Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

VLAN on Catalyst 4006, exit on the firewall.

Status
Not open for further replies.

godorecci

Technical User
Jan 16, 2003
3
IT
The describe her the structure of my net: centerstar catalyst 4006 Cisco and connected to the center it adorns with stars 8 Switch 2950 Cisco.

The initial addressing of the net is the following:
Net 10.5.66.0
Subnetmask 255.255.255.128
Gateway 10.5.66.122

The Gateway (10.5.66.122) it is to Firewall, to which to router is connected, for the access toward and from the outside.

The have created the following VLANs breaking the plan of addressing,:
VLAN 1 (default) 10.1.1.100 255.255.255.0
VLAN 2 10.5.66.1 255.255.255.192
VLAN 3 10.5.66.66 255.255.255.224
VLAN 4 10.5.66.97 255.255.255.240
VLAN 5 10.5.66.113 255.255.255.248
VLAN 6 10.5.66.121 255.255.255.248

The have setup the door of the Firewall (3/18) in the VLAN 6.
The have performed the commands:
ip route 10.5.66.0 255.255.255.0 10.5.66.120
ip routing

With such configuration, from any VLANs, succeed to pinging the address 10.5.66.122 but it don't allow me to go out.

The attach the configuration.

You could lend me to hand.
Thanks for the attention.

The my config is:
CoreSwitch#sh ru
Building configuration...

Current configuration : 5758 bytes
!
version 12.1
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
service compress-config
!
hostname CoreSwitch
!
boot system bootflash:cat4000-is-mz.121-8a.EW1.bin
enable secret 5 $1$PyNM$uSZd7E2lM48VJsHh/juxB0
!
ip subnet-zero
!
!
!
interface Port-channel1
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
description Collegamento dorsale RACK 1
no snmp trap link-status
!
interface Port-channel2
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
description Collegamento dorsale RACK 2
no snmp trap link-status
!
interface Port-channel3
switchport
description Collegamento dorsale RACK 4
no snmp trap link-status
!
interface Port-channel4
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
description Collegamento con Switch Armadio Ced
no snmp trap link-status
!
interface GigabitEthernet1/1
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
!
interface GigabitEthernet1/2
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
!
interface GigabitEthernet2/1
no snmp trap link-status
!
interface GigabitEthernet2/2
no snmp trap link-status
!
interface GigabitEthernet2/3
no snmp trap link-status
!
interface GigabitEthernet2/4
no snmp trap link-status
!
interface GigabitEthernet2/5
no snmp trap link-status
!
interface GigabitEthernet2/6
no snmp trap link-status
!
interface FastEthernet3/1
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/2
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/3
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/4
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/5
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/6
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/7
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/8
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/9
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/10
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/11
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/12
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/13
no snmp trap link-status
!
interface FastEthernet3/14
switchport access vlan 2
switchport mode access
no snmp trap link-status
!
interface FastEthernet3/15
no snmp trap link-status
!
interface FastEthernet3/16
no snmp trap link-status
!
interface FastEthernet3/17
no snmp trap link-status
!
interface FastEthernet3/18
switchport access vlan 6
switchport mode access
no snmp trap link-status
!
interface FastEthernet3/19
no snmp trap link-status
!
interface FastEthernet3/20
no snmp trap link-status
!
interface FastEthernet3/21
no snmp trap link-status
!
interface FastEthernet3/22
no snmp trap link-status
!
interface FastEthernet3/23
no snmp trap link-status
!
interface FastEthernet3/24
no snmp trap link-status
!
interface FastEthernet3/25
no snmp trap link-status
!
interface FastEthernet3/26
no snmp trap link-status
!
interface FastEthernet3/27
no snmp trap link-status
!
interface FastEthernet3/28
no snmp trap link-status
!
interface FastEthernet3/29
no snmp trap link-status
!
interface FastEthernet3/30
no snmp trap link-status
!
interface FastEthernet3/31
no snmp trap link-status
!
interface FastEthernet3/32
no snmp trap link-status
!
interface FastEthernet3/33
no snmp trap link-status
!
interface FastEthernet3/34
no snmp trap link-status
!
interface FastEthernet3/35
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 4 mode desirable
!
interface FastEthernet3/36
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 4 mode desirable
!
interface FastEthernet3/37
no snmp trap link-status
!
interface FastEthernet3/38
no snmp trap link-status
!
interface FastEthernet3/39
no snmp trap link-status
!
interface FastEthernet3/40
no snmp trap link-status
!
interface FastEthernet3/41
no snmp trap link-status
!
interface FastEthernet3/42
no snmp trap link-status
!
interface FastEthernet3/43
no snmp trap link-status
!
interface FastEthernet3/44
no snmp trap link-status
!
interface FastEthernet3/45
no snmp trap link-status
!
interface FastEthernet3/46
no snmp trap link-status
!
interface FastEthernet3/47
no snmp trap link-status
!
interface FastEthernet3/48
no snmp trap link-status
!
interface Vlan1
ip address 10.1.1.100 255.255.255.0
!
interface Vlan2
ip address 10.5.66.1 255.255.255.192
!
interface Vlan3
ip address 10.5.66.66 255.255.255.224
!
interface Vlan4
ip address 10.5.66.97 255.255.255.240
!
interface Vlan5
ip address 10.5.66.113 255.255.255.248
!
interface Vlan6
ip address 10.5.66.121 255.255.255.248
!
ip classless
ip route 10.5.66.0 255.255.255.128 10.5.66.120
no ip http server
!
!
line con 0
stopbits 1
line vty 0 4
password root
login
!
end
 
Why do you route everything to 10.5.66.120, shouldn't it be 10.5.6.122
 
I perform the routing to ward the subnet (or VLAN 6) you contain the address of the gateway toward the outside.
It is not correct?
Why I succed to ping the station gateway but not the outside?

You excuse for my english. I am Italian and I chew it little.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top