The describe her the structure of my net: centerstar catalyst 4006 Cisco and connected to the center it adorns with stars 8 Switch 2950 Cisco.
The initial addressing of the net is the following:
Net 10.5.66.0
Subnetmask 255.255.255.128
Gateway 10.5.66.122
The Gateway (10.5.66.122) it is to Firewall, to which to router is connected, for the access toward and from the outside.
The have created the following VLANs breaking the plan of addressing,:
VLAN 1 (default) 10.1.1.100 255.255.255.0
VLAN 2 10.5.66.1 255.255.255.192
VLAN 3 10.5.66.66 255.255.255.224
VLAN 4 10.5.66.97 255.255.255.240
VLAN 5 10.5.66.113 255.255.255.248
VLAN 6 10.5.66.121 255.255.255.248
The have setup the door of the Firewall (3/18) in the VLAN 6.
The have performed the commands:
ip route 10.5.66.0 255.255.255.0 10.5.66.120
ip routing
With such configuration, from any VLANs, succeed to pinging the address 10.5.66.122 but it don't allow me to go out.
The attach the configuration.
You could lend me to hand.
Thanks for the attention.
The my config is:
CoreSwitch#sh ru
Building configuration...
Current configuration : 5758 bytes
!
version 12.1
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
service compress-config
!
hostname CoreSwitch
!
boot system bootflash:cat4000-is-mz.121-8a.EW1.bin
enable secret 5 $1$PyNM$uSZd7E2lM48VJsHh/juxB0
!
ip subnet-zero
!
!
!
interface Port-channel1
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
description Collegamento dorsale RACK 1
no snmp trap link-status
!
interface Port-channel2
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
description Collegamento dorsale RACK 2
no snmp trap link-status
!
interface Port-channel3
switchport
description Collegamento dorsale RACK 4
no snmp trap link-status
!
interface Port-channel4
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
description Collegamento con Switch Armadio Ced
no snmp trap link-status
!
interface GigabitEthernet1/1
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
!
interface GigabitEthernet1/2
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
!
interface GigabitEthernet2/1
no snmp trap link-status
!
interface GigabitEthernet2/2
no snmp trap link-status
!
interface GigabitEthernet2/3
no snmp trap link-status
!
interface GigabitEthernet2/4
no snmp trap link-status
!
interface GigabitEthernet2/5
no snmp trap link-status
!
interface GigabitEthernet2/6
no snmp trap link-status
!
interface FastEthernet3/1
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/2
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/3
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/4
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/5
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/6
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/7
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/8
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/9
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/10
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/11
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/12
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/13
no snmp trap link-status
!
interface FastEthernet3/14
switchport access vlan 2
switchport mode access
no snmp trap link-status
!
interface FastEthernet3/15
no snmp trap link-status
!
interface FastEthernet3/16
no snmp trap link-status
!
interface FastEthernet3/17
no snmp trap link-status
!
interface FastEthernet3/18
switchport access vlan 6
switchport mode access
no snmp trap link-status
!
interface FastEthernet3/19
no snmp trap link-status
!
interface FastEthernet3/20
no snmp trap link-status
!
interface FastEthernet3/21
no snmp trap link-status
!
interface FastEthernet3/22
no snmp trap link-status
!
interface FastEthernet3/23
no snmp trap link-status
!
interface FastEthernet3/24
no snmp trap link-status
!
interface FastEthernet3/25
no snmp trap link-status
!
interface FastEthernet3/26
no snmp trap link-status
!
interface FastEthernet3/27
no snmp trap link-status
!
interface FastEthernet3/28
no snmp trap link-status
!
interface FastEthernet3/29
no snmp trap link-status
!
interface FastEthernet3/30
no snmp trap link-status
!
interface FastEthernet3/31
no snmp trap link-status
!
interface FastEthernet3/32
no snmp trap link-status
!
interface FastEthernet3/33
no snmp trap link-status
!
interface FastEthernet3/34
no snmp trap link-status
!
interface FastEthernet3/35
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 4 mode desirable
!
interface FastEthernet3/36
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 4 mode desirable
!
interface FastEthernet3/37
no snmp trap link-status
!
interface FastEthernet3/38
no snmp trap link-status
!
interface FastEthernet3/39
no snmp trap link-status
!
interface FastEthernet3/40
no snmp trap link-status
!
interface FastEthernet3/41
no snmp trap link-status
!
interface FastEthernet3/42
no snmp trap link-status
!
interface FastEthernet3/43
no snmp trap link-status
!
interface FastEthernet3/44
no snmp trap link-status
!
interface FastEthernet3/45
no snmp trap link-status
!
interface FastEthernet3/46
no snmp trap link-status
!
interface FastEthernet3/47
no snmp trap link-status
!
interface FastEthernet3/48
no snmp trap link-status
!
interface Vlan1
ip address 10.1.1.100 255.255.255.0
!
interface Vlan2
ip address 10.5.66.1 255.255.255.192
!
interface Vlan3
ip address 10.5.66.66 255.255.255.224
!
interface Vlan4
ip address 10.5.66.97 255.255.255.240
!
interface Vlan5
ip address 10.5.66.113 255.255.255.248
!
interface Vlan6
ip address 10.5.66.121 255.255.255.248
!
ip classless
ip route 10.5.66.0 255.255.255.128 10.5.66.120
no ip http server
!
!
line con 0
stopbits 1
line vty 0 4
password root
login
!
end
The initial addressing of the net is the following:
Net 10.5.66.0
Subnetmask 255.255.255.128
Gateway 10.5.66.122
The Gateway (10.5.66.122) it is to Firewall, to which to router is connected, for the access toward and from the outside.
The have created the following VLANs breaking the plan of addressing,:
VLAN 1 (default) 10.1.1.100 255.255.255.0
VLAN 2 10.5.66.1 255.255.255.192
VLAN 3 10.5.66.66 255.255.255.224
VLAN 4 10.5.66.97 255.255.255.240
VLAN 5 10.5.66.113 255.255.255.248
VLAN 6 10.5.66.121 255.255.255.248
The have setup the door of the Firewall (3/18) in the VLAN 6.
The have performed the commands:
ip route 10.5.66.0 255.255.255.0 10.5.66.120
ip routing
With such configuration, from any VLANs, succeed to pinging the address 10.5.66.122 but it don't allow me to go out.
The attach the configuration.
You could lend me to hand.
Thanks for the attention.
The my config is:
CoreSwitch#sh ru
Building configuration...
Current configuration : 5758 bytes
!
version 12.1
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
service compress-config
!
hostname CoreSwitch
!
boot system bootflash:cat4000-is-mz.121-8a.EW1.bin
enable secret 5 $1$PyNM$uSZd7E2lM48VJsHh/juxB0
!
ip subnet-zero
!
!
!
interface Port-channel1
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
description Collegamento dorsale RACK 1
no snmp trap link-status
!
interface Port-channel2
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
description Collegamento dorsale RACK 2
no snmp trap link-status
!
interface Port-channel3
switchport
description Collegamento dorsale RACK 4
no snmp trap link-status
!
interface Port-channel4
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
description Collegamento con Switch Armadio Ced
no snmp trap link-status
!
interface GigabitEthernet1/1
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
!
interface GigabitEthernet1/2
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
!
interface GigabitEthernet2/1
no snmp trap link-status
!
interface GigabitEthernet2/2
no snmp trap link-status
!
interface GigabitEthernet2/3
no snmp trap link-status
!
interface GigabitEthernet2/4
no snmp trap link-status
!
interface GigabitEthernet2/5
no snmp trap link-status
!
interface GigabitEthernet2/6
no snmp trap link-status
!
interface FastEthernet3/1
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/2
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/3
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/4
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 1 mode desirable
!
interface FastEthernet3/5
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/6
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/7
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/8
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 2 mode desirable
!
interface FastEthernet3/9
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/10
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/11
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/12
no snmp trap link-status
channel-group 3 mode desirable
!
interface FastEthernet3/13
no snmp trap link-status
!
interface FastEthernet3/14
switchport access vlan 2
switchport mode access
no snmp trap link-status
!
interface FastEthernet3/15
no snmp trap link-status
!
interface FastEthernet3/16
no snmp trap link-status
!
interface FastEthernet3/17
no snmp trap link-status
!
interface FastEthernet3/18
switchport access vlan 6
switchport mode access
no snmp trap link-status
!
interface FastEthernet3/19
no snmp trap link-status
!
interface FastEthernet3/20
no snmp trap link-status
!
interface FastEthernet3/21
no snmp trap link-status
!
interface FastEthernet3/22
no snmp trap link-status
!
interface FastEthernet3/23
no snmp trap link-status
!
interface FastEthernet3/24
no snmp trap link-status
!
interface FastEthernet3/25
no snmp trap link-status
!
interface FastEthernet3/26
no snmp trap link-status
!
interface FastEthernet3/27
no snmp trap link-status
!
interface FastEthernet3/28
no snmp trap link-status
!
interface FastEthernet3/29
no snmp trap link-status
!
interface FastEthernet3/30
no snmp trap link-status
!
interface FastEthernet3/31
no snmp trap link-status
!
interface FastEthernet3/32
no snmp trap link-status
!
interface FastEthernet3/33
no snmp trap link-status
!
interface FastEthernet3/34
no snmp trap link-status
!
interface FastEthernet3/35
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 4 mode desirable
!
interface FastEthernet3/36
switchport trunk encapsulation dot1q
switchport mode trunk
no snmp trap link-status
channel-group 4 mode desirable
!
interface FastEthernet3/37
no snmp trap link-status
!
interface FastEthernet3/38
no snmp trap link-status
!
interface FastEthernet3/39
no snmp trap link-status
!
interface FastEthernet3/40
no snmp trap link-status
!
interface FastEthernet3/41
no snmp trap link-status
!
interface FastEthernet3/42
no snmp trap link-status
!
interface FastEthernet3/43
no snmp trap link-status
!
interface FastEthernet3/44
no snmp trap link-status
!
interface FastEthernet3/45
no snmp trap link-status
!
interface FastEthernet3/46
no snmp trap link-status
!
interface FastEthernet3/47
no snmp trap link-status
!
interface FastEthernet3/48
no snmp trap link-status
!
interface Vlan1
ip address 10.1.1.100 255.255.255.0
!
interface Vlan2
ip address 10.5.66.1 255.255.255.192
!
interface Vlan3
ip address 10.5.66.66 255.255.255.224
!
interface Vlan4
ip address 10.5.66.97 255.255.255.240
!
interface Vlan5
ip address 10.5.66.113 255.255.255.248
!
interface Vlan6
ip address 10.5.66.121 255.255.255.248
!
ip classless
ip route 10.5.66.0 255.255.255.128 10.5.66.120
no ip http server
!
!
line con 0
stopbits 1
line vty 0 4
password root
login
!
end