Start a Conversation

Unsolved

This post is more than 5 years old

18867

October 24th, 2012 09:00

VLAN Help

Looking for some help setting up a VLAN on one of my 3458P. I'm new to VLANs so bear with me.

 

I have an EnGenius EAP9550 Access point connected to port 12 of Netgear FS726P(unit12) switch.

FS726P(unit12) is connected via port 26 to another FS726P(main) on port 26.

FS726P(main) is connected via port 21 to Dell PC 3548P switch on port 46.

Dell 3548P is connected via port 31 to Netgear UTM10 router on port 1.

 

I'm trying to setup a guest network but clients connected to the EAP9550 can't get a IP address from UTM10.

 

Here is what I have done:

EAP9550 - SSID 2 VLAN Tag: 2

FS726P(unit12) - Added Port Based VLAN 2 and added port 12 and 26

FS726P(main) - Added Port Based VLAN 2 and added port 21, 26

PS 3548P - Added VLAN 2 and currently Port 31 and 46 show as untagged.

PS 3548P - changed Port 31 and 46 from Access to General and PVID is set to 1.

UTM10 - Added VLAN 2, enabled DHCP and set IP to 176.16.0.1 and DHCP range from 176.16.0.20 to  176.16.0.50

UTM10 - Port 1 is member of VLAN 2

 

Again, the clients can connect to the AP but fails to get an IP address from the UTM10.

 

Any help will be appriciated. I have a hunch that the 3548P is not configured properly.

 

PD

 

5 Practitioner

 • 

274.2K Posts

October 24th, 2012 09:00

I would start by checking connections from device to device. To do this you can connect your client to the AP and assign a static IP to your client. Then try pinging the closest device to the client, and work your way out. So ping the AP, then the first FS726P, then the second FS726P, then the 3548P, and then the UTM10. This will help us ensure that the actual connection and flow of data is present.

If communication is good, then we may want to look at Defining DHCP IPv4 Interface Parameters on the 3548. The manual introduces how this is done on page 134.

support.dell.com/.../en_ug.pdf

Keep us updated,

Thanks

8 Posts

October 24th, 2012 10:00

A bit more background info. Default vlan carries traffic for IP 192.168.70.x assigned by our Windows 2008 R2 DC.

The IP address of the EAP9550 AP is 192.168.70.119 and pings OK. I have assigned 172.16.0.1 to interface 1 on the UTM and pings fine from 192.168.70.86. Also, Interface 1 in the UTM is assinged 192.168.70.1 and is the default gateway for 192.168.70.x. I will try the static IP suggestion to see if I can a least ping 176.16.0.1. I'll be back,

Thanks

PD

5 Practitioner

 • 

274.2K Posts

October 24th, 2012 12:00

With a static IP and gateway set we should be able to get some connection on the network. Since we do not, we need to see where the connection is lost at. Once we know we have connection from the client to the UTM10, then we can set it back to DHCP and it should start receiving an address.

From the client you said you could ping the AP

What about pinging from the client to the first FS726P? Do we get any response there?

On the PowerConnect can you navigate to switch>ports>port configuration> then click show all and the port configuration table should show up. Take a screen shot of that so we can take a look at the port config and see if we notice anything.

I found this netgear KB article that goes step by step on setting up something very similar. It would be worth taking a look at to double check some of the netgear settings.

kb.netgear.com/.../1

Thanks

8 Posts

October 24th, 2012 12:00

No luck pinging any 172.16.0.x (corrected address, I typed 176 before, sorry). What I would like is for the UTM10 Router to hand off addresses from the 172 to any client connected that the EAP9550's SSID on VLAN 2. The problem is I have three switches in the middle.

8 Posts

October 25th, 2012 14:00

Ok, Disabling Inter-VLAN routing on the UTM10 isolates the T60 from my VLAN 1 (192.168.70.x) and still have access to the internet. This is exactly what I need. I just need to move to the next switch, configure the ports and test before adding the EAP9550 Access point. So far so go.  Thanks for you help. I will write back one I finish the config.

8 Posts

October 25th, 2012 14:00

Ok,
un-did everything and I'm starting from scratch so I don't get too confused.

Here
is what I have done so far:

Netgear
UTM10 : Added VLAN ID 2. Port 1 is member. Assigned 172.16.0.1/ 24 and enabled
DHCP giving out .20 to .30 for testing.

Cisco
WAP4410N: Access point. Added second SSID and assigned it VLAN 2.

Dell
PS3548P: Created VLAN 2, Changed Port e1 (where WAP4410N connects) to General.
On VLAN membership, I have e1 and e46 (connects to UTM10). Same settings as e1
and both at Tagged.

ThinkPad
T60: Assigned 172.76.0.100/24 to Wireless Adapter and joined new SSID. Can ping
successfully 172.16.0.1

Can successfully ping 172.16.0.1 and access internet with static IP, when I change T60 to DHCP, it does
not get address from UTM. Thought?

Thanks



PD

 

8 Posts

October 25th, 2012 14:00

Edit: should be PC3548P not PS3548P. Sorry

8 Posts

October 25th, 2012 14:00

Ok, something interesting. I followed your advise and looked at DHCP IPv4 Interface Parameters. I added a hostname like "GuestNet"  and assignd it to VLAN 2 and long and behold, the laptop got an address. What should I place in there?

5 Practitioner

 • 

274.2K Posts

October 26th, 2012 05:00

Great job! I am glad to hear this is piecing together and working.

5 Practitioner

 • 

274.2K Posts

October 26th, 2012 10:00

Great info to have, thank you for keeping us updated with the solution. I am sure others will find this very helpful.

Cheers!

8 Posts

October 26th, 2012 10:00

Ok, got everything work. For the visitors's benefit, here is what I did!

 

EAP9550 Access point: Added second SSID and assigned VLAN 2

1st FS726TP : Created VLAN 2 and and set ports connecting the AP and Uplink and TAGGED

2nd FS726TP: Created VLAN 2 and added Uplink port from 1st FS726TP and Uplink to PC3548P as TAGGED

BTW, both FS726TP are set as IEEE 802.1Q VLAN and not Port-Based VLAN.

PC2548P: Added VLAN ID 2 and set ports connecting 2nd FS726TP and UTM10 router to TAGGED.

Enabled DHCP Sooping and added ONLY VLAN 2. For some reason, if I add both VLAN 1 (default) and VLAN 2, computers on the default VLAN 1 could not get DCHP addresses.

Made ports connecting UTM10 and 2nd FS726TP as trusted.

.I think that's all I did and have it working.

Follwing the same steps, I added a second AP (WAP4410N), created a second SSID and assiged VLAN 2. Works great.

 

Thanks for your help.


PD

No Events found!

Top