CAWJames
Members-
Posts
1,390 -
Joined
-
Last visited
Content Type
Forums
News
20th
EduGeek EDIT Conference
Blogs
Everything posted by CAWJames
-
Eureka! Looks like it is down to the global command "vlan dot1Q tag native" Which is obvious when you think about it, it is tagging ALL native VLANS. SP's began to provision when I did a "no vlan dot1Q tag native", but I lost VLAN1 acess to the switch! This is in use to connect the switch back up the line, so now got to work out how to do it without "vlan dot1Q tag native"! Thanks for all the help, hopefully on the final stretch now!
-
Ok done some testing, and it looks like the Procurve is off the hook, if I plug into one of its ports Untagged for VLAN47 and Tagged for VLAN8 and VLAN10, it provisions and works. If I then move it to the Cisco, I can get it to provision if I set Static-Access for a port to VLAN47, but being a Static-Access port, I cant then forward in tagged traffic. So it looks like it is a config on the Cisco ports then, as VLAN 47 is obviously forwarding over the switch connection port for the Static-Access to work. The ports are currently set as: interface FastEthernet1/0/x switchport trunk encapsulation dot1q switchport trunk native vlan 47 switchport trunk allowed vlan 8,10,47 switchport trunk pruning vlan none switchport mode trunk speed 100 duplex full spanning-tree portfast As far as I can work out from docs etc, this should be the working way, but must be missing something!
-
I wasn't sure on that either, if you had to explicitly add 47 to the allowed lans, if it is the native VLAN already. Docs clear as mud. I will try both once I have got past the ProCurve in my testing(if the PC turns out to be fine, and it is the programming on the 3750) thanks James
-
I believe the connection from SonicWall to switch and SonicPoint to Switch both have to be untagged. In the morning I will connect a SonicPoint to another port on the ProCurve, and see what I can get working without the second hop to the Cisco, that will tell me what isn't working in the line, and also if it really has to be untagged at both ends! Thankyou so much for your help DMcCoy, hopefully with enough troubleshooting knowledge for the morning, I will find out what tick box hasn't been ticked! James
-
Traffic is untagged on the main X9 interface to d23 for untagged traffic to be forwarded to VLAN47, and tagged for VLAN8 and VLAN10, which it is also tagged for on D23, so not that then
-
OR should I be tagging 47 on the SW X9 port? Should I be matching the Untag of 47 on D23 with a Tag of 47 on X9?
-
X9 doesn't have a VLAN47 associated with it, it is just the native port, you can't untag on a SW device, just set VLAN subinterfaces on main interfaces. If I send it out tagged as 47, then D23 will strip the tag anyway and apply the tag of the vlan that is untagged on the port(Which is 47 anyway!), and the SW needs untagged on the port for provisioning. Trying to keep the SP's away from VLAN 1, as it is our normal LAN and already has DHCP on it, hence the VLAN47 provisioning VLAN. X9 is set as below: X9 WLAN X9:V8 StudentWireless X9:V10 Staff Wireless Apart from that and the SP ports on the Cisco being Native VLAN of 47 and Tagged for 8,10 Thanks for the input, always good for someone to sanity check!
-
Routing is being done on the SW. I haven't had to add any routes for the current VLAN8 and 10 traffic (which is flowing, as we use it for our current wifi solution) All our switches are in L2 mode. I am off site at the moment, but hardware testing will start in the morning, using my laptop in various ports to check connectivity on VLAN 47. Hopefully I will work away from the SW and find the device causing the blockage, but the above solution may sort it using a switch with the abilities I need. I will also check the routing on the SW, just in case a route is missing for whatever reason, but as the current 8 and 10 are working, i think its ok. James
-
I suppose I could create an untagged connection between the switches, as they are only a couple of metres away from each other. Untag another port for 47 on the ProCurve and then native vlan for 47 a port on the Cisco. Although that won't help when I need to add some more Sonicpoints to another 3750, connected by a Gbic fibre, downstairs! Although, saying that, I have a Small Business 300 in the same rack as the ProCurve, with the same PVID function as the 200 at the other site, so I could connect the SW to that and see if I can get the 47 flowing from untagged to tagged into that switch and then back to the ProCurve, and then on to the 3750's, as the packets will be tagged by that point entering the Cisco 3750 switches and then the native VLAN 47 will untag them into the SonicPoints. Gotta love brainstorming on a sunday night, so much to try in the morning! I hope everyone understands what I am trying to do by tagging packets leaving an untagged port, so they can traverse switches. SonicPoints needing an untagged connection to provision and all. as X9 has the untagged WLAN for provisioning and then 2 VLAN sub interfaces for extra SSIDS, everything needs to be done on the same port. Secure but an absolute ars* to setup! Thanks James
-
D23 is the port that the SW connects to the Procurve and B24 is the way out to the Cisco. D23 is indeed untagged and B24 is tagged, I want all untagged packets coming from the SW to be tagged out to the other VLAN47 ports, in the same way a PVID works on other switches, or at least does on our Small Business 200 at out other site! I am sure I read in the admin manual for Procurve, that is does perform this function. Thanks James
-
Hmm, that is exactly how I have it setup, X9 with the main interface plus 2 vlans into Port D23, 47U, 8T, 5T. Then port B24 to the Cisco 3750, 47T, 8T, 5T. Ge1/0/1 is set as: interface GigabitEthernet1/0/1 switchport trunk encapsulation dot1q switchport mode trunk The sonic points are connected to various ports set as: switchport trunk encapsulation dot1q switchport trunk native vlan 47 switchport trunk allowed vlan 8,10 switchport mode trunk spanning-tree portfast As far as I can work out, it should work!! Oh well, I will plug a laptop into the sonic point ports on the Cisco in the morning and see if I get an IP, try and rule out what does work and what doesn't. Thanks for the replies so far. James
-
Ok here are some details, if someone could sanity check, it would be appreciated. Sonicwall NSA3600, X9 - WLAN for provisioning, X9:V8 - StudentWLAN(custom WLAN zone), X9:V10 - StaffWLAN(custom WLAN zone) Wire goes from X9 port to a 4204vl Procurve: VLANS sets as 1 - Default, 8 - StudentWLAN, 10 - StaffWLAN, 47 - SONICPOINT X9 connected to D23, D23 set as 47 Untagged, 10 Tagged, 8 Tagged, 1 No The data then leaves the switch via a GBIC port, B24 to the next switch, which is a Catalyst 3750-48PS, set as 47 Tagged, 10 Tagged, 8 Tagged and 1 Tagged. The data arrives at the 3750-48PS on Gi1/0/1: interface GigabitEthernet1/0/1 switchport trunk encapsulation dot1q switchport mode trunk The 2 test SonicPoints are then connected to FastEthernet1/0/6 and FastEthernet1/0/7, both with: switchport trunk encapsulation dot1q switchport trunk native vlan 47 switchport trunk allowed vlan 8,10 switchport mode trunk spanning-tree portfast trunk As far as I can work out, this should work, but it doesnt! Untagged on the procurve should forward untagged traffic tagged and native vlan on the cisco should forward tagged to untagged, therefore satisfying the SDP gods. Anyone see any glaring errors? Thanks James
-
Hi all, Starting to pull my hair out here! We have a 4204vl switch, and I cannot for the life of me work out how to set PVID on a port. We have a Sonicwall NSA3600 and 1 port with a normal and a vlan 8 assignment. This will provide staff wireless on the non-vlan side and student on the vlan side. This works at our other site on an NSA2400 and Cisco switch with PVID set to 47 and VLAN access to 8, so it tags the normal traffic on the port with 47, so it can traverse the switches to its final destination. The procurve only lets me tag, untag, forbid or auto. No PVID option!! I was under the impression that 'normally' if a port is untagged it cant be tagged, so how does PVID work on these things? I tried just untagging the port, but nothing passed Any help would be appreciated, Thanks James
-
Hi all, I have just taken delivery of some shiny new Sonicwalls, but I can't for the life of me work out how I can bridge more than 2 interfaces on the 3600 NSA. I want to group 3 sets of 4 ports for 3 different DMZ's, so I can get rid of some 8 port dumb switches and plug servers straight into the NSA. Is this possible as there is no portshield option evident in the config. any help, as always, appreciated. Thanks James
-
That may be the next plan, but I can neither confirm or deny that's what I will do.... (backside covered..ish )
-
I have gotten another 790 out of its box and that one works fine, 10GB RAM, and dual 5000 series Radeons with triple screens later and still no crashy crashy! So looks like it is a faulty 790, which Dell still will not support unless it is running the shipped OS!! So now I have to install 7 Pro 32 and hope it crashes so I can get the computer fixed. And they wonder why we now go to VeryPC!! Thanks for the replies, the saga continues...
-
First thing I did, up to 18, newest on support for this model. Thanks James
-
Good morning all, I am test running Windows 8 on our Optiplex 790's. On installing Windows 8 or 8.1 64 bit, it crashes to the point of static screen, not even getting to the smiley screen of death. We have ProSupport on all these, so I thought I would ring them and see if there was a solution..... The man from Dell basically said as the system shipped with 7 32-bit, the computer itself and its drivers were only for 32-bit and they couldn't support my configuration, even after I pointed out that the 790 is Windows 8 Certified and they offer 64-bit drivers in the support section!! That sounds like cobblers to me, but what do I know, I built my first PC in the early 90's and am quite adept 20 odd years later, and have never heard of a modern PC being shipped/locked to 32-bit! Anyone had any problems with these Dell models and 8/8.1? I am now grabbing 8.1 32-bit to install, so hopefully it will crash again and I can then get support!!! Thanks James
-
Afternoon all, I am preparing our Hyper-V environment for clustering and am trying to get head around the networking. I have my VM NIC's all nicely teamed with broadcom BACS, but I cant work out if I should break the team and then create a logical switch that teams the 4 NIC's or attach a logical switch to the teamed adapter? Then I assume I would power down the VM's, and then apply the new VMM logical switch instead of the old Hyper-V virtual switch? Any help appreciated, googling produces much mud and usually from a start from scratch rather than updating a standalone system. Thanks James
-
Ah ha, thanks for that, makes sense. So we would need 1 standard for one for the DPM servers, and then 3 DC for the 3 virtual hosts(the other 2 management servers are VM's) then a standard for each other standalone windows server? Thanks again James
-
Good morning all, Its that time of year again, EES renewal!! We license System Center, and I am really not sure what we need since the model changed to server/datacenter. We currently have 1 management server running SCVMM and SCCM, and 2 DPM servers. We also have the enterprise CAL pack. Our server environment is mostly VM based 2008R2/2012 servers on 3 virtual hosts running 2008R2 Datacenter. Do we just need 4 licenses to cover the management servers, or do we need to separately license all our servers, as the new blurb mentions choosing edition by amount of VMs, and it is not clear if that means the management servers covering virtual hosts or the servers themselves! As why would you have VM's on a management server! Any shedding of light would be appreciated! Thanks James
-
Just to clarify. You will need A2 for faculty licences, the pay for ones are A3. So the trial will be A3, but once you are deemed worthy by MS, you can then buy the free A2 ones. Hope that makes sense. You can then assign A2 licences to anyone you initially put on the A3 trial.
-
I just went to the link you have up in the first post for Office 365 education, then followed the instructions. It starts as a trial, then once MS have confirmed you are eligible(you add a DNS entry that MS read to ensure you own the domain) you can 'buy' the number of licences you need(i.e. £0.00 for each licence ) You will have 3 options IIRL, use a something.onmicrosoft.com, buy a domain or use your current domain. The first 2 can all b controlled from O365, whereas using an existing will require adding DNS entries. They list all you need to add for whatever scenario. We only wanted Lync, so only added those related to Lync, as we have our own in house Exchange server. Hope that helps
-
Morning all, As the title suggests, does anyone have any idea if it is possible to tag VLAN 1, i.e. the native VLAN in Powerconnect switches, across all ports, much like the vlan dot1q tag native command on cisco switches? We have a 2848. I know they don't allow it for best practice and security reasons, but like a lot of systems that start on the native vlan, it isn't easy to go round and reprogram each and every switch, just because Dell made a decision! I know the answer will be a systematic reprogram of all switches but thought I'd ask after googling failed! Thanks James
-
Hi all, We are upgrading all 4 of our sites this year with a single vendor solution. We are scrutinising technical specs/POC and quotes at the moment and trying to pick our preferred hardware platform. SW, Watchguard and Palo Alto being the current whittle down. We have been offered GMS as part of a quote for SW, so we can have a one ring management solution. Is GMS worth it for 4 sites, so 2 NSA, 2 TZ and a small boatload of sonic points(8 at each site)? It looks good, but even though I have used SW's for donkeys, I've never really bothered with their software/management solutions, and I'm worried it is too powerful, if that makes sense, as they mention hundreds and thousands of managed devices in their blurb! Any help of experience would be helpful! I am really just fed up of doing everything 4 times! thanks James
