: Network Address:  10.1.0.0 Subnet Mask:  255.255.0.0 Choose the router that will host the secondary subnet:          [Cisco Device Hostname] 192.168.1.2 (IP of Gi1/0/3 on cisco device) When i do this - i can ping from the 10.x.x.x networks to both 192.168.1.2 and 192.168.1.254 IP's - but i cannot get out to the Internet (neither by IP or hostname).   I should metion that I have tried the DMZ pinhole option - where i made my Gi1/0/3 get an IP by DHCP > rebooted it > and I got my device to show up with a 108.225.x.x external IP (which again, my 10.x.x.x's could ping) but I could not ping the default gateway for that network. What am i missing here?  anyone have any ideas?  Config to follow:  !interface GigabitEthernet1/0/3
    description DMZ to WAN
    no switchport
    ip address 192.168.1.2 255.255.255.0!interface Vlan1
    no ip address
    interface Vlan100
    description MANAGEMENT
    ip address 10.1.1.1 255.255.255.0
    interface Vlan120
    description xxxx WIFI
    ip address 10.1.2.1 255.255.255.0
    interface Vlan130
    description xxxx DATA
    ip address 10.1.3.1 255.255.255.0!router ospf 1
    network 10.1.1.0 0.0.0.255 area 1
    network 10.1.2.0 0.0.0.255 area 1
    network 10.1.3.0 0.0.0.255 area 1
    default-information originate!ip default-gateway 192.168.1.254!ip route 0.0.0.0 0.0.0.0 192.168.1.254 Any help would be greatly appricated.     

    Hi ,
    With the cascaded router option, the purpose of that option is to pass over your static IPs so that your gateway handles the traffic. If you do have a set of static IPs available, the only thing you want to change is the cascaded router IP. The network address should be the IP of your router, so it would be 192.168.1.2 according to your setup. 
    If you are just trying to do a router behind router setup, you actually do not need to use the cascaded router option, and just putting it in DMZ should take care of everything.
    Hope this helps.
    -ATTU-verseCare

  • RV320: Need to use as gateway for multiple subnets

    We just purchased an RV320 as a replacement/upgrade to an RV042. Our Internet connection was upgraded to 200Mbps and the RV042 wouldn't handle that throughput.
    Our internal network has 4 subnets, all connected via a layer 3 switch. The RV320 is connected to one of those subnets and is the default gateway for the entire network.
    The RV042 had a "multiple subnets" setting that allowed it to perform NAT for the directly connected subnet and the other 3 subnets in our network. We would just add the other networks to the list in the RV042 and everything was fine.
    The RV320 doesn't seem to have the same functionality (or am I missing something?). It looks like there is some sort of multiple subnet support, but when we try to add another subnet the interface seems to be asking us to define a single IP address in that subnet (an IP address for the router?) as if all subnets will be directly attached to the router using VLANs (which is not the case in our network).
    We can set up the "advanced routing" option to define the other 3 internal subnets and how to route to them, etc. but will the RV320 perform NAT for the other subnets without any adidtional configuration?
    Can anyone shed any light on this?
    Many thanks!

    Precept,
    My name is Ismael, iam with Small Business Support Center. I like to start by asking is there a  particular reason that the switch is handling Layer 3/or DHCP? Normally when an RV042 is implemented you would need a Layer 3 switch as the RV042 only supports one DHCP scope.In addition all The RV0XX series does not support 802.1q VLAN.
    With RV320 you can setup multiple subnets under advance routing and still allow for it to pass DHCP for all of your 4 subnets and create 801.2q Vlan subinterfaces . Setting RV320 in this manner can create an ease in managing the network.
    If you are considering the RV320 to do Layer 3 / DHCP simply create your 4 Vlans or subnets. Add them to the DHCP scope and enable DHCP server for all subnets. Switch would have to be configured to Layer 2 for this to work.  The link below is a knowledge portal that could assist in creating DHCP and Vlans. Hope this helps you.
    http://sbkb.cisco.com/

Maybe you are looking for