Multiple Vlans with multiple Internet connections using PBR

Hello all,
I'm trying to wrap my head around this configuration and not having a lot of success.  I have several Vlans 3,6,71,72,160, and 180.  I have two internet connections, Internet1 is connected to an ASA5510 and Internet2 is connected to a Meraki MX80.  I'm using two 4506 switches on my backbone trunked to 3750 switches that my clients connect to.  None of these switches have IP Services and my 4506 supervisor does not have an Enterprise license. However I do have one 3750 100Mbit switch with IP Services so I'm using that to do my PBR.  All my routing is currently being done on the 4506 switches and all Internet traffic is going to the ASA.  What I would like to do is force vlan160 and vlan180 through the Meraki as their Internet connection and the rest of the Vlans go through the ASA.  I'm thinking about trunking my vlans from the 4506 to the 3750 (the one with IP Services) and use policy based routing from there to force vlan160 and vlan180 to the Meraki.  But in order to do this I think I would have to move my routing onto the 3750 switch but since that is only 100Mbits I'm thinking this is going to choke my network down and defeat the purpose of the 4506 backbones.  Any suggestions or alternate ways to achieve my goal?
Appreciate any help you guys can send my way.
Matt

Matthew
What is the speed of the connection from the 4500 to the ASA and what is the combined speeds of the internet connections ?
You definitely don't want to do all the inter vlan routing on the 3750. You could connect it up as shown in your diagram but leave all the routing between vlans on the 4500s. Then you -
1) connect the 3750 to the 4500 using a L3 point to point link
2) connect the 3750 to the ASA using a L3 point to point link
3) do PBR on the 3750 interface connected to the 4500 for traffic coming from the 4500.
If the 4500 supervisor/IOS version doesn't support routed links on that end just use an access port in a dedicated vlan ie. no other ports in the vlan and create a new SVI for it.
You would need to update your routing to reflect the next hop on the ASA, Meraki, 3750 and the 4500.
Disadvantages are -
1) you only have fast ethernet ports on the 3750 so if the combined internet speed is greater than that then it will be a bottleneck.
2) it is a single point of failure ie. if it is lost all internet via both connections is lost.
The alternative would be to not have the 3750 in the path but connected to the 4500 via a trunk link and then route just vlan 160 and 180 on the 3750 ie. move their SVI(s) onto the 3750. Then the 3750 could have a direct connection to the Meraki device and point the default route that way (no PBR needed). The trunk would only allow those specific vlans on it.  This would mean a failure of the 3750 would not mean ASA internet lost but it would mean loss of connectivity for the two vlans routed on the 3750.
You would need to add routes to the Meraki for return traffic plus routes on the 3750 and 4500 for inter vlan routing.
The main disadvantages here are -
1) inter vlan routing between the vlans routed on the 4500s and the vlans on the 3750 will be limited by the 100Mbps connection. However you could use an etherchannel trunk so you could get greater overall throughput and some redundancy
2) more importantly though i suspect you are running HSRP between the 4500s for the client vlans and moving the SVIs onto the 3750 means a single point of failure for those vlans. 
Personally i would tend towwards option 1) because of the SVI HSRP issue and perhaps because there may be a lot of inter vlan traffic and even with an etherchannel it would be too much. 
But, single point of failure issues aside, a lot does depend on internet bandwidth in option 1) vs inter vlan traffic in option 2).
So it's a tradeoff and personally i don't think either are ideal  so i'll have another think on this in the morning to see if there is anything more obvious that i have missed or maybe someone else will add to the post.
Jon

Similar Messages

  • Having trouble with internet connections using my Apple G5. Updates turn out to be incompatible with my system. What should I do short of trashing the wonderful computer and spending cash I don't have on a new iMac?

    Having trouble with internet connections using my Apple G5 OSX 10.4.11. Attempts to upgrade FireFox or Safari results in being incompatible with with this system. Tried to locate earlier versions to replace upgraded incompatible software only to find that problems have worsened with crashing results. What should I do short of trashing this wonderful G5 and purchasing a new iMac which I really can't afford?
    Chuck's Dilema

    Hi Chuck,
    TenFourFox is the most up to date browser for our PPCs, they even have G4 & G5 optimized versions...
    http://www.floodgap.com/software/tenfourfox/
    I'd avoid vesrion 24 though, as it no longer supports plug-ins like Flash.
    SeaMonkey seems pretty fast also, with many options...
    http://www.seamonkey-project.org/
    http://www.seamonkey-project.org/releases/
    Might also look into iCab & OmniWeb versions.
    Also...
    The last really supported Flash for PPC was 10.1.102.64, but if it's for like Facebook or such, people have been fooling FB to think they have a leter version installed.
    Texas Mac Man's Flash hack/post...
    https://discussions.apple.com/thread/3599648?tstart=0
    Flash player 11.1 hack on PowerPC - https://discussions.apple.com/message/16990862
    Might be later ones around also... saw 11.3 I think.
    (If you are running a PPC Mac with Flash Player 10.1.102.64 and are having problems with watching videos on FaceBook or other sites, contributor Texas Mac Man suggests the following solution which fools the site into thinking that you are running the latest version:)
    Download this http://www.steelbin.com/FPforFBPPC.zip to your desktop, unzip it, and replace the current Flash Player plug-in which is in your main/Library/Internet Plug-Ins folder, (not the user Library). Save the old one just in case this one doesn't work.
    See in each Browser which version of Flash it thinks it has...
    http://kb2.adobe.com/cps/155/tn_15507.html

  • Can creative cloud be used with intermittent internet connections?

    Hi,
       I have a number of clients that like to "work on the ice" if you know what I mean. They ar eall ice fishermen or work in that industry. Can CC be used with intermittent internet connections?
    Thanks,
           Van

    Hi Van,
    I copied this from the Creative Cloud FAQ:
    http://www.adobe.com/products/creativecloud/faq.html
    Do I need ongoing Internet access to use my Adobe® Creative Cloud™ desktop applications?
    No. Your Creative Cloud desktop applications (such as Adobe® Photoshop® and Illustrator®) are installed directly on your computer, so you won't need an ongoing Internet connection to use them on a daily basis.
    An Internet connection is required the first time you install and license your desktop apps, but you can use the apps in offline mode with a valid software license. The desktop apps will attempt to validate your software licenses every 30 days.
    For annual members, you can use the apps for up to 99 days in offline mode. Month-to-month members can use the software for up to 30 days in offline mode.
    Hope that helps,
    -Dave

  • I have installed both Audition 3 and Photoshop CS3 on a laptop with no Internet connection. How may they be activated? The methods documented in the software don't work.

    I have installed both Audition 3 and Photoshop CS3 on a laptop with no Internet connection. How may they be activated? The methods documented in the software don't work.

    Ned, thanks for responding. Internet access is not the problem, I will have a tower computer connected to Comcast.
    Isolating the laptop  from the internet is the issue.
          From: Ned Murphy <[email protected]>
    To: Mordecai benHerschel <[email protected]>
    Sent: Wednesday, March 18, 2015 7:27 PM
    Subject:  I have installed both Audition 3 and Photoshop CS3 on a laptop with no Internet connection. How may they be activated? The methods documented in the software don't work.
    I have installed both Audition 3 and Photoshop CS3 on a laptop with no Internet connection. How may they be activated? The methods documented in the software don't work.
    created by Ned Murphy in Downloading, Installing, Setting Up - View the full discussionSince it is a portable machine, couldn't you go somewhere that has wifi available and use that as a temporary internet connection? If the reply above answers your question, please take a moment to mark this answer as correct by visiting: https://forums.adobe.com/message/7314414#7314414 and clicking ‘Correct’ below the answer Replies to this message go to everyone subscribed to this thread, not directly to the person who posted the message. To post a reply, either reply to this email or visit the message page: Please note that the Adobe Forums do not accept email attachments. If you want to embed an image in your message please visit the thread in the forum and click the camera icon: https://forums.adobe.com/message/7314414#7314414 To unsubscribe from this thread, please visit the message page at , click "Following" at the top right, & "Stop Following"  Start a new discussion in Downloading, Installing, Setting Up by email or at Adobe Community For more information about maintaining your forum email notifications please go to https://forums.adobe.com/thread/1516624.

  • How to download Hibernate Tutorial Workshop to PC with no internet connect

    Hi,
    How to download Hibernate Tutorial Workshop to PC with no internet connection?
    Is there any zip file on BEA site where I can download and import the hibernate tutorial to the Workshop on the PC with no internet connection?

    Ram,
    Could you add this to the Wiki page? Add it as an Wiki entry instead of
    the formal support doc?
    http://dev2dev.bea.com/wiki/bin/view/ProdTech/WorkshopFAQ
    br
    Ram Venkataswamy wrote:
    Yes, you can download the tutorial on a system with internet connection and then use that war file on the system w/o connection.
    On a system with internet connection, download https://dev2devclub.bea.com/downloads/examples/hibernate-tutorial.war
    copy the war file to the actual systemEx: ....\workspace\metadata\.plugins\com.m7.nitrox\.examples
    Launch Workshop, New > Example > Workshop Hibernate Example > continue with creating the project (local copy would be used instead of downloading from internet).

  • Unable to maintain internet connection using wireless router

    I posted a bug report with Apple, 7229097. Not sure if anyone has been able to fix this. I tried the suggestions on the board (create location, reboot router, clean install, normal install, delete config etc.) I have narrowed the issue down to my router, which works fine under 10.5.8.
    Summary:
    I have trouble maintaining an internet connection using my Dell TrueMobile 1184 Wireless Broadband Router, model wx-6215D. If I connect directly to my cable modem, I have no internet issues. So, it seems the issue is using the Router, both wireless or using RJ45 cable.
    Steps to reproduce:
    Connect to my wireless router using Airport or RJ45. Browse to a page using Safari or Firefox. First page usually comes up, but is incomplete. Start using refresh or click on more pages, after 1 - 5 refreshes, clicking on links, you get a notice that you are no longer connected to the internet. If you open terminal and execute "dscacheutil -flushcache" you can get your internet back, but will degrade to no internet after 1 - 5 page refreshes.
    Expected result:
    Internet browsing should be fine
    Actual result:
    Internet degrades until browser reports no internet connection.
    Regression:
    Go back to 10.5.8 system and no problem exists. Only happens when you upgrade to 10.6 and 10.6.1.
    Notes:
    I have tried doing the recommended installation, and erasing the hard drive and installing - in both cases I have the same result. Router works fine for PC and 10.5.8. I have since installed 10.6.1 to a USB drive to do any further testing and would appreciate a patch or a timeline for a patch before I move my system to 10.6.1

    I tried adding in the OpenDNS ip 208.67.222.222, 208.67.220.220
    It appears that the router is hijacking DNS calls.
    Funny thing though, DNS is resoving through the router, .2.1
    nslookup apple.com
    ;; reply from unexpected source: 192.168.2.1#53, expected 208.67.222.222#53
    ;; reply from unexpected source: 192.168.2.1#53, expected 208.67.220.220#53
    Server: 192.168.2.1
    Address: 192.168.2.1#53
    Non-authoritative answer:
    Name: apple.com
    Address: 17.251.200.70
    So, the router is giving up the IP address. Also, even though Safari, Firefox and others report no internet, nslookupk continues to work. The router works, but 10.6.1 doesn't seem to like what it gets from the router. Also, not sure a firmware upgrade is required for the router, if there even is one, because it works with both of my PCs and my Mac running 10.5.8.

  • Download CC versions for installation on a computer with no internet connection

    So I have just signed up with CC as I am wanting to get Photoshop and lightroom
    So I have a computer with no internet access, and so I would like to download the CC versions of the software on my work computer.
    Once downloaded, I will install the software on the computer with no internet connection, then utilise my mobile phone to teither the computer to the internet to register the products.
    So my question is how do this?
    Downloading the software using the manager on my phones internet is not an option. (with 300mb per month quota on the phones not an option)
    I am wanting the CC features of photoshop not CS6 so registering the cs6 version is not an option.
    Also when updates come out for CC where can download those.
    (we have had a change of govt so I might get 24mb/s internet in 2019)
    thanks

    Hi Paul,
    Welcome to the Community!
    You can certainly download the files on a different machine and install on a computer without internet however you should connect to internet once in a month so that we can charge your credit card.
    The option to connect to internet with phone will work however updates needs to be downloaded via internet as the size might be in GB's.
    To download the executable files, visit this page http://prodesigntools.com/adobe-cc-direct-download-links.html. Remeber to follow the Very Important instructions or else the download will not start.
    Thanks!
    Ankit

  • I'm having problems with my internet connection after installing OS X Lion. Is this a known problem or just a local problem?

    I'm having problems with my internet connection after installing OS X Lion. Is this a known problem or just a local problem?
    After +/- 10 to 15min my connection is gone.
    Does anyone have a sollution?

    Lots of people are having the same problem, you're not the only one, belieeeeve me.
    Just Googling the problem gets you tons of people complaining about the same thing, SOMETHING is up with Lion what wasn't happening with Snow Leopard. i just bought a new Imac and it CAME with Lion, so i started experiencing this internet dropout immediately.
    It's been going on for the most of a year it looks like (at least by the dates from the threads i've been reading)
    So your best bet is to fiddle with the System Preferences and read what other people have used to make theirs work. i'm doing that myself right now.  I already posted  a similar thread last night trying to figure out why my connection kept on dropping, i got a reply which linked me to a site. i followed the instructions there, so far so good, but i'm just being cautiously optimistic.
    i'm gonna call Apple today and see if they've found anything, though seeing as this is a problem right out of the box there may not be an immediate solution. Good luck hunting for a solution :3
    Site:
    http://osxdaily.com/2011/11/06/lion-wi-fi-problems-solution-mac/?utm_source=feed burner&utm_medium=feed&utm_campaign=Feed%3A+osxdaily+%28OS+X+Daily%29&utm_conten t=FaceBook

  • Problem with my internet connection with Mail and others

    Hi
    I seem to have a problem with my internet connection that is through Ethernet. I have just downloaded the update to iLife 9 and the down load speed went from zero to 1.1BB/s but most of the time it downloads at speeds around 8KB/s also Mail some times returns mail sent but there seems to be no problem sending out only that things go faster out than in. My internet speed from my ISP is 500KB/s so as you can see I was at first happy that I was getting speeds in of 1.1MB/s. I have done a diagnostic test through network also fully run Norton and finally run utilities with no problems showing. My ISP is willing to come and have a look at my internet but I some how think it's my computer, any ideas?
    Thanks

    The first thing I would do is completely disable Norton AntiVirus; there are no viruses for Mac OS X, so it can't protect you from something that doesn't exist. It can, however, severely slow down your system. Do that and then restart Mail and see if the problem continues.
    You should also try creating a new User account and test Mail there to see if you experience the same problem; if so, then the issue is systemwide. If not, it's something specific to your regular user account.
    As for your download speed, it's not 1.1MB/s; it's 1.1Mb/s. Upload speed is slower than download speed for both Cable and DSL service. I doubt the problem is your modem/router, but you should try shutting down your Mac and the modem for a few minutes. If your modem/router has a reset button, use it, then restart it and your Mac and see if the problem continues.

  • I have a PC with a internet connection through a modem and ever since i have had it i have had no connection to the itunes store. And even if I try to update anything it says that i need to check my connection, but my connection is fine. What should I do?

    I have a PC with a internet connection through a modem and ever since i have had it i have had no connection to the itunes store. And even if I try to update anything it says that i need to check my connection, but my connection is fine. What should I do?

    This almost always indicates your firewall or anti-virus utilities are preventing iTunes from contacting the iTunes Store. Here is an exerpt from "Can't connect to the iTunes Store": http://support.apple.com/kb/TS1368
    Troubleshooting on Windows
    If you haven't been able to connect to the iTunes Store for more than a day —and other customers on our discussion boards aren't experiencing similar issues— a software or internet service provider (ISP) configuration issue may be blocking your access to the iTunes Store. Click here to find out which ports and servers need to be allowed for iTunes Store access.
    Update iTunes to the latest version.
    If you have not done so already, try the steps in iTunes for Windows: iTunes Store connection troubleshootingto troubleshoot iTunes Store connectivity in Windows.
    Firewall issues:
    Windows XP: If you've upgraded to Windows XP Service Pack 2: By default, Windows Firewall is enabled. As with all firewalls not manufactured by Apple, you will need to configure Windows Firewall to allow iTunes to access the iTunes Store. To do so, see How to enable iTunes in the Windows XP Firewall.
    Windows Vista and 7: As with all firewalls not manufactured by Apple, you will need to configure Windows Firewall to allow iTunes to access the iTunes Store. To do so see, the "Blocked by software firewall" section in this article.
    Proxies can cause issues and should be avoided whenever possible. To disable the proxy built-in to Windows see, iTunes for Windows Can't access the Internet if proxy settings are incorrect.
    If you are receiving a specific error message you may want to see, the "Specific Conditions and Alert Messages" section in this article as needed.
    If the issue still persists, contact your internet service provider and confirm that the ports and servers in this article are enabled over your network.
    The "hosts" file may be blocking the iTunes Store
    Microsoft's article How do I reset the hosts file back to the default? has instructions and a "FixIt" to have Windows try to reset the hosts defaults for you.
    Note: Some workplaces may put internal resources in the hosts file but may also use it to block iTunes Store.
    To create a copy of your hosts file and replace it with an empty hosts file, follow the instructions for your operating system below.

  • After I activate the iphone with an internet connection..

    After I activate the iphone with an internet connection on my home computer, do I ever have to have internet on my home computer for my iphone to work? Like do I need the itunes store for my iphone if I'm never going to buy anything from it or can I just use the internet connection from my iphone? Because after I activate my iphone I was thinking about canceling my internet on my home computer because I'll have it on my iphone..would that work? Thanks!

    As posted above me here. One of the Requirements for an iPhone is a PC and an Internet Connection.
    1. iPhone needs Internet to communicate with the servers when you do any iPhone Updates
    2. iPhone needs Internet to communicate with the servers when doing a restore
    3. iPhone uses internet when you connect to iTunes to confirm you are an AT&T User so you can see your number in the Summary screen
    Also if you ever want to put music, tv shows, podcasts etc. On iPhone most of this comes from the iTunes Store so that requires the Internet to download the content.
    Also if you want to take advantage of WiFi in your home then you need active internet if you got a Wireless Router
    If you do not use Internet on a PC allot, Check into a cheap DSL package and that should suite your needs for using the internet only when you need it.

  • Problem with my internet connection and modem

    hello!
    i have a very big problem with my internet connection a 56k. i use internet with my internal apple modem (i have an ibook g4). sometimes it works well but sometimes, after being connected, my ibook freezes and i have a black window wich says: "you need to restart your computer".
    i do it, and when i want to connect again, i have a new message wich says " this port of communication does'nt exist. please check your setup and do it again" (in french) i check my preferences in the "preferences" and the modem doesn't appear!! see it my photos here (in french sorry):
    http://h1.ripway.com/diesel/pdf.pdf
    in order to use internet normally, i'm obliged to re-install tiger again and again!! i'm very hungry about this problem because since i'have my connection, i can"t use it as i want!
    please help me!

    Hi David,
    What you've described is a kernel panic. Since reinstalling the OS only alleviates the issue temporarily it's possible that your modem is failing.
    Jrsy

  • Itunes will not connect to the internet or access store with working internet connection. ive already tried updating to latest version and turning off windows firewall. running a new dell computer w/ windows 7 with minimal programs installed

    Itunes will not connect to the internet or access store with working internet connection. ive already tried updating to latest version and turning off windows firewall. running a nItunes will not connect to the internet or access store with working internet connection. ive already tried updating to latest version and turning off windows firewall. running a new dell, windows 7 ultimate, no virus or firewall programs installed.

    This my sound too simple, but I just kept clikning on the arrow next to the selected music and it finally "Kicked" in.
    I live in Europe ,So Be persistent and don't give up !  Aug. 2013

  • Both xp and windows 7 have video problems with my VGA connection using TV

    both xp and windows 7 have video problems with my VGA connection using TV as my monitor when it gets to starting up windows no matter what version it will not I have let my mac on all night and still says starting windows or the windows 7 logo and nothing else will happen also when I use a 3rd patty software like peraills or other it works like a charm how to fix it?

    To map the drive on your computer click on Start - RUN - type "\\192.168.1.1" and click ok... When prompted for Username and Password type "admin" and click ok... Now you will be able to see the folder which you have shared on  your router, right click on it and select "Map network drive" and click on finish.
    Now it will map the drive on your computer and you should be able to transfer the file from your computer to the USB drive.

  • TS3297 I have paid for a rental movie but cannot download it. It keeps saying there is a download error retry and I have been for an hour. There is nothing wrong with my internet connection

    I have paid for a rental movie but cannot download it. It keeps saying there is a download error retry and I have been for an hour. There is nothing wrong with my internet connection.How do I get it?

    There is nothing wrong with my internet connection.
    Is that a -50 error message, jolyn?
    If so, perhaps try the "Error -50," "-5000," "8003," "8008," or "-42023" section in the Specific Conditions and Alert Messages: (Mac OS X / Windows) section of the following document:
    iTunes: Advanced iTunes Store troubleshooting

Maybe you are looking for

  • Essbase performance issue

    Hi all, We encounter a Essbase perfromance issue that we don't know the root cause. We have configured a server to run Essbase with 8 core CPU and 16GB RAM. We found that the Essbase calculation can use up to 80% CPU and about 8GB RAM only. I also ch

  • Column widths OK in Firefox & Opera, NOT WORKING in Internet Explorer?

    Hi there, I've got a table based website and for some reason Internet Explorer is messing up my layout?  It works fine in Firefox and Opera but IE is extending one particular <td> tag beyond its set width?  What's even more strange is that the proble

  • Creating two completely separate iphoto applications

    I'm really wanting to have two completely separate iphoto applications, one for work and one for personal. Rather than doing this by creating separate albums and folders I'd rather just have one iphoto app for personal and one for work. Is this possi

  • Road to SAP

    Hi, I am new to  SAP world and would like some guidance on SAP as a career. My qualifications are as under: Qualification :- B.E ( mechanical) and mtech automobile first year Location :- India Yrs of Exp:- fresher I would like to do SAP MM module Ple

  • Quicktime quality worse under snow leopard

    hi does anyone know why the picture quality appears to be more grainy in the new quicktime on snow leopard , it was like this in leopard much sharper and overall better quality