Start a Conversation

Unsolved

This post is more than 5 years old

2538

October 26th, 2010 11:00

PC 6248 config help needed

Current setup:
-one Power Connect 6248 with 3.2.0.7 firmware  (We just bought it.  So not used at the moment)
-one 3Com Core Switch.

All the PCs and servers in the LAN connect to 3Com's default VLAN 1.  There is no other VLANs.  A firewall connects to 3com for the internet access. 
192.168.1.0/24  -  Existing LAN. 
192.168.1.1/24  -  Firewall's LAN interface

Servers:
2 - Windows 2008 R2 domain controllers with DHCP, DNS and WINS services.  The LAN has other servers
100 Windows XP/vista/7 clients.

Future setup:
I like to seperate the servers from the workstations by using VLANs on 6248 because too many chattings in the existing LAN.   While I am seperating the servers, I like to keep the 3com as it is for the time being and eventually remove it after the move.  I want to keep the firewall's LAN interface as 192.168.1.1.

For the time bing:
(on the 6248)
VLAN 1  - 192.168.1.0/24  (6248's Existing VLAN1) [g1-g24]
VLAN 2  - 192.168.2.0/24  (New Server VLAN)  [g25-g48]

VLAN1 - 1/g1 connects to the 3COM switch. 
VLAN1 - 1/g2 connects to the firewall's 192.168.1.1 interface.

Later:
VLAN 1  - 192.168.1.0/24  (6248's Existing VLAN1)  - - Workstations and the firewall be on this VLAN1.
VLAN 2  - 192.168.2.0/24  (New Server VLAN) - -  Only servers will be in VLAN2

VLAN1 - 1/g1 connects to the firewall's 192.168.1.1 interface.

I want the VLAN 1 and VLAN 2 route each other for DHCP, DNS, WINS, file sharing, domain traffic, etc.  My main reason for the two VLAN is to limit the broadcast domain.  Both VLANs should have access to the internet via 192.168.1.1 firewall interface.

I need suggestions, help and links to docs as to how to configure this setup.  I am fairly new to PC6248.  From what I am reading,  the management vlan 1 can't route.  So I will need to move it out to another subnet in the switch (an example would be great). 

Vlan 4000 with 172.16.1.1/24 subnet for the default mgmt vlan.

Can I leave all the ports in ACCESS mode?    I thought about having all the uplinks in VLAN1.

Should I create VLAN 3 (port 1/g1),  trunk it by adding the port to vlan 1 and 2 and put the firewall's LAN interface in it.  In that case, i need to have the 1/g1 in GENERAL mode, am right?

An example config would be greatly appreciated. 

Thanks



No Responses!
No Events found!

Top