VLAN assistance, tagged port lost internet

I'm working on getting a new building set up that will be connected directly to our current building but we need it separated with its own VLAN.  I've created the VLAN in all our switches and untagged all the ports to the new VLAN for the switches that will be in the new building and created a sub-interface on our sonicwall for the VLAN.  Our main site will continue using the default vlan.  I tried tagging port 1 on our LAN switch which goes to our sonicwall but we immediately lost internet connectivity for our main site. Could I be missing something here? Do I need to create sub-interfaces for the default vlan now that we have more than one traversing the sonicwall?
This topic first appeared in the Spiceworks Community

I'm working on getting a new building set up that will be connected directly to our current building but we need it separated with its own VLAN.  I've created the VLAN in all our switches and untagged all the ports to the new VLAN for the switches that will be in the new building and created a sub-interface on our sonicwall for the VLAN.  Our main site will continue using the default vlan.  I tried tagging port 1 on our LAN switch which goes to our sonicwall but we immediately lost internet connectivity for our main site. Could I be missing something here? Do I need to create sub-interfaces for the default vlan now that we have more than one traversing the sonicwall?
This topic first appeared in the Spiceworks Community

Similar Messages

  • HP 1810G-8 vlan tagged port

    Hello, friends!
    I have some issue on HP ProCurve 1810G. My HP switch is uplinked to Netgear GSM7248 6 port. Some machine1 is connected to Netgear untagged port with PVID 11. I needed machine2 connected to HP to get reachable from machine1. So, on HP I've created vlan 11, tagged uplink port and set untagged port which is connected to machine2. 
    On Netgear I just tagged 6 port.
    It works, no problem.
    But later I needed another 2 machines to see each other in same manner. So, I have done same steps, but for vlan 32.
    After this HP switch and all connected to it stuff became unreachable.No suspicious entries found in log.
    I tried to replace HP with old as hell cisco switch and it works.
    Tried also to upgrade HP to p2.12, but it didn't help.
    Please, help.

    Hi:
    You may also want to post your question on the HP Business Support Forum -- Procurve Switches section.
    http://h30499.www3.hp.com/t5/ProCurve-ProVision-Based/bd-p/switching-e-series-forum#.VCgRxHl0y9I

  • How to get info over snmp on cisco switch whether native vlan on a port is tagged or not?

    Hi!
    I want to know which oid(s) should I query to know whether native vlan on trunk port on cisco switch is tagged or not?
    I am querying the oid .1.3.6.1.4.1.9.9.46.1.6.3.0 (vlanTrunkPortsDot1qTag) on cisco 3560 (E Series) and I am getting global value. Also, this OID is showing as deprecated. So I query .1.3.6.1.4.1.9.9.246.1.6 (cltcDot1qAllTagged) and its subtree, but no value is returned.
    Switch Version is
    Cisco IOS Software, C3560E Software (C3560E-UNIVERSALK9-M), Version 12.2(50)SE2

    Keep in mind that DHCP is a broadcast packet to start. So the AP can only listen in the subnet that it has an IP address for.
    Now, for any other subnet you can use the AP for DHCP but you have to have an IP helper address on your L3 pointing back to the AP.
    That being said, I wouldn't use the DHCP server on the AP as it is limited. You'd be better off using a Microsoft server or some other device that is designed for DHCP.
    HTH,
    Steve

  • RV320 - vlan on Wan Port

    Here in Brazil VIVO (from the spanish Telefonica group) is recently providing fiber links.
    Their fiber link is being splitted into 2 vlans: one for their IPTV (vlan id 20) and another for internet (vlan id 10).
    So, when they install on your house or company, they install 2 boxes: 1 ONT (Optical Network Terminal) and 1 router (which connects to the ONT and does the PPPoE auth on VLAN 10 and creates the internal VLAN for the IPTV - id20). 
    So, is it possible to replace their router with the RV320 and create tagged / untagged VLAns on Wan Ports and assigning ip address on each vlan (PPPoE for internet, DHCP for iptv)?
    The topology is basically like this:
    [Fiber Cable]
    ONT
    [Ethernet Gigabit]
    Router
    [Ethernet / Coaxial]
    Network Devices
    TVs (coaxial connection provided by 2. Router)
    PCs (wireless /ethernet connection provided by 2.Router)

    Hello, 
    Thank you for sharing the information about the DD-WRT firmware on other devices.Unfortunately the RV320 is not capable of such a feature, it is just not designed to do that.
    On the other hand we do have one unit that is capable of such configuration, it is the RV315W router. 
    Here is a link to the emulator for the unit so that you have an idea of its capabilities.
    http://www.cisco.com/assets/sol/sb/RV315W_Emulators/RV315W_Emulator_v1.01.03/index.asp.htm
    The feature you are looking for can be configured by going to Port settings, WAN, Wan interface settings, then you can configure the desired VLANs. 
    I'm not sure that this device is available in Brazil. If it is not available then you may have to consider using enterprise units or other devices.
    Please let us know if this is helpful.

  • Lost internet connection while restoring iphone 4S from backup after iOS 6

    Hi everyone..
    I have just updated my iPhone 4S to iOS6 yesterday. It was iOS5.1.1 and was in jailbreak mode before the update.
    I did sync my iphone and did the 'Backup' as well before the update by using my latest iTunes via my laptop.
    The iOS6 update was successful.
    However, the 'Restore from backup' failed.. many times!! Everytime I tried to Restore from backup, i lost internet connection towards the end of the 'restore in progress'  process so it was never complete. I had to pull out the iphone cable or restart my pc every single time that happened. Because i cannot get an internet connection after that happened. I cannot connect to any wireless network, so I had to restart the pc!
    (the iPhone says 'Restore complete' as soon as I pulled out the cable. But phone stays as NEW phone, none of my backup data was restored).
    During the 'restore from backup' attempts (via iTunes 10.7 on laptop), I have tried:
    - Restoring to factory settings first and then restore from backup = tried many times and still failed.
    - Uninstalled Apple mobile device and iTunes and re-installed them = still failed.
    - Switched OFF the phone and hold the Home button while connecting to the laptop. Restored to factory settings, then tried to restore from backup = still failed!!
    - switching to different USB ports on my laptop including USB 2.0 and USB 3.0 = no luck, still failed.
    NOTES:
    -Laptop is on Windows 7 and have had NO such problems so far. I have been using iPhone since 3GS.
    -Internet connection is via wireless router, steady connection.
    -My 3GS was on jailbreak mode before. I bought iPhone 4S and successfully restored from my '3GS backup' without any problem.
    -iTunes 10.7 installed/updated.

    Nevermind.. I just found the solution to my problem.
    I copied the Backup folder into my mate's laptop and did the 'Restore from backup'.
    All is good now.. Only need to re-install my apps, soon after all will be back as per normal!

  • 3750-x and vlan dot1q tag native command

    Hello,
    I have a 3750-X stack with the following HW & SW revisions:
    Cisco-3750-x-stack>show version
    Cisco IOS Software, C3750E Software (C3750E-UNIVERSALK9NPE-M), Version 15.0(2)SE4, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    sCopyright (c) 1986-2013 by Cisco Systems, Inc.
    Compiled Wed 26-Jun-13 01:47 by prod_rel_team
    ROM: Bootstrap program is C3750E boot loader
    BOOTLDR: C3750E Boot Loader (C3750X-HBOOT-M) Version 12.2(53r)SE2, RELEASE SOFTWARE (fc1)
    Cisco-3750-x-stack uptime is 1 day, 6 hours, 56 minutes
    System returned to ROM by power-on
    System restarted at 20:27:32 UTC Tue Mar 29 2011
    System image file is "flash:/c3750e-universalk9npe-mz.150-2.SE4/c3750e-universalk9npe-mz.150-2.SE4.bin"
    License Level: lanbase
    License Type: Permanent
    Next reload license Level: lanbase
    cisco WS-C3750X-48P (PowerPC405) processor (revision A0) with 262144K bytes of memory.
    Processor board ID FDO1524K1J2
    Last reset from power-on
    2 Virtual Ethernet interfaces
    1 FastEthernet interface
    104 Gigabit Ethernet interfaces
    4 Ten Gigabit Ethernet interfaces
    The password-recovery mechanism is enabled.
    512K bytes of flash-simulated non-volatile configuration memory.
    Base ethernet MAC Address       :
    Motherboard assembly number     : 73-12553-05
    Motherboard serial number       : 
    Model revision number           : A0
    Motherboard revision number     : C0
    Model number                    : WS-C3750X-48P-L
    Daughterboard assembly number   : 800-32727-01
    Daughterboard serial number     : 
    System serial number            : 
    Top Assembly Part Number        : 800-31324-02
    Top Assembly Revision Number    : C0
    Version ID                      : V02
    CLEI Code Number                : 
    Hardware Board Revision Number  : 0x03
    Switch Ports Model              SW Version            SW Image
    *    1 54    WS-C3750X-48P      15.0(2)SE4            C3750E-UNIVERSALK9NPE-M
         2 54    WS-C3750X-48P      15.0(2)SE4            C3750E-UNIVERSALK9NPE-M
    Switch 02
    Switch Uptime                   : 1 day, 6 hours, 56 minutes
    Base ethernet MAC Address       : 
    Motherboard assembly number     : 73-12553-06
    Motherboard serial number       : 
    Model revision number           : A0
    Motherboard revision number     : A0
    Model number                    : WS-C3750X-48P-L
    Daughterboard assembly number   : 800-32727-03
    Daughterboard serial number     : 
    System serial number            : 
    Top assembly part number        : 800-31324-03
    Top assembly revision number    : B0
    Version ID                      : V03
    CLEI Code Number                : 
    License Level                   : lanbase
    License Type                    : Permanent
    Next reboot licensing Level     : lanbase
    Configuration register is 0xF
    I am trying to setup native vlan tagging using the command "vlan dot1q tag native".   I am entering this when I am in privileged exec mode, and then config mode.   When enter vlan ? it does not show dot1q as an option.   Any thoughts on what I might be missing?   What I am trying to achieve is all ingress untagged traffic (from my Meru controller) will be tagged with VLAN tag 101 as it progresses through my network, and any tagged traffic on vlan 101 which is destined for the port where my Meru controller is located will be delivered to the Meru controller untagged.   I can set this up in this manner on a SG300 Cisco switch, and I believe this is what "vlan dot1q tag native" will achieve if I am understanding correctly.
    I welcome suggestions on both why the "vlan dot1q tag native" won't work, and on what I am trying to accomplish.
    Thx
    Bryan

    Hi Aaron,
    Thank you for the quick reply.  
    The Meru controller uses untagged traffic to talk between the controller and the APs.   It also uses tagged traffic to talk between the controller and the VLANs which I have associated with each of the SSIDs.   I am trying to find a way to do what is normally done with an access port, but do that with an LACP group (801.Q trunk).   Where the untagged traffic entering the network from the controller gets tagged as VLAN 101 as it transits the network, and then traffic which is delivered to that 801.Q trunk on VLAN 101 has the tag removed, but all other traffic entering that port will be appropriately tagged, and the tagged traffic along with the tags well egress from that port to the Meru controller.    I have done this before on a Cisco SG300 switch, but not on the 3750-X core in my home.   If I can't make this work I can front end the Meru controller with an SG300 but now I will be introducing another potential point of failure.
    Also, do you have any idea why the "vlan dot1q tag native" would not be accepted by the IOS version on this switch stack?
    Thx
    Bryan

  • Wlc2112-k9 802.1x dynamic vlans on multiple ports

    I have a wlc2112-k9. I have succesfully setup a WLAN with 802.1x authentication and dynamic VLAN assignment. The issue I have (and maybe it isn't an issue and just the way the controller works) is that if the vlan interfaces I have defined are connected to different ports from which the default interface for the WLAN it doesn't work.
    So for instance, I create my WLAN and set the interface to the management interface (which is connected to port 1). I then define all my other vlan interfaces that could be returned by my radius server.
         ex: vlan_102 connected to port 2
               vlan_104 connected to port 3
               vlan_106 connected to port 4
    And so forth.
    Port 1 is configured on the switch on vlan 21. If the radius server returns a VLAN ID of 102, 104 or 106 my client successfully connects to the WLAN but it gets put on VLAN 21. However if I move the vlan interfaces above over to port 1 the client correctly gets put on the correct VLAN.
    All ports on the switch are configured as trunk with the native vlan set to the corresponding value that is set on the WLC.
    Is this just the way the controller functions? That it can't assign a client to a different interface that is connected to a different port from the default one setup when the WLAN is created? I would have just though that if the radius server returned VLAN 102 that it would find that interface and connect the user session via that interface regardless of the port it is configured on.
    Thanks

    dynamic vlan assignment should work with the controller
    by returing the standard IETF attributes
    64,65, and 81
    You said that you have configured the native vlan on each trunk port to be exactly the same as the vlan assigned to dynamic interface on the neighbor controller port. Make sure to have the native vlan something else specially i guess that you have tagged the vlans on those dynamic interfaces.
    Please make sure to rate correct answers

  • HT201274 I was in the middle of a restore on my Ipad 2 and lost internet connection about 2/3 of the way through the firmware update, and now it fails everytime I try to restore. It says ERROR 2. Can anyone help?

    I was in the middle of a restore on my Ipad 2 and lost internet connection about 2/3 of the way through the firmware update, and now it fails everytime I try to restore. It says ERROR 2. Can anyone help?

    Resolve specific iTunes update and restore errors - Support - Apple
    Configure your security software
    Related errors: 2, 4, 6, 9, 1000, 1611, 9006, 9807, 9844. Sometimes as a result of this issue, a device might stop responding during the restore process.
    Check your security software and settings, which can block ports and prevent connection to Apple servers during update and restore.

  • I lost internet connection while entering in an Itunes gift card and now there is no money on my account and it says my card has been used

    I was entering my itunes gift card and after  hit submit I lost internet connection. I never got my giftcard redeemed and now the card wont work. Help please

    To Contact iTunes Customer Service and request assistance
    Use this Link  >  Apple  Support  iTunes Store  Contact

  • SG500 LACP trunk mismatch native vlan on individual ports

    Hi All,
    I have just configured up a sg500 with a lacp trunk to an upstream switch.
    I am getting native vlan mismatch on the individual ports of the lacp team.
    24-Jan-2013 12:54:48 %CDP-W-NATIVE_VLAN_MISMATCH: Native VLAN mismatch detected on interface gi1/1/24.
    24-Jan-2013 12:57:35 %CDP-W-NATIVE_VLAN_MISMATCH: Native VLAN mismatch detected on interface gi1/1/48.
    The following is showing the correct native vlan
    BH-WS-AC-2#show int switchport port 1
    Port : Po1
    Port Mode: Trunk
    Gvrp Status: disabled
    Ingress Filtering: true
    Acceptable Frame Type: admitAll
    Ingress UnTagged VLAN ( NATIVE ): 2000
    Port is member in:
    Vlan               Name               Egress rule Port Membership Type
    1200               1200                 Tagged           Static       
    1210            Management              Tagged           Static       
    1212               1212                 Tagged           Static       
    2000           Native Vlan             Untagged          Static      
    But the following shows that the individual ports think they are the default vlan 1.
    BH-WS-AC-2#show int switchport gi1/1/48
    Port : gi1/1/48
    Port Mode: Trunk
    Gvrp Status: disabled
    Ingress Filtering: true
    Acceptable Frame Type: admitAll
    Ingress UnTagged VLAN ( NATIVE ): 1
    Port is member in:
    Vlan               Name               Egress rule Port Membership Type
    The following shows the LACP as up:
    BH-WS-AC-2#show int Port-Channel 1
    Load balancing: src-dst-mac-ip.
    Gathering information...
    Channel  Ports
    Po1      Active: gi1/1/24,gi1/1/48
    Is this normal behaviour? as i cannot set the native vlan directly on the gi interface due to it being in the trunk.
    Simon

    Hi Simon, native vlan mismatch is a cosmetic error from CDP. It won't affect services provided the vlans are a member of the ports in question.
    You can set the native vlan while it is within the lag. On the SX500 it would be
    config t
    int po1
    switchport trunk native vlan xxxx
    The port channel is the same as any other individual port so it's not a problem. 802.1q specifies the native vlan is the untagged member, if you want to get rid of the error, make sure the untagged vlans match up on both sides.
    -Tom
    Please mark answered for helpful posts

  • Vlan over wireless bridge with internet sharing?

    Hi Community, my first post here, hoping somebody may be able to advise...
    I live on a farm which is too far for broadband but fortunately I also have an office in a nearby town and because I have line of sight I have setup a wireless bridge, this gives me 8 MBits which is wonderful. Some of my equipment, for example a NAS is on the farm, and I need to access them from the office via the wireless link and I occasinally use vnc to access my office desktop from the farm. This all works beautifully.
    Ok. now I want to share my internet with my neighbor on the farm, who, in a strange twist also rents an office next to mine downtown, so I would like to give him access to the internet and to his equipment he has there too.. but I don't want him to be able to access my equipment and visa versa I don't want to see his stuff...
    This sounds like a job for port based VLAN.. and so what I bought is two Linksys/Cisco SLM2005 layer2 switches in the hope that this would allow me to do what I want... but I'm not so sure now. In the office I use a draytek v2910 which has a vlan feature that allows me to separate the ports from each other, only giving them internet access.
    So... if I connect these two switches to each other, and I create a VLAN with the same id on each of the switches, will the corresponding vlans be shared, so, if you assume the following hardware setup:
    farm: slm2005 switch
    port 1 -> wireless bridge to office: member of vlan "2", "3"
    port 2 -> access point A for neighbor: member of vlan "2"
    port 3 -> my own access point B: member of vlan "3"
    office: slm2005 switch
    port 1 -> wireless bridge to farm: member of vlan "2", "3"
    port 2  -> access point C for neighbor: member of vlan "2"
    port 3 -> my access point for office D: member of vlan "3"
    port 4 -> router port 1: member of vlan "2"
    port 5 -> router port 2: member of vlan "3"
    the router (draytek v2910) is configured in such a way to separate port 1 and port 2 (otherwise there would be a loop...)
    The idea here is to create a vlan "2" for my neighbor and "3" for myself. but what's the correct way to consider the wireless bridge inbeetween (in fact, I think the same problem would occur if I just connected the two switches with a cable (if i had a 2 mile long one..)...)
    Will my neighbor be able to see both access points "A" and "C" and the internet, but not be my access points "B" and "D"? Or does this whole concept of VLAN over bridge not work like this, or not at all?
    Thanks in advance for any advice,
    Andres

    Hi Andreas,
    you're not far from it.
    Your whole concept is ok. What you just need is on the gateway of each subnet (I would presume it's the router in the office) to create an access list preventing to route between vlan 2 and 3.
    On all other devices,  traffic can't jump between vlans. But on a routing device that has the Vlan layer3 interfaces, traffic is routed between vlans so that's where you need to prevent it.
    With regards to vlans over wireless, you're also having the good concept. The point is to have only 1 ssid, that will be in a certain vlan, but also bridging the other vlans onto that ssid.
    This doc should help you out :
    http://www.cisco.com/en/US/partner/products/hw/wireless/ps4570/products_configuration_example09186a00801d0815.shtml#vlanbr
    HTH,
    Nicolas
    Thanks to rank the answer if you see it as useful !

  • Installed Lion, lost Internet through ethernet cable. Any suggestions?

    Hi there,
    After installing Lion OS X system, I lost Internet through my Eternet Connection. Did work properly before. Any suggestions from your side to solve this issue?
    JHoek

      The modem is NetGear model DM111P.
    The cable is currently plugged into the back of the iMac.
    Yeah that is the one.. real pain.. is it in bridge or one to one NAT.. or you don't know.
    So at present you have Modem--- computer??
    Time machine is currently OFF. It is new, bought 3 months ago.
    Mac OS X Lion 10.7.5
    I cant find a re-set button on the Time machine
    Time Capsule I guess you mean?? Time machine is software in the computer. Time Capsule is the box outside.
    Just try.. plug
    Modem--- wan port TC --lan port---Computer.
    Press reset.. reset is small hole next to kensington lock.. use a paper clip and press it in gently until you feel a click... keep holding it for 10sec with the power on.. until the front led flashes rapidly.
    See if the computer works to internet.. if not you can just unplug TC and connect back again.
    The issue is the Netgear is giving TC an address 10.0.x.x and that is causing the TC which uses the same address range to fail.. perhaps. Or it is just the netgear being its normal rotten self.
    I would recommend go and buy a wireless modem router.. wireless is a near zero add on price.. you can get TP-Link or cheap brand.. and much less trouble than the netgear..
    The alternative is to bridge the Netgear and use PPPoE client in the TC.. but let me say this isn't easy IMHO.. and I see lots of posts of people struggling with that model.

  • My iMessage doesn't work, and I keep getting a message saying I've lost Internet connection(when really my wifi is just fine) and it won't sign me in. Help?

    My iMessage doesn't work, and I keep getting a message saying I've lost Internet connection(when really my wifi is just fine) and it won't sign me in. Help?

    Thank you soo much ! Every now and then I would check my DNS and it would say 8.8.8.8 but I just checked now and realised it was somethin something something THANK YUU SOO MUCH ! REALLY APPRECIATE IT AND YU DESERVE THOSE  49,085 points !!!

  • My Macbook Pro 13" lost Internet connection last night. Why?

    My Macbook Pro 13" lost Internet connection last night. It's still out today, but my mother's Windows machine still gets it just fine. What happened to my Mac? The folks at Comcast told me it's a problem for Apple to fix. I'm hoping someone here can give me some insight.

    see if there is anything for you.
    http://support.apple.com/kb/TS1920

  • Upgraded to version 5.0 (4099) but have lost internet radio

    I have recently upgraded my Apple TV software as homesharing was not working.  Now that I have done the update, I seem to have lost Internet Radio .  Home sharing now works though!

    I actually solved this problem by looking at another post.  I changed the location to the US in the settings menu and the ATV updated itself showing the new menu layout as well as Internet Radio which is now working.  I have no idea why changing the location works but it did the trick.

Maybe you are looking for

  • Updateable Snapshot changes not getting propagated

    Hi, I am using Oracle 8.1.7 with Updateable snapshot replication. When I do a dbms_snapshot.refresh as the repadmin user from the snapshot site, the changes I made to the table I am refreshing are not pushed to the master site. Also, the update is ac

  • Upload data from excel into database through pl/sql

    Hi All, I have excel which contains data lets say employee details, I have one upload button ,which is used to upload excel and then i want to map the cell of excel to the database column and through plsql code i want to upload the excel data into da

  • ERROR in JDBC adapter...

    HI My call to a stored proc in SQLServer fails with SQL exception Error processing request in sax parser: Error when executing statement for table/stored proc. 'EmployeeFetch': java.sql.SQLException: [Microsoft][SQLServer 2000 Driver for JDBC]Can't s

  • HT4236 how to delete photos from photo libarby

    how to delete photos from photo album

  • Can I create a submenu in a movie with chapters?

    I have a 1 hour instructional movie with 9 chapters. I want to add dozens of submenus. I know how to go back to FCE and make chapters, but how do I make dozens of sub menus from within idvd?? imac   Mac OS X (10.4.9)