WAP200e perte de connexion quand VLAN active
Bonjour , J ai un ap wap200e. Je veux active le VLAN et gère la partie management par le VLAN 700 et laisser le VLAN 1 en untagged . lorsque j active le VLAN je perd la connexion. J essaye de passer le port de mon PC en mode trunk ou mode général pour la version switch dell mais je n y arrive pas..... Je veux bien une aide.
Bonjour , J ai un ap wap200e. Je veux active le VLAN et gère la partie management par le VLAN 700 et laisser le VLAN 1 en untagged . lorsque j active le VLAN je perd la connexion. J essaye de passer le port de mon PC en mode trunk ou mode général pour la version switch dell mais je n y arrive pas..... Je veux bien une aide.
Similar Messages
-
Nexus: HSRP on vrf vlan - Active Nexus cannot ping physical ip and VIP but Standby can
Hi Cisco experts,
Has anybody experienced this kind of problem with HSRP on vrf vlan, wherein the Active Nexus cannot ping the its own Physical IP and VIP from Global vrf to Internal VRF but it can ping the physical ip of the standby. While on the Standby you can ping all ( Physical of Active, VIP, and its own physical IP.
Hope you can help me on this matter. See attached ping test for clearer view. I can show the config if needed just request.
Thanks all.yes you need it.
This is how you assign the serverfarm to the vip.
switch/User1(config)# policy-map multi-match SLB1
switch/User1(config-pmap)# class VIP-250-81
switch/User1(config-pmap-c)# no loadbalance policy SF_Linux4
switch/User1(config-pmap-c)#
gdufour-cat6k1#ping 192.168.100.250
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 192.168.100.250, timeout is 2 seconds:
Success rate is 0 percent (0/5)
gdufour-cat6k1#
[Resuming connection 1 to 127.0.0.30 ... ]
switch/User1(config-pmap-c)# loadbalance policy SF_Linux4
switch/User1(config-pmap-c)#
gdufour-cat6k1#ping 192.168.100.250
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 192.168.100.250, timeout is 2 seconds:
Success rate is 80 percent (4/5), round-trip min/avg/max = 1/1/1 ms
gdufour-cat6k1# -
MON IPHONE 4S NE POSSEDE PAS DE BASEBAND ET IL S ETEINT QUAND J ACTIVE MA CARTE SIM
bonjour a tous,
j espere que vous allez pouvoir m aider, je vous explique mon soucis:
je possede un iphone 4s, baseband 3.1.04, mon soucis est que parfois mon baseband n'apparait pas dans informations,
mais le plus contraignant c'est que si je ne met pas de carte de sim, mon iphone fonctionne tres bien,
Par contre dés que j'allume mon iphone et que je rentre mon code pin, il s'eteint
j'ai tout essayé, 1) j ai changer la batterie
2) j'ai changer la carte sim
3) je l'ai restaurer entierement
4) j'ai effectué la Mise a jour sur OS6.1
Voila je ne sais plus quoi faire, je ne veux pas passer par des outils et logiciel non conforme, je souhaite reellement effectué une VRAI RESTAURATION AVEC DES REGLAGES CONFORMES
Merci de votre aide, je reviens vers vous a chaque nouvelle etape que vous me conseillerezje crois que ton iphone a été jailbreaké et il est interdit de parler de ce sujet sur ce site
désolé -
Auto start GPRS connexion in PPC
Hello
I have a Java Application running under Pocket PC and Jeode.
If GPRS connexion isn't active in PPC, i need to start manually this connexion in my pda.
Internet Explorer is able to start automatically a GPRS connexion without start manually this connexion in PPC.
My question is: How can I to start the default PPC GPRS connexion from a Java appliation. This is the way I'm using to connect:
url_envio = new URL(http://www...);
conexion = (HttpsURLConnection)url_envio.openConnection();
conexion.setHostnameVerifier(Constantes.DO_NOT_VERIFY);
conexion.setRequestProperty("REQUEST_METHOD","POST");
conexion.setUseCaches(false);
conexion.setDoOutput(true);
conexion.setDoInput(true);
conexion.setAllowUserInteraction(false);
Many thanks for your help.
RegardsAnyone? This is a pretty big deal, for those who are affected...
-
Manipulating allowed VLAN list on trunks
I am in the process of restricting some of my VLANs so that they can be accessed only on the switches that actually need them. I have a VTP domain, so I am doing it by manipulating the "allowed" lists on the trunks. I have a mixed environment of IOS 4500, CatOS 4000, CatOS 5500, and IOS 29xx.
So, I have a number of questions and observations:
1. There are some special default VLANs, 1002-1005, which are designated fddi-default, token-ring-default etc. In an Ethernet-only environment, is there any harm if I clear these from all the trunks?
2. I do not use the extended VLAN range 1025-4095. Is there any harm if I clear these from all trunks?
3. Just out of academic interest, what ever happened to VLANs 1006 to 1024? They do not appear in any of the default "allowed" lists. Are they reserved for something?
4. Suppose my native VLAN for my trunks is not 1, let us say 99. And my management is on yet another VLAN, say 98. What happens if I try and clear the native VLAN 99 from the trunks? (Yes, I know I should try this in a lab, but does anyone know the answer to save me the effort of setting it up?)
5. Suppose I have a VLAN, say 50, that is only needed in two switches, so I clear it from all trunks except the one between those two switches. But all the switches know about it cos it is in the VTP list. I notice that in the IOS switches, the PVST+ instance for that VLAN get shut down. In the CatOS switches, the STP seems to continue to run, but the root bridge is designated as 00-00-00-00-00-00. Are these two behaviors consistent, i.e. what is actually going on in the CatOS case? (AAMOF, in the IOS switches, it is enough that none of the ports has an "up" presence in the VLAN, and the PVST+ instance shuts down, even if there are "down" ports configured to use it.
6. Is there any way to set a global default "allowed" list in a switch, so that any new trunks only allow those VLANs, regardless of what is in the VTP list? (That is, apart from setting it to "transparent", which have other unwanted side effects such as not being aware of the creation of new VLANs.)
That's a lot of questions. The new edition of the Clarke/Hamilton book is well overdue!
Kevin Dorrell
LuxembourgGlen,
Thanks for the responses.
1. I shall clear them out immediately.
2. I shall clear them out immediately.
3. It's a mystery. Anyone?
4. It was 99 because that VLAN was created specifically to accommodate the trunks. Unfortunately, in that particular network, VLAN 1 was still in use as an access VLAN. It is recommended not to have any access ports on the VLAN that is used as the native on the trunks, to prevent VLAN-hopping. Most NetAdmins do this by putting all the access ports anywhere but VLAN 1, and keeping VLAN 1 for trunk natives and/or management. This network did it the other way round, by shifting the native of the trunks off onto an unused VLAN. But I don't know what would happen if I cleared the native VLAN off the trunk.
5. I think here we need to distinguish between VTP and STP, and between allowed lists and pruning. I am not pruning here, I am actually clearing the VLANs from the trunks. In the case of pruning, the VTP declines to send the broadcasts down the trunk if they are not useful at the access layer switch, but the Spanning Tree topology is not affected. In the case of clearing, the Spanning Tree topology of the VLAN is actually modified, as if the trunk did not exist for that VLAN. OTOH, the VTP VLAN list is propagated to all switches, regardless of whether they have any presence on each VLAN. So according to the VTP server and all clients, there is a load of VLANs active in the domain. But if you have an allowed list on all the trunks, it could well be that the access switch knows about a VLAN, but does not have any presence on it. That is when the IOS shuts down the PVST+ STP for that VLAN, and a CatOS switch registers the root bridge as 00-00-00-00-00-00. As opposed to the case where the VTP domain does not have a VLAN in its database, so the CatOS has no STP instance for it.
6. Anyone else?
Thanks for the responses.
Kevin Dorrell
Luxembourg -
IDSM-2 inline between multible VLAN
Hi,
I have a coreswitch 6509 which is include IDSM-2 actully the core switch handle the traffice between the usres VLANs and the server Vlan (vlan 11)
The users Vlan are (Vlan 2 , 3, 4, 5, 6 and 7). I need to configure the core switch and IDSM to be inline between the Users VLANs and the Server farm Vlan to inspect the traffic comming from the useres.
as my understanding I can use the ISDM inline mode between multible Vlan but unfortunattly my test to drop the ICMP request to server is faild.
Kindly advice if that available or it should be only in promisecouse mode.
also if there any sample of succesfully configuration.
my configuration is as below:
Core-SW-RYD#sh run | in intr
intrusion-detection module 9 data-port 1 trunk allowed-vlan 2-7,11
intrusion-detection module 9 data-port 2 trunk allowed-vlan 2-7,11
intrusion-detection module 9 data-port 1 autostate include
intrusion-detection module 9 data-port 2 autostate include
intrusion-detection module 9 data-port 1 portfast 1
intrusion-detection module 9 data-port 2 portfast 1
VLAN Name Status Ports
1 default active Gi9/2, Gi9/3, Gi9/4, Gi9/5, Gi9/6
2 Food-D-VLAN active
3 Comm-D-VLAN active
4 Emar-D-VLAN active
5 Finance-D-VLAN active
6 Glucose-D-VLAN active
7 IT-D-VLAN active Gi1/3
11 servers-Vlan active Gi1/2, Gi1/4, Gi1/5, Gi1/6, Gi1/7, Gi1/8, Gi1/9, Gi1/10, Gi1/12, Gi1/13
Gi1/14, Gi1/15, Gi1/16, Gi1/17, Gi1/18, Gi1/19, Gi1/20, Gi1/21, Gi1/22
Gi1/23, Gi1/24, Gi1/25, Gi1/26, Gi1/27, Gi1/28, Gi1/29, Gi1/31, Gi1/32
Gi1/33, Gi1/34, Gi1/35, Gi1/36, Gi1/37, Gi1/38, Gi1/39, Gi1/41, Gi1/42
Gi1/43, Gi1/44, Gi1/45, Gi1/46, Gi1/47, Gi1/48, Gi2/10, Gi2/11, Gi2/12
Gi2/13, Gi2/15, Gi2/16, Gi2/18, Gi2/19, Gi2/20, Gi2/21, Gi2/22, Gi2/23
Gi2/24, Gi3/1, Gi3/2, Gi3/3, Gi3/4, Gi3/5, Gi3/6, Gi3/7, Gi3/8, Gi3/9, Gi3/10
Gi3/11, Gi3/12, Gi3/13, Gi3/14, Gi3/15, Gi3/16, Gi3/17, Gi3/18, Gi3/19
Gi3/20, Gi3/21, Gi3/22, Gi3/23, Gi3/24
your support will be highly appreciated.
Best Regards,
MagdyHi Mohamed.
with inline mode, you can only bridge vlans in pairs uniquely!. so you can only bridge vlan 11 to another single vlan. and remember since they are bridged, that means the 2 vlans need to have the same ip subnet.
but looking at your requirements, i'm guess the different vlans are on different ip subnet ranges.
In that case, you'll need to do promiscuous mode.
However in promiscuous mode, you can only do acl blocking. and first packet will pass successfully but will trigger the sensor to configure the router to create an acl, and further packets will be dropped.
However if you redesign a bit you can use promiscuous mode. for example create a new layer 2 vlan (let's say 14), move the servers to this vlan.
You only need to trunk vlan11 and vlan14 to the idsm module, then create a single vlan-pair on the IPS which bridges vlan11 and vlan 14. then configure the signature to drop packets inline. SInce now for the clients who need to contact the servers need to pass traffic to vlan11, and the idsm is in the middle between vlan 11 and 14, then it should drop pings to the servers.
Regards,
Fadi. -
Unable to create extended vlan
Dear All,
Is there anyway to create extended vlan(from 1006 to 1010) on my cisco 7604? These are existing customer vlan which I planned to move to this 7604 but unfortunately cant. I believe only FDDI and Token ring vlan unable to remove. Expert please advice.
PBR#sh ver
Cisco Internetwork Operating System Software
IOS (tm) s3223_rp Software (s3223_rp-IPSERVICES_WAN-M), Version 12.2(18)SXF17, R
ELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2009 by cisco Systems, Inc.
Compiled Fri 25-Sep-09 06:10 by ccai
Image text-base: 0x40101040, data-base: 0x42A509B0
ROM: System Bootstrap, Version 12.2(17r)SX3, RELEASE SOFTWARE (fc1)
BOOTLDR: s3223_rp Software (s3223_rp-IPSERVICES_WAN-M), Version 12.2(18)SXF17, R
ELEASE SOFTWARE (fc1)
PBR uptime is 11 weeks, 1 day, 21 hours, 33 minutes
Time since PBR switched to active is 11 weeks, 1 day, 21 hours, 33 min
utes
System returned to ROM by power cycle (SP by power on)
System image file is "sup-bootdisk:s3223-ipservices_wan-mz.122-18.SXF17.bin"
cisco CISCO7604 (R7000) processor (revision 2.0) with 458752K/65536K bytes of me
mory.
Processor board ID FOX1340GBXD
R7000 CPU at 300Mhz, Implementation 0x27, Rev 3.3, 256KB L2, 1024KB L3 Cache
Last reset from power-on
SuperLAT software (copyright 1990 by Meridian Technology Corp).
X.25 software, Version 3.0.0.
Bridging software.
TN3270 Emulation software.
18 Virtual Ethernet/IEEE 802.3 interfaces
57 Gigabit Ethernet/IEEE 802.3 interfaces
1915K bytes of non-volatile configuration memory.
65536K bytes of Flash internal SIMM (Sector size 512K).
Configuration register is 0x2102
PBR#
PBR#sh vlan
VLAN Name Status Ports
1 default active Gi3/14, Gi3/44
2 HPeP_Terrestrial_Side active
3 HPeP_Satellite_Side active Gi3/23, Gi3/24
5 Management active Gi3/1, Gi3/2, Gi3/3, Gi3/4
Gi3/5, Gi3/6, Gi3/7, Gi3/8
Gi3/9, Gi3/12, Gi3/13, Gi3/15
Gi3/31, Gi3/35
6 Customer_Traffic active Gi3/11, Gi3/37, Gi3/38
8 GCU active Gi3/33, Gi3/34
20 SIME active
45 Petrofac active
51 140.176.51.0/24-client-vlan active
101 Internet_Connection active Gi1/1, Gi1/2, Gi3/16, Gi3/26
190 BUK_FVSB active
201 Customer_VLAN_201 active
202 GITNS2A active
203 Internet_Connection_New active Gi3/17, Gi3/48
204 Sports_Toto_Malaysia active
205 XOM_EXXONMOBIL active
206 PCSB active
990 Unused_Ports active Gi1/3, Gi1/4, Gi1/5, Gi1/6
Gi1/7, Gi1/8, Gi1/9
999 RSPAN active
1002 fddi-default act/unsup
1003 token-ring-default act/unsup
1004 fddinet-default act/unsup
1005 trnet-default act/unsup
VLAN Type SAID MTU Parent RingNo BridgeNo Stp BrdgMode Trans1 Trans2
1 enet 100001 1500 - - - - - 0 0
2 enet 100002 1500 - - - - - 0 0
3 enet 100003 1500 - - - - - 0 0
5 enet 100005 1500 - - - - - 0 0
6 enet 100006 1500 - - - - - 0 0
8 enet 100008 1500 - - - - - 0 0
VLAN Type SAID MTU Parent RingNo BridgeNo Stp BrdgMode Trans1 Trans2
20 enet 100020 1500 - - - - - 0 0
45 enet 100045 1500 - - - - - 0 0
51 enet 100051 1500 - - - - - 0 0
101 enet 100101 1500 - - - - - 0 0
190 enet 100190 1500 - - - - - 0 0
201 enet 100201 1476 - - - - - 0 0
202 enet 100202 1500 - - - - - 0 0
203 enet 100203 1500 - - - - - 0 0
204 enet 100204 1500 - - - - - 0 0
205 enet 100205 1500 - - - - - 0 0
206 enet 100206 1500 - - - - - 0 0
990 enet 100990 1500 - - - - - 0 0
999 enet 100999 1500 - - - - - 0 0
1002 fddi 101002 1500 - - - - - 0 0
1003 tr 101003 1500 - - - - - 0 0
1004 fdnet 101004 1500 - - - ieee - 0 0
1005 trnet 101005 1500 - - - ibm - 0 0
Remote SPAN VLANs
999
Primary Secondary Type Ports
PBR#
PBR# sh vlan internal usage
VLAN Usage
1006 online diag vlan0
1007 online diag vlan1
1008 online diag vlan2
1009 online diag vlan3
1010 online diag vlan4
1011 online diag vlan5
1012 PM vlan process (trunk tagging)
1013 Control Plane Protection
1014 L3 multicast partial shortcuts for VPN 0
1015 Egress internal vlan
1016 Multicast VPN 0 QOS vlan
1017 GigabitEthernet3/27
1018 GigabitEthernet3/47
1029 IPv6 Multicast Egress multicast
1030 L3 multicast partial shortcuts for VPN 1
1031 Multicast VPN 1 QOS vlan
1032 L3 multicast partial shortcuts for VPN 3
1033 Multicast VPN 3 QOS vlan
1034 L3 multicast partial shortcuts for VPN 5
1035 Multicast VPN 5 QOS vlan
1036 L3 multicast partial shortcuts for VPN 6
1037 Multicast VPN 6 QOS vlan
PBR#As Cisco Freak said, those vlans are being allocated for internal use
Layer 3 LAN ports, WAN interfaces and subinterfaces, and some software features use internal VLANs in the extended range. You cannot use an extended range VLAN that has been allocated for internal use.
In order to use them, you will need to use a descending vlan allocation option, to start allocation from vlan 4094 and down, to do this you will need to apply the command:
vlan internal allocation policy descending
And then reboot your switch, so the internal vlans get reallocated
For more info refer to this configuration guide:
http://www.cisco.com/c/en/us/td/docs/routers/7600/ios/15S/configuration/guide/7600_15_0s_book/vlans.html#pgfId-1038695 -
Query on Vocie and Data VLan on same Swithc port
Hi All,
This is query regarding allowing both Vocie and data Vlans on a single switch port. I knew tehre are different ways to configure and acheive this, but not sure how techncially they are different from each other>
Way 1:
interface FastEthernet1/5
description *** IP Phone/Data Port ***
switchport trunk native vlan 10
switchport mode trunk
switchport voice vlan 16
no logging event link-status
no snmp trap link-status
mls qos trust cos
spanning-tree portfast
sh int trunk
Port Mode Encapsulation Status Native vlan
Fa1/5 on 802.1q trunking 10
Fa1/7 on 802.1q trunking 10
Fa1/12 on 802.1q trunking 10
Fa1/13 on 802.1q trunking 10
Fa1/14 on 802.1q trunking 10
Port Vlans allowed on trunk
Fa1/5 1-1005
Fa1/7 1-1005
Fa1/12 1-1005
Fa1/13 1-1005
Fa1/14 1-1005
Port Vlans allowed and active in management domain
Fa1/5 1,10,16
Fa1/7 1,10,16
Fa1/12 1,10,16
Fa1/13 1,10,16
Fa1/14 1,10,16
Port Vlans in spanning tree forwarding state and not pruned
Port Vlans in spanning tree forwarding state and not pruned
Fa1/5 1,10,16
Fa1/7 1,10,16
Fa1/12 1,10,16
Fa1/13 1,10,16
Fa1/14 1,10,16
sh vlan-switch
VLAN Name Status Ports
1 default active Fa1/0, Fa1/1, Fa1/2, Fa1/3
Fa1/4, Fa1/6, Fa1/8, Fa1/9
Fa1/10, Fa1/11, Fa1/15
10 DVLAN active
16 VVLAN active Fa1/0, Fa1/1, Fa1/2, Fa1/3
Fa1/4, Fa1/6, Fa1/8, Fa1/9
Fa1/10, Fa1/11, Fa1/15
In the above config, the port Fa 1/5 which is currnetly up and running( this port is ocnencted with IP phoen and a PC) is not shown in sh vlan-switch output as assigned to vlan 10 or vlan 16. Not sure it is becuase the output was taken from ISR rotuer with NM 16-ESW module .
sh int fa 1/5 switchp
Name: Fa1/5
Switchport: Enabled
Administrative Mode: trunk
Operational Mode: trunk
Administrative Trunking Encapsulation: dot1q
Operational Trunking Encapsulation: dot1q
Negotiation of Trunking: Disabled
Access Mode VLAN: 0 ((Inactive))
Trunking Native Mode VLAN: 10 (DVLAN)
Trunking VLANs Enabled: ALL
Trunking VLANs Active: 1,10,16
Priority for untagged frames: 0
Override vlan tag priority: FALSE
Voice VLAN: 16
Appliance trust: none
In above ocnfig, the port is configured as trunk and hence it can carry multiple vlan traffic on swithcport. As IP phones will have inbuilt switch which runs DTP by default and CDP to reciognize the conencted devcies. I am not sure how this config works as even it's configured as trunk the DTP negotiation is disabled and how phone switch can differentiate the voice frames and data frames. Please explain in loigcal as it's known that as we have confgiured vlan 10 as native and vocie vlan 16 as trunk it carries the voice traffic.
Way 2:
interface FastEthernet1/2
description *** IP Phone/Data Port ***
switchport access vlan 10
switchport mode access
switchport voice vlan 16
no logging event link-status
no snmp trap link-status
mls qos trust cos
spanning-tree portfast
In the above config, even the port is access it's carrying multiple vlan traffic despite of being trunk port. Not sure how the trunk will be formed even DTP neogotiation is off. Isi t because of voice vlan command and if so what it deos exactly. Please can anyone elaborate in detail. Sorry, if my post is big and confusing
sh int fa 1/2 switchport
Name: Fa1/2
Switchport: Enabled
Administrative Mode: static access
Operational Mode: static access
Administrative Trunking Encapsulation: negotiate
Operational Trunking Encapsulation: native
Negotiation of Trunking: OffSwitch - Phone - PC
1. First question:
# int f0/1
# switchport mode access
# spanning-tree portfast
# switchport access vlan 50
# switchport voice vlan 10
This is the ideal way to configure and in all latest IOS Switches and in latest ISR routers, we do this as the command "switch port voice vlan" command says to switch port that it carries the voice traffic as tagged and PC as untagged.
As we all know the default switch port of a switch will be either Dynamic auto or Dynamic Desirable which means DTP is on and in turn it means negotiation of trunking is ON. This is as per my understanding.
The Sub-Questions for 1st Question are below:
1 Does the trunk negotiation happen between Access Switch switch port and Mini 3 Port Switch within the IP Phone. If mini switch in IP PHone negotiates to form trunk based on DTP then what’s the default switch port mode of mini switch in the IP Phone.
2. As in above config we are no where mentioning the port to be trunk. But it’s still allowing multiple vlan’s traffic to carry on access port. The switchport mode is access when you do “ sh int fa 0/1 swithcport.”. Is it the swithcport voice vlan command does the magic?
2. Second Question:
# int f0/1
# switchport trunk encapsulation dot1q
# switchport trunk native vlan 10 (data VLAN)
# switchport mode trunk
# swichport voice vlan 15
The Sub-Questions for 2nd Question are below:
When do we use this configuration.? In my set-up the above config is seen on 2811 ISR routers with NM-16ESW modules. Can’t we configure the data vlan a switch port access vlan 10 , instead of trunk native vlan. -
How do you keep a VLAN interface up?
Is there a method that enables you to keep a vlan "UP", even when none of the physical interfaces assigned to that vlan are connected?
If you are using vtp, you can "force" the VLAN active using those commands; depending on the switch you are using, this is done a number of different ways.
newer IOS switch running native mode -
conf t
vlan 1
state active
exit
wr mem
older IOS switch
From an enable prompt -
vlan database
[enters vlan database mode)
[Note: Newer IOS warns that this is deprecated and will not show help -- the help is as follows -
switchname#vlan database
% Warning: It is recommended to configure VLAN from config mode,
as VLAN database mode is being deprecated. Please consult user
documentation for configuring VTP/VLAN in config mode.
switchname(vlan)#?
VLAN database editing buffer manipulation commands:
abort Exit mode without applying the changes
apply Apply current changes and bump revision number
exit Apply changes, bump revision number, and exit mode
no Negate a command or set its defaults
reset Abandon current changes and reread current database
show Show database information
vlan Add, delete, or modify values associated with a single VLAN
vtp Perform VTP administrative functions.
switchname(vlan)#vlan ?
<1-1005> ISL VLAN index
switchname(vlan)#vlan 1 ?
are Maximum number of All Route Explorer hops for this VLAN
backupcrf Backup CRF mode of the VLAN
bridge Bridging characteristics of the VLAN
media Media type of the VLAN
mtu VLAN Maximum Transmission Unit
name Ascii name of the VLAN
parent ID number of the Parent VLAN of FDDI or Token Ring type VLANs
ring Ring number of FDDI or Token Ring type VLANs
said IEEE 802.10 SAID
state Operational state of the VLAN
ste Maximum number of Spanning Tree Explorer hops for this VLAN
stp Spanning tree characteristics of the VLAN
tb-vlan1 ID number of the first translational VLAN for this VLAN (or zero
if none)
tb-vlan2 ID number of the second translational VLAN for this VLAN (or zero
if none)
switchname(vlan)#vlan 1 state ?
active VLAN Active State
suspend VLAN Suspended State
switchname(vlan)#vlan 1 state active (enter)
This will make the VLAN active.
Note that it "works" even when there is no help.
There's a way to do it for CAT OS, but I only have VTP clients on my few remaining Cat OS switches.
Good luck -
Nick
(PS - if this helps, please 'rate' the answer ! :-) ) -
Voice & Data VLAN Implementation
Hello,
We have recently purchased an asterisk based IP PBX, it is hosted in-house which uses Grandstream IP GXP1405 Phones. We have configured and installed. we are able to receive calls and dial out. Unfortunately our infrastructure was not up to par with the PBX. We purchased an SG300 20 port switch, with two RV320 VPN Dual Wan Routers. We have a total of 4 offices. this is the current setup:
HQ 1 - Asterisk Based IP PBX, RV320 VPN router, & SG300
HQ2 - RV320 VPN Router
Office 1 - Simple Linksys Router
Office 2 - Simple Linksys Router
We have established connectivity using the Tunnels incorporated onto the RV320 Routers, so we are able to connect to the HQ locations.
However since the RV320 has dual WAN setup's, we have now have 2 Internet Connections independent from each other. Our goal is to perform the following:
WAN 1 = to be used for Data Traffic
WAN 2 = to be used for Voice Traffic
We would like to do this by separating the VLAN's and directing the traffic from one VLAN to a specific WAN using the equipment above.
We are having issues establishing the voice VLAN and redirecting the traffic once created.
Any help would be appreciated it.
Thanks,Hi Soiser,
My name is Mehdi from Cisco Technical Support,
For the Voice & Data VLAN Implementation we can manage to do it with different way :
First example hard coding the voice vlan
1. we can have the switch Layer 2
2. Configure on the switch Vlan Data and Vlan voice (in this example will have Vlan 1 Data and 100 is Voice vlan) --> under Vlan management --> Create Vlan
3. Configure the port from where the switch is connected to the Router and change it to Trunk port and add vlan voice (until here we made the data traffic as untagged traffic and voice traffic as tagged) by going under Vlan managemnent --> Port Vlan Membership --> select port 20 --> click on join vlan --> by default you have 1UP in the right so now select vlan 100 and select Tagged and move it to the right
4. And the same trunk port with both vlan for all the port on the switch where you have voice and data
5. here we done with the switch
Second Using Auto-voice Vlan implementation
1. We Can have the switch also layer 2
2. we need to configure the AUTO-Voice Vlan under vlan management--Voice Vlan --> Properties by changing the voice vlan 100 and we have two option to choose
Dynamic Voice VLAN: Enable Auto Voice VLAN OR Enable Telephony OUI : the difference is when you have Cisco Phone enable auto-voice vlan and the phone will take all the informations like (Vlan ,..) via CDP protocol
if you have 3rd part Phone select Enable Telephony OUI and configure the first 3 bits of the MAC address of the phones by going under voice vlan -->Telephony OUI --> add 3 bits of the MAC address of the phone but not for all the phones is by model remember first 3 bits of mac
address is the model of the device!
Auto Voice VLAN Activation: select "Immediate"
3. and enable telephony OUI interface
-------> We didn't configure voice vlan the switch will assign voice vlan to the phones when they connect to the switch by CDP or Telephony OUI
Now going to the router :
- By default RV320 Has Vlan ID 100 with subnet 192.168.3.1 so we can change only the ip address of vlan interface or if you deleted by some reason we will need to create a voice vlan by going to Setup-->Network--> multiple Subnet Table --> Create the Vlan interface in my example i will put 10.10.10.1 and mask 255.255.255.0
- Just to check if you going to port management --> Vlan Membership you will see vlan 1 is untagged and vlan voice is tagged this also in our switch !! you can connect the switch from any port of the router since all of them are the same
- if you wantr to change and coding only port 4 for example as trunk and remove other port the voice vlan you can
---> Now should work the voice vlan and data vlan
But we have two WAN and you want to bind the WAN 1 to Data and Wan 2 to Voice
we need to configure Protocol Binding
under System management --> Dual WAN --> Protocol Binding
there we can choose all traffic , source IP (voice network 10.10.10.1 - 10.10.10.254) , destination 1.0.0.1 to 223.255.255.254, and select WAN 2
and another rule but the source will be the data network and select WAN 1
This is it just example and how the Voice vlan work and how to use Protocol binding if you have two WAN
Please if you have the switch on L3 by some reason and you have SVI configured in the switch , please call the Cisco Technical Support Center we will be happy to help you to accomplish your need with layer 3 switch is almost the same few change and we need more information's from your topology that's why by phone is better !! :)
Please rate the post or mark as answered to help other Cisco Customers
Have a nice day
Regards
Mehdi -
des que je connecte mon iphone4 a mon ordinateur et que je veux faire une connexion partager pour qu il face router il plante l ordinateur
et depuis l ordinateur au demarage me dis il manque un split 3!!!!! etc
???????? merciBonjour,
En fait mon soucis s'est reglé tout seul,mais pour ce qui est de ton probleme,çà m'est arrivé et j'ai retrouvé le partage de connexion en allant dans Reglage;reseaux cellulaire,partage de connexion,tu l'active là et tu le retrouve dans le menu principal ...normalement,voilà j'espere que çà t'aidera et desolé pour la reponse tardive... -
Vlans not working??
hi,
we have created 2 vlans on my core switch 4507 .this switch is connected to my other 5505 switch under vlan1 .both of mine switches are under same vtp domain with 4507 as server . the vlans are propogated to both switches.
i have connected nodes with vlan 1 and they are working fine.but if i try to connect under vlan 2 they donot connect .even though vlan 2 is up.
my question is why not any user for vlan2 is working ?
is it necessary to configure any port for the vlan2 to make it up??if yes then whats the use of vtp domains??Hi Gaurav,
I was not very clear with your question but just want to check do you have any trunk between your 4507 and cat5k swictes. You many a times have mentioned under vlan 1 what excatly you mean by that.
VTP is just to propogate the vlans between the servers and the clinet and it is not at all to make the vlans active.
You need to have trunk port on switches allowing the vlans to bring those vlans up or you need to connect some workstation to that vlan to bring it up or else it will not come up and will not work.
HTH
Ankur -
Hi guys,
I'm a bit new with this teck and I was wondering if it was possible to set a vlan for ILO port? I tried from F8 menu and also from ILO GUI but the only way I found to set vlan was using "Shared Network" but it deactivated the ILO port. Then I was able to reach ILO GUI from ethernet connexion with vlan.
Is it possible from the CLI ? I'm not rely familiar with this!
Many thanks
SébastienHi, Sébastien:
You may also want to post your question on the HP Business Support Forum -- DL Servers section.
http://h30499.www3.hp.com/t5/ProLiant-Servers-ML-DL-SL/bd-p/itrc-264#.UxdPZemPK9I -
Mrs,
1- Which switches (2950G,2960G,3560G,3570,4510 ou 6513) can have more than one
interface vlan active?
2- What is the last version of IOS for C2900XL (2924XL)?
thanks in advance,
RenatoRenato,
All the layer 3 switches (3560,3750,4510, 6513 etc) can have more than one active VLAN interfaces. The layer 2 switches (like 2950,2960 etc) will have only one VLAN, which can be used as a management VLAN. There will be no intervlan routing functionalities in such switches.
For the latest 2900XL image, you can download and use 12.0(5)-WC13 (early deployment IOS).
Hope this helps. rate replies if found useful.
Raj -
So I found this in a Cisco article:
Note: The 99xx and 8961 phones can be upgraded to support VPN capabilities for VXC traffic. With this capability enabled, VXC voice and video traffic on the phone VPN are prioritized to ensure high quality.
http://www.cisco.com/en/US/docs/solutions/Enterprise/Data_Center/VXI/AG/VXI_AG.html#wp1060858
I looked for a firmware release, but the newest for the phone firmware is from October. Does anyone have an idea when this feature will actually be available? I am working on a project for remote users and this is a perfect solution.mybranch#sh int fa01 switchport
Name: Fa1
Switchport: Enabled
Administrative Mode: dynamic access
Operational Mode: dynamic access
Administrative Trunking Encapsulation: dot1q
Operational Trunking Encapsulation: native
Negotiation of Trunking: Disabled
Access Mode VLAN: 10 (VLAN0010)
Trunking Native Mode VLAN: 1 (default)
Trunking VLANs Enabled: ALL
Trunking VLANs Active: 10,50
Protected: false
Priority for untagged frames: 0
Override vlan tag priority: FALSE
Voice VLAN: 50
Appliance trust: none
mybranch#
mybranch#sh run int vlan 50
^
% Invalid input detected at '^' marker.
mybranch#
mybranch#sh run int fa01
Building configuration...
Current configuration : 190 bytes
interface FastEthernet1
switchport access vlan 10
switchport voice vlan 50
no ip address
auto qos voip trust
spanning-tree portfast
service-policy output AutoQoS-Policy-Trust
end
mybranch#sh run int vlan 10
Building configuration...
Current configuration : 162 bytes
interface Vlan10
ip address 192.168.10.1 255.255.255.0
ip helper-address 192.168.200.200
ip nat inside
ip virtual-reassembly in
ip tcp adjust-mss 1452
end
Note: The ip address is 192.168.200.200 is the DHCP server at my main office. I posted some extras just in case.
Thanks.
Maybe you are looking for
-
And when i DO try and authorize it, it's fine but then the error message comes up again. It seems fine, i already synced it once and the music was still there, but i can't apply any new podcasts to it this way since it won't complete the synching pro
-
Hi, I've a join over two tables with about 150 columns. This was never a problem. Now I have two MAXDB databases from two customers (7.6.06.03). In one of them my statement says "output columns too long", running the same application on the second db
-
Still trying to install iTunes and QuickTime, but have an error, Could not open key: HKEY_LOCALMACHINE\Software\Classes\QuickTimePlayerApp\CLSID. Verify that you have suffcient access to that key, or contact your support personnel. Any help would be
-
Hello Experts, Whenever a list of Branches is presented in E-Recruiting, when defining a Requisition or searching job posting, the list that is presented is in the sequence of the Branch Id's assigned to the Branch at the time it was defined. We wou
-
I'm looking for a new scanner to replace my Canon ImageFormula DR-130. The paper feeder is is awful, horrible design. I am considering either a Fujitsu ScanSnap S1500 or an Epson WorkForce Pro GT-S50. 1) Are there any known issues with either of t