<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Inter vlan routing issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223670#M1064807</link>
    <description>&lt;P&gt;So the static route is installed on a second switch connected via MPLS. For both switches is the MPLS the default route?&lt;/P&gt;
&lt;P&gt;Can you share the routing table for both switches?&lt;/P&gt;
&lt;P&gt;What is the source IP you are using when pinging from the other switch?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;cheers,&lt;/P&gt;
&lt;P&gt;Seb.&lt;/P&gt;</description>
    <pubDate>Tue, 28 Nov 2017 10:23:32 GMT</pubDate>
    <dc:creator>Seb Rupik</dc:creator>
    <dc:date>2017-11-28T10:23:32Z</dc:date>
    <item>
      <title>Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223648#M1064804</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have created new VLAN for DVR's and it is connected with my core switch 3750G. I am able to ping DVR IP's from my core switch but the same was not able from my access switch from another vlan.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;interface Vlan250&lt;BR /&gt; description """DVR"""&lt;BR /&gt; ip address 10.110.110.1 255.255.255.0&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ip route 10.110.110.0 255.255.255.0 10.24.1.1(Vlan segment pointing to router).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please confirm the cause for the inter valn routing issue.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 14:50:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223648#M1064804</guid>
      <dc:creator>vijayarampm</dc:creator>
      <dc:date>2020-02-21T14:50:35Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223653#M1064805</link>
      <description>&lt;P&gt;Hi there,&lt;/P&gt;
&lt;P&gt;Is the 3750G routing VLAN250? Is that where you have configured the static route? If so, the 3750G will already have a connected route for that subnet, you do not want to be routing traffic destined to that subnet to the router.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I suggest you remove that static route.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;cheers,&lt;/P&gt;
&lt;P&gt;Seb.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2017 09:33:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223653#M1064805</guid>
      <dc:creator>Seb Rupik</dc:creator>
      <dc:date>2017-11-28T09:33:25Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223664#M1064806</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;3750G is a core switch and DVR are connected in that switch. Created VLAN in core switch and static route configured pointing to router in core switch for accessing the DVR via MPLS cloud from other location.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2017 10:09:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223664#M1064806</guid>
      <dc:creator>vijayarampm</dc:creator>
      <dc:date>2017-11-28T10:09:48Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223670#M1064807</link>
      <description>&lt;P&gt;So the static route is installed on a second switch connected via MPLS. For both switches is the MPLS the default route?&lt;/P&gt;
&lt;P&gt;Can you share the routing table for both switches?&lt;/P&gt;
&lt;P&gt;What is the source IP you are using when pinging from the other switch?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;cheers,&lt;/P&gt;
&lt;P&gt;Seb.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2017 10:23:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223670#M1064807</guid>
      <dc:creator>Seb Rupik</dc:creator>
      <dc:date>2017-11-28T10:23:32Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223672#M1064808</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;three switches are connected with stack in core switch. Static route configured in global mode. Switches default gateway is router. Before we need to test the DVR access via mpls cloud we need to check from another vlan. for example from default vlan it should ping the device IP from any other access switches.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2017 10:29:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223672#M1064808</guid>
      <dc:creator>vijayarampm</dc:creator>
      <dc:date>2017-11-28T10:29:58Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223678#M1064809</link>
      <description>&lt;P&gt;So, you are trying to ping a device on VLAN 250 form another device which is routed on the same 3750G? What is the VLAN ID?&lt;/P&gt;
&lt;P&gt;Can you share the config of the 3750G?&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2017 10:37:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223678#M1064809</guid>
      <dc:creator>Seb Rupik</dc:creator>
      <dc:date>2017-11-28T10:37:36Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223688#M1064810</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;VLAN configured in core switch 3750G and now DVR connected in another switch. In core switch gi1/0/13 is the uplink for DVR connected switch.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am unable to ping DVR IP's from connected switch itself, but able to ping VLAN gateway.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Core Switch config:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;aaa new-model&lt;BR /&gt;aaa authentication login default group radius local&lt;BR /&gt;aaa authentication enable default group radius enable&lt;BR /&gt;aaa authorization exec default group radius if-authenticated&lt;BR /&gt;aaa accounting exec default start-stop group radius&lt;BR /&gt;!&lt;BR /&gt;aaa session-id common&lt;BR /&gt;clock timezone UTC 2&lt;BR /&gt;clock summer-time UTC recurring last Sun Mar 3:00 last Sun Oct 4:00&lt;BR /&gt;switch 1 provision ws-c3750g-24ts&lt;BR /&gt;switch 2 provision ws-c3750g-24ts&lt;BR /&gt;switch 3 provision ws-c3750g-12s&lt;BR /&gt;switch 4 provision ws-c3750g-12s&lt;BR /&gt;system mtu routing 1500&lt;BR /&gt;ip subnet-zero&lt;BR /&gt;no ip source-route&lt;BR /&gt;ip routing&lt;BR /&gt;ip tcp synwait-time 10&lt;BR /&gt;ip domain-name Sanmar.com&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint TP-self-signed-2638608256&lt;BR /&gt; enrollment selfsigned&lt;BR /&gt; subject-name cn=IOS-Self-Signed-Certificate-2638608256&lt;BR /&gt; revocation-check none&lt;BR /&gt; rsakeypair TP-self-signed-2638608256&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki certificate chain TP-self-signed-2638608256&lt;BR /&gt; certificate self-signed 01&lt;BR /&gt; 308202AE 30820217 A0030201 02020101 300D0609 2A864886 F70D0101 04050030&lt;BR /&gt; 5E312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274&lt;BR /&gt; 69666963 6174652D 32363338 36303832 3536312B 30290609 2A864886 F70D0109&lt;BR /&gt; 02161C43 6F726531 2D333735 302D3234 2D506F45 2E53616E 6D61722E 636F6D30&lt;BR /&gt; 1E170D39 33303330 31303030 3135355A 170D3230 30313031 30303030 30305A30&lt;BR /&gt; 5E312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274&lt;BR /&gt; 69666963 6174652D 32363338 36303832 3536312B 30290609 2A864886 F70D0109&lt;BR /&gt; 02161C43 6F726531 2D333735 302D3234 2D506F45 2E53616E 6D61722E 636F6D30&lt;BR /&gt; 819F300D 06092A86 4886F70D 01010105 0003818D 00308189 02818100 92B8819B&lt;BR /&gt; 6084B1E8 A2FA64DD 76BB0647 551F9357 C4C6FAED B0A1875E A9A96421 8DDB3399&lt;BR /&gt; F16418F5 CC2E4310 35836211 32314E6D 7AD6CA52 A64F342E 936C6F5F A4AC9CD1&lt;BR /&gt; 05E87A1F ABE809FA 0AF72F8F AE8EBB55 B94A8655 1C76EF60 3C1F9401 D41A8933&lt;BR /&gt; 1C88ACF1 732C6732 315B25EE 3D664E12 A4A0D91A 34F4278A 340F1E9F 02030100&lt;BR /&gt; 01A37C30 7A300F06 03551D13 0101FF04 05300301 01FF3027 0603551D 11042030&lt;BR /&gt; 1E821C43 6F726531 2D333735 302D3234 2D506F45 2E53616E 6D61722E 636F6D30&lt;BR /&gt; 1F060355 1D230418 30168014 5946B6EA 8AD8D027 46E550BD EF80C111 C3FD2509&lt;BR /&gt; 301D0603 551D0E04 16041459 46B6EA8A D8D02746 E550BDEF 80C111C3 FD250930&lt;BR /&gt; 0D06092A 864886F7 0D010104 05000381 81004A14 DF8D8515 CEABBF80 FCE3766E&lt;BR /&gt; 28B88940 CCF49AD3 3932B9DC 61B80142 5FF3798D 0741731F 8B88B54E 5748C00A&lt;BR /&gt; 53002933 1379B44C C29A3FA5 9D4124DA 593E7DBB D1456934 D9E57864 8ABA06A2&lt;BR /&gt; 2B56F4FA 99A9DB76 79723581 8324EEF6 81DFDB77 97398453 D24F0109 4B6A33C3&lt;BR /&gt; 48DB0573 20F9708E 9C7A0080 2D75CFC7 1CCE&lt;BR /&gt; quit&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;no file verify auto&lt;BR /&gt;spanning-tree mode pvst&lt;BR /&gt;spanning-tree extend system-id&lt;BR /&gt;!&lt;BR /&gt;vlan internal allocation policy ascending&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/1&lt;BR /&gt; switchport access vlan 250&lt;BR /&gt; switchport mode access&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/2&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/3&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/4&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/5&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/6&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/7&lt;BR /&gt; switchport access vlan 250&lt;BR /&gt; switchport mode access&lt;BR /&gt; spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/8&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/9&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/10&lt;BR /&gt; switchport access vlan 250&lt;BR /&gt; switchport mode access&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/11&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/12&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/13&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/14&lt;BR /&gt; switchport access vlan 250&lt;BR /&gt; switchport mode access&lt;/P&gt;
&lt;P&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/15&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/16&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/17&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/18&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/19&lt;BR /&gt; switchport access vlan 200&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/20&lt;BR /&gt; switchport voice vlan 200&lt;BR /&gt; spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/21&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/22&lt;BR /&gt; speed 100&lt;BR /&gt; duplex full&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/23&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/24&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/25&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/26&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/27&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet1/0/28&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt; load-interval 30&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/1&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/2&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/3&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/4&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/5&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/6&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/7&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/8&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/9&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/10&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/11&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/12&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/13&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/14&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/15&lt;BR /&gt; switchport voice vlan 200&lt;BR /&gt; spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/16&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/17&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/18&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/19&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/20&lt;/P&gt;
&lt;P&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/21&lt;BR /&gt; switchport voice vlan 200&lt;BR /&gt; spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/22&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/23&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/24&lt;BR /&gt; switchport voice vlan 200&lt;BR /&gt; spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/25&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/26&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/27&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet2/0/28&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/1&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/2&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/3&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/4&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/5&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/6&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/7&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/8&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/9&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/10&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/11&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet3/0/12&lt;BR /&gt; switchport trunk encapsulation dot1q&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/1&lt;BR /&gt; switchport autostate exclude&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/2&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/3&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/4&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/5&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/6&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/7&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/8&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/9&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/10&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/11&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet4/0/12&lt;BR /&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt; description User &amp;amp; Server VLAN&lt;BR /&gt; ip address 10.24.5.100 255.255.0.0&lt;BR /&gt;!&lt;/P&gt;
&lt;P&gt;!&lt;BR /&gt;interface Vlan200&lt;BR /&gt; description VOICE _VLAN&lt;BR /&gt; ip address 10.11.0.1 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Vlan250&lt;BR /&gt; description """DVR"""&lt;BR /&gt; ip address 10.110.110.1 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;ip default-gateway 10.24.1.1&lt;BR /&gt;ip classless&lt;BR /&gt;ip route 0.0.0.0 0.0.0.0 10.24.1.1&lt;BR /&gt;ip route 10.110.110.0 255.255.255.0 10.24.1.1&lt;BR /&gt;no ip http server&lt;BR /&gt;ip http secure-server&lt;BR /&gt;!&lt;BR /&gt;ip tacacs source-interface Vlan1&lt;BR /&gt;ip radius source-interface Vlan1&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;DVR connected switch:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;aaa new-model&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa authentication login default group tacacs+ local&lt;BR /&gt;aaa authorization exec default group tacacs+ local&lt;BR /&gt;aaa authorization commands 1 default group tacacs+ none&lt;BR /&gt;aaa authorization commands 15 default group tacacs+ none&lt;BR /&gt;aaa accounting exec default start-stop group tacacs+&lt;BR /&gt;aaa accounting commands 7 default start-stop group tacacs+&lt;BR /&gt;aaa accounting commands 15 default start-stop group tacacs+&lt;BR /&gt;aaa accounting network default start-stop group tacacs+&lt;BR /&gt;aaa accounting connection default start-stop group tacacs+&lt;BR /&gt;aaa accounting system default start-stop group tacacs+&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa session-id common&lt;BR /&gt;system mtu routing 1500&lt;BR /&gt;vtp mode transparent&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint TP-self-signed-2558465920&lt;BR /&gt; enrollment selfsigned&lt;BR /&gt; subject-name cn=IOS-Self-Signed-Certificate-2558465920&lt;BR /&gt; revocation-check none&lt;BR /&gt; rsakeypair TP-self-signed-2558465920&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki certificate chain TP-self-signed-2558465920&lt;BR /&gt; certificate self-signed 01&lt;BR /&gt; 30820241 308201AA A0030201 02020101 300D0609 2A864886 F70D0101 04050030&lt;BR /&gt; 31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274&lt;BR /&gt; 69666963 6174652D 32353538 34363539 3230301E 170D3933 30333031 30303031&lt;BR /&gt; 35355A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649&lt;BR /&gt; 4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D32 35353834&lt;BR /&gt; 36353932 3030819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281&lt;BR /&gt; 8100E016 5FD299EB AD3D9238 6C9BD18F 85CB8223 596840F9 A9C9FADF C380E9BE&lt;BR /&gt; 09330B26 4512E592 1ED8ADAD BA1476E4 55DD5DBD 422C3716 75F4752E 7554BAC9&lt;BR /&gt; 83BD906D 5D300E82 0BFB93A7 2A1C3907 925E7E92 F039F28B A8F25A98 61628BBC&lt;BR /&gt; F1DFA126 313F7974 03FA651C 2F6EA1CF B8EC1F99 5BE693CB EFD68F3C 676897FD&lt;BR /&gt; 41AB0203 010001A3 69306730 0F060355 1D130101 FF040530 030101FF 30140603&lt;BR /&gt; 551D1104 0D300B82 09495431 30303532 392E301F 0603551D 23041830 168014A6&lt;BR /&gt; 8CD22CAA F8122B10 A1CF68D3 CC3E2A0E D63BBB30 1D060355 1D0E0416 0414A68C&lt;BR /&gt; D22CAAF8 122B10A1 CF68D3CC 3E2A0ED6 3BBB300D 06092A86 4886F70D 01010405&lt;BR /&gt; 00038181 007C26D7 7BABF7D6 74C3F1B1 4B638F47 3E275EA1 BC349635 471896EE&lt;BR /&gt; FF564969 7AE5C0DE 7BB57AA7 BF4E5E02 20CF50C0 40F66AF1 6AB94697 2541B927&lt;BR /&gt; B56DF280 94AF2763 18B24844 BE6A405C 18E9CF04 5A319488 DC7293EE 9B84059F&lt;BR /&gt; 5FF73BB5 BF46986C 50A81EDA C941338C 5E434A6D AB24DD6D 44272B76 BF6C462C&lt;BR /&gt; 4EC4C75C 74&lt;BR /&gt; quit&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;spanning-tree mode pvst&lt;BR /&gt;spanning-tree extend system-id&lt;BR /&gt;!&lt;BR /&gt;vlan internal allocation policy ascending&lt;BR /&gt;!&lt;BR /&gt;vlan 200&lt;BR /&gt; name VOICE&lt;BR /&gt;!&lt;BR /&gt;vlan 250&lt;BR /&gt; name DVR&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/1&lt;BR /&gt; switchport access vlan 250&lt;BR /&gt; switchport mode access&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/2&lt;BR /&gt; switchport access vlan 250&lt;BR /&gt; switchport mode access&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/3&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/4&lt;BR /&gt; switchport access vlan 250&lt;BR /&gt; switchport mode access&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/5&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/6&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/7&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/8&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/9&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/10&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/11&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/12&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/13&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/14&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/15&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/16&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/17&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/18&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/19&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/20&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/21&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/22&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/23&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/24&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt; ip address 10.24.5.131 255.255.0.0&lt;BR /&gt;!&lt;BR /&gt;ip default-gateway 10.24.1.1&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2017 11:05:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223688#M1064810</guid>
      <dc:creator>vijayarampm</dc:creator>
      <dc:date>2017-11-28T11:05:24Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223693#M1064811</link>
      <description>&lt;P&gt;Thanks. On both switches, what it the output of:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;sh spanning-tree vlan 250&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;sh mac add dyn vlan 250&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;And just on the 3750:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;sh ip arp vlan 250&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;How are the DVR devices getting their IP addresses? Static, DHCP?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;cheers,&lt;/P&gt;
&lt;P&gt;Seb.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2017 11:20:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223693#M1064811</guid>
      <dc:creator>Seb Rupik</dc:creator>
      <dc:date>2017-11-28T11:20:45Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223699#M1064812</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Static IP addresses configured in DVR. Please find the below required output.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;IT100529#sh spanning-tree vlan 250&lt;/P&gt;
&lt;P&gt;VLAN0250&lt;BR /&gt; Spanning tree enabled protocol ieee&lt;BR /&gt; Root ID Priority 32769&lt;BR /&gt; Address 0008.3032.4e00&lt;BR /&gt; Cost 46&lt;BR /&gt; Port 25 (GigabitEthernet0/1)&lt;BR /&gt; Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec&lt;/P&gt;
&lt;P&gt;Bridge ID Priority 33018 (priority 32768 sys-id-ext 250)&lt;BR /&gt; Address 0024.987f.1780&lt;BR /&gt; Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec&lt;BR /&gt; Aging Time 300 sec&lt;/P&gt;
&lt;P&gt;Interface Role Sts Cost Prio.Nbr Type&lt;BR /&gt;------------------- ---- --- --------- -------- --------------------------------&lt;BR /&gt;Fa0/1 Desg FWD 19 128.1 P2p&lt;BR /&gt;Fa0/2 Desg FWD 19 128.2 P2p&lt;BR /&gt;Fa0/4 Desg FWD 19 128.4 P2p&lt;BR /&gt;Fa0/10 Desg FWD 19 128.10 P2p&lt;BR /&gt;Gi0/1 Root FWD 4 128.25 P2p&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;IT100529#sh mac add dy&lt;BR /&gt;IT100529#sh mac add dynamic vlan&lt;BR /&gt;IT100529#sh mac add dynamic vlan 250&lt;BR /&gt; Mac Address Table&lt;BR /&gt;-------------------------------------------&lt;/P&gt;
&lt;P&gt;Vlan Mac Address Type Ports&lt;BR /&gt;---- ----------- -------- -----&lt;BR /&gt; 250 0000.0c07.ac64 DYNAMIC Gi0/1&lt;BR /&gt; 250 0007.e9a5.3cb1 DYNAMIC Gi0/1&lt;BR /&gt; 250 0007.e9a5.3fc0 DYNAMIC Gi0/1&lt;BR /&gt; 250 000f.fec8.188b DYNAMIC Gi0/1&lt;BR /&gt; 250 000f.fec8.3e2e DYNAMIC Gi0/1&lt;BR /&gt; 250 001b.53fa.109b DYNAMIC Gi0/1&lt;BR /&gt; 250 001b.78f5.8d8b DYNAMIC Gi0/1&lt;BR /&gt; 250 001e.0b66.f863 DYNAMIC Gi0/1&lt;BR /&gt; 250 001e.1368.3f83 DYNAMIC Gi0/1&lt;BR /&gt; 250 001f.9d45.f78d DYNAMIC Gi0/1&lt;BR /&gt; 250 0020.4ad8.4682 DYNAMIC Gi0/1&lt;BR /&gt; 250 0020.4ad8.4e32 DYNAMIC Gi0/1&lt;BR /&gt; 250 0050.5660.328a DYNAMIC Gi0/1&lt;BR /&gt; 250 0050.569b.28fe DYNAMIC Gi0/1&lt;BR /&gt; 250 0050.569b.2d99 DYNAMIC Gi0/1&lt;BR /&gt; 250 0050.569b.3cd9 DYNAMIC Gi0/1&lt;BR /&gt; 250 0050.569b.60ac DYNAMIC Gi0/1&lt;BR /&gt; 250 0050.569b.8b73 DYNAMIC Gi0/1&lt;BR /&gt; 250 0050.569b.de99 DYNAMIC Gi0/1&lt;BR /&gt; 250 0050.569b.e128 DYNAMIC Gi0/1&lt;BR /&gt; 250 00c0.ff27.58c5 DYNAMIC Gi0/1&lt;BR /&gt; 250 0800.37de.f813 DYNAMIC Gi0/1&lt;BR /&gt; 250 0800.37de.f9a1 DYNAMIC Gi0/1&lt;BR /&gt; 250 0800.37de.faed DYNAMIC Gi0/1&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Core1-3750-24-PoE#sh ip arp vlan 250&lt;BR /&gt;Protocol Address Age (min) Hardware Addr Type Interface&lt;BR /&gt;Internet 10.110.110.14 30 2857.be97.3da4 ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.12 30 bcad.289c.63de ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.13 30 bcad.289c.63e2 ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.1 - 001f.9d45.f7c2 ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.31 28 3c52.824d.27ef ARPA Vlan250&lt;BR /&gt;Core1-3750-24-PoE#sh spa&lt;BR /&gt;Core1-3750-24-PoE#sh spanning-tree vl&lt;BR /&gt;Core1-3750-24-PoE#sh spanning-tree vlan 250&lt;/P&gt;
&lt;P&gt;VLAN0250&lt;BR /&gt; Spanning tree enabled protocol ieee&lt;BR /&gt; Root ID Priority 32769&lt;BR /&gt; Address 0008.3032.4e00&lt;BR /&gt; Cost 42&lt;BR /&gt; Port 14 (GigabitEthernet1/0/14)&lt;BR /&gt; Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec&lt;/P&gt;
&lt;P&gt;Bridge ID Priority 33018 (priority 32768 sys-id-ext 250)&lt;BR /&gt; Address 001f.9d45.f780&lt;BR /&gt; Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec&lt;BR /&gt; Aging Time 15&lt;/P&gt;
&lt;P&gt;Interface Role Sts Cost Prio.Nbr Type&lt;BR /&gt;---------------- ---- --- --------- -------- --------------------------------&lt;BR /&gt;Gi1/0/1 Desg FWD 19 128.1 P2p&lt;BR /&gt;Gi1/0/11 Desg FWD 19 128.11 P2p&lt;BR /&gt;Gi1/0/13 Desg FWD 4 128.13 P2p&lt;BR /&gt;Gi1/0/14 Root FWD 19 128.14 P2p&lt;BR /&gt;Gi3/0/1 Desg FWD 4 128.109 P2p&lt;BR /&gt;Gi3/0/2 Desg FWD 4 128.110 P2p&lt;BR /&gt;Gi3/0/3 Desg FWD 4 128.111 P2p&lt;BR /&gt;Gi3/0/4 Desg FWD 4 128.112 P2p&lt;BR /&gt;Gi3/0/7 Desg FWD 4 128.115 P2p&lt;BR /&gt;Gi3/0/8 Desg FWD 4 128.116 P2p&lt;BR /&gt;Gi3/0/10 Desg FWD 4 128.118 P2p&lt;BR /&gt;Gi4/0/9 Desg FWD 4 128.171 P2p&lt;BR /&gt;Gi4/0/10 Desg FWD 4 128.172 P2p&lt;BR /&gt;Gi4/0/11 Desg FWD 4 128.173 P2p&lt;BR /&gt;Gi4/0/12 Desg FWD 4 128.174 P2p&lt;/P&gt;
&lt;P&gt;Core1-3750-24-PoE#sh mac&lt;BR /&gt;Core1-3750-24-PoE#sh mac add&lt;BR /&gt;Core1-3750-24-PoE#sh mac add dy&lt;BR /&gt;Core1-3750-24-PoE#sh mac add dynamic vlan 250&lt;BR /&gt; Mac Address Table&lt;BR /&gt;-------------------------------------------&lt;/P&gt;
&lt;P&gt;Vlan Mac Address Type Ports&lt;BR /&gt;---- ----------- -------- -----&lt;BR /&gt; 250 0000.0c07.ac64 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0007.e9a5.3cb1 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0007.e9a5.3fc0 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 000f.fec8.188b DYNAMIC Gi1/0/14&lt;BR /&gt; 250 000f.fec8.3e2e DYNAMIC Gi1/0/14&lt;BR /&gt; 250 001b.53fa.109b DYNAMIC Gi1/0/14&lt;BR /&gt; 250 001e.1368.3f83 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 001f.9d53.d38a DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0020.4ad8.466d DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0020.4ad8.4a4d DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0050.5660.328a DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0050.5699.576e DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0050.569b.28fe DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0050.569b.2a95 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0050.569b.3cd9 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0050.569b.60ac DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0050.569b.8b73 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0050.569b.de99 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0050.569b.e128 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0800.27f1.3034 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 0800.37de.f813 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 101f.7403.aea4 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 1060.4b5f.65c9 DYNAMIC Gi1/0/14&lt;BR /&gt; 250 1060.4b60.2592 DYNAMIC Gi1/0/14&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2017 11:34:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223699#M1064812</guid>
      <dc:creator>vijayarampm</dc:creator>
      <dc:date>2017-11-28T11:34:23Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223709#M1064813</link>
      <description>&lt;P&gt;What device is connected to &lt;STRONG&gt;Core1-3750-24-PoE&lt;/STRONG&gt; Gi1/0/14 ? Whatever it is, it is the root bridge for VLAN 250. Since &lt;STRONG&gt;Core1-3750-24-PoE&lt;/STRONG&gt; is routing that VLAN you should make it the root bridge:&lt;/P&gt;
&lt;PRE&gt;!
spanning-tree vlan 250 root primary
!&lt;/PRE&gt;
&lt;P&gt;As for &lt;STRONG&gt;IT100529&lt;/STRONG&gt;, you have a few switchports in a forwarding state, but there are no MAC address listed against them. I would expect the devices to be ARP'ing. What are the IPs of the devices connected to Fa0/1, Fa0/2, Fa0/4 ? If you ping those IPs from &lt;STRONG&gt;Core1-3750-24-PoE&lt;/STRONG&gt;, does the MAC address table on &lt;STRONG&gt;IT100529&lt;/STRONG&gt; show them?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2017 11:57:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223709#M1064813</guid>
      <dc:creator>Seb Rupik</dc:creator>
      <dc:date>2017-11-28T11:57:41Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223714#M1064814</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In Cisco 3750 core switch port no14 is uplink connected to another access switch. Please find the below logs for your reference of mac address.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Core1-3750-24-PoE#sh arp | i 10.110.110.&lt;BR /&gt;Internet 10.110.110.14 1 2857.be97.3da4 ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.12 1 bcad.289c.63de ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.13 1 bcad.289c.63e2 ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.1 - 001f.9d45.f7c2 ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.31 60 3c52.824d.27ef ARPA Vlan250&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;IT100529#sh mac address-table | i bcad.289c.63e2&lt;BR /&gt;IT100529#sh mac address-table | i bcad.&lt;BR /&gt; 1 bcad.2862.0af5 DYNAMIC Gi0/1&lt;BR /&gt; 1 bcad.2862.0b0d DYNAMIC Gi0/1&lt;BR /&gt; 1 bcad.2862.0b13 DYNAMIC Gi0/1&lt;BR /&gt; 1 bcad.2862.0b16 DYNAMIC Gi0/1&lt;BR /&gt; 1 bcad.2862.0b1d DYNAMIC Gi0/1&lt;BR /&gt; 1 bcad.2862.0b2e DYNAMIC Gi0/1&lt;BR /&gt; 1 bcad.289c.63dd DYNAMIC Gi0/1&lt;BR /&gt; 1 bcad.289c.63e1 DYNAMIC Gi0/1&lt;BR /&gt; 250 bcad.2862.0af5 DYNAMIC Gi0/1&lt;BR /&gt; 250 bcad.2862.0b0d DYNAMIC Gi0/1&lt;BR /&gt; 250 bcad.2862.0b13 DYNAMIC Gi0/1&lt;BR /&gt; 250 bcad.2862.0b16 DYNAMIC Gi0/1&lt;BR /&gt; 250 bcad.2862.0b1d DYNAMIC Gi0/1&lt;BR /&gt; 250 bcad.2862.0b2e DYNAMIC Gi0/1&lt;BR /&gt; 250 bcad.289c.63dd DYNAMIC Gi0/1&lt;BR /&gt; 250 bcad.289c.63e1 DYNAMIC Gi0/1&lt;BR /&gt;IT100529#sh mac address-table | i 2857.be97.&lt;BR /&gt; 1 2857.be97.3da3 DYNAMIC Gi0/1&lt;BR /&gt; 250 2857.be97.3da3 DYNAMIC Gi0/1&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2017 12:05:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223714#M1064814</guid>
      <dc:creator>vijayarampm</dc:creator>
      <dc:date>2017-11-28T12:05:37Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223717#M1064815</link>
      <description>&lt;P&gt;The MAC addresses listed in the Core1-3750-24-PoE arp table do not appear in any of the MAC address tables. I suggest you clear the ARP cache and see if they reappear:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;clear arp-cache interface vlan 250&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You still need to remove the static route on Core1-3750-24-PoE :&lt;/P&gt;
&lt;PRE&gt;!
no ip route 10.110.110.0 255.255.255.0 10.24.1.1
!&lt;/PRE&gt;</description>
      <pubDate>Tue, 28 Nov 2017 12:20:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223717#M1064815</guid>
      <dc:creator>Seb Rupik</dc:creator>
      <dc:date>2017-11-28T12:20:31Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223727#M1064816</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Same has been done. Also configured&amp;nbsp;spanning-tree vlan 250 root primary.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Nov 2017 12:32:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3223727#M1064816</guid>
      <dc:creator>vijayarampm</dc:creator>
      <dc:date>2017-11-28T12:32:47Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3224178#M1064817</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Post changes also unable to ping the DVR IP's in DVR connected switch but able to ping DVR VLAN gateway ip. Also I am able to ping DVR IP's in Core Switch 3750. Please find the below output for your reference. Please guide me what needs to be done further.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Core1-3750-24-PoE#sh spanning-tree vlan 250&lt;/P&gt;
&lt;P&gt;VLAN0250&lt;BR /&gt; Spanning tree enabled protocol ieee&lt;BR /&gt; Root ID Priority 24826&lt;BR /&gt; Address 001f.9d45.f780&lt;BR /&gt; This bridge is the root&lt;BR /&gt; Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec&lt;/P&gt;
&lt;P&gt;Bridge ID Priority 24826 (priority 24576 sys-id-ext 250)&lt;BR /&gt; Address 001f.9d45.f780&lt;BR /&gt; Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec&lt;BR /&gt; Aging Time 300&lt;/P&gt;
&lt;P&gt;Interface Role Sts Cost Prio.Nbr Type&lt;BR /&gt;---------------- ---- --- --------- -------- --------------------------------&lt;BR /&gt;Gi1/0/11 Desg FWD 19 128.11 P2p&lt;BR /&gt;Gi1/0/13 Desg FWD 4 128.13 P2p&lt;BR /&gt;Gi3/0/1 Desg FWD 4 128.109 P2p&lt;BR /&gt;Gi3/0/2 Desg FWD 4 128.110 P2p&lt;BR /&gt;Gi3/0/3 Desg FWD 4 128.111 P2p&lt;BR /&gt;Gi3/0/4 Desg FWD 4 128.112 P2p&lt;BR /&gt;Gi3/0/7 Desg FWD 4 128.115 P2p&lt;BR /&gt;Gi3/0/8 Desg FWD 4 128.116 P2p&lt;BR /&gt;Gi3/0/10 Desg FWD 4 128.118 P2p&lt;BR /&gt;Gi4/0/9 Desg FWD 4 128.171 P2p&lt;BR /&gt;Gi4/0/10 Desg FWD 4 128.172 P2p&lt;BR /&gt;Gi4/0/11 Desg FWD 4 128.173 P2p&lt;BR /&gt;Gi4/0/12 Desg FWD 4 128.174 P2p&lt;/P&gt;
&lt;P&gt;Core1-3750-24-PoE#sh mac add dyn vlan 250&lt;BR /&gt; Mac Address Table&lt;BR /&gt;-------------------------------------------&lt;/P&gt;
&lt;P&gt;Vlan Mac Address Type Ports&lt;BR /&gt;---- ----------- -------- -----&lt;BR /&gt; 250 2857.be97.3da4 DYNAMIC Gi1/0/13&lt;BR /&gt; 250 bcad.289c.63de DYNAMIC Gi1/0/13&lt;BR /&gt; 250 bcad.289c.63e2 DYNAMIC Gi1/0/13&lt;BR /&gt;Total Mac Addresses for this criterion: 3&lt;BR /&gt;Core1-3750-24-PoE#sh ip arp vlan 250&lt;BR /&gt;Protocol Address Age (min) Hardware Addr Type Interface&lt;BR /&gt;Internet 10.110.110.14 87 2857.be97.3da4 ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.12 87 bcad.289c.63de ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.13 87 bcad.289c.63e2 ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.1 - 001f.9d45.f7c2 ARPA Vlan250&lt;BR /&gt;Internet 10.110.110.31 0 Incomplete ARPA&lt;BR /&gt;Core1-3750-24-PoE#ping 10.110.110.12&lt;/P&gt;
&lt;P&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 10.110.110.12, timeout is 2 seconds:&lt;BR /&gt;!!!!!&lt;BR /&gt;Success rate is 100 percent (5/5), round-trip min/avg/max = 1/2/8 ms&lt;BR /&gt;Core1-3750-24-PoE#ping 10.110.110.13&lt;/P&gt;
&lt;P&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 10.110.110.13, timeout is 2 seconds:&lt;BR /&gt;!!!!!&lt;BR /&gt;Success rate is 100 percent (5/5), round-trip min/avg/max = 1/1/1 ms&lt;BR /&gt;Core1-3750-24-PoE#ping 10.110.110.14&lt;/P&gt;
&lt;P&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 10.110.110.14, timeout is 2 seconds:&lt;BR /&gt;!!!!!&lt;BR /&gt;Success rate is 100 percent (5/5), round-trip min/avg/max = 1/1/1 ms&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;IT100529#sh spanning-tree vlan 250&lt;/P&gt;
&lt;P&gt;VLAN0250&lt;BR /&gt; Spanning tree enabled protocol ieee&lt;BR /&gt; Root ID Priority 24826&lt;BR /&gt; Address 001f.9d45.f780&lt;BR /&gt; Cost 4&lt;BR /&gt; Port 25 (GigabitEthernet0/1)&lt;BR /&gt; Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec&lt;/P&gt;
&lt;P&gt;Bridge ID Priority 33018 (priority 32768 sys-id-ext 250)&lt;BR /&gt; Address 0024.987f.1780&lt;BR /&gt; Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec&lt;BR /&gt; Aging Time 300 sec&lt;/P&gt;
&lt;P&gt;Interface Role Sts Cost Prio.Nbr Type&lt;BR /&gt;------------------- ---- --- --------- -------- --------------------------------&lt;BR /&gt;Fa0/1 Desg FWD 19 128.1 P2p&lt;BR /&gt;Fa0/2 Desg FWD 19 128.2 P2p&lt;BR /&gt;Fa0/4 Desg FWD 19 128.4 P2p&lt;BR /&gt;Fa0/10 Desg FWD 19 128.10 P2p&lt;BR /&gt;Gi0/1 Root FWD 4 128.25 P2p&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;IT100529#sh mac add dyn vlan 250&lt;BR /&gt; Mac Address Table&lt;BR /&gt;-------------------------------------------&lt;/P&gt;
&lt;P&gt;Vlan Mac Address Type Ports&lt;BR /&gt;---- ----------- -------- -----&lt;BR /&gt; 250 001f.9d45.f78d DYNAMIC Gi0/1&lt;BR /&gt; 250 001f.9d45.f7c2 DYNAMIC Gi0/1&lt;BR /&gt; 250 2857.be97.3da4 DYNAMIC Fa0/2&lt;BR /&gt; 250 bcad.289c.63de DYNAMIC Fa0/1&lt;BR /&gt; 250 bcad.289c.63e2 DYNAMIC Fa0/4&lt;BR /&gt;Total Mac Addresses for this criterion: 5&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;IT100529#ping 10.110.110.12&lt;/P&gt;
&lt;P&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 10.110.110.12, timeout is 2 seconds:&lt;BR /&gt;.....&lt;BR /&gt;Success rate is 0 percent (0/5)&lt;BR /&gt;IT100529#ping 10.110.110.13&lt;/P&gt;
&lt;P&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 10.110.110.13, timeout is 2 seconds:&lt;BR /&gt;.....&lt;BR /&gt;Success rate is 0 percent (0/5)&lt;BR /&gt;IT100529#ping 10.110.110.14&lt;/P&gt;
&lt;P&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 10.110.110.14, timeout is 2 seconds:&lt;BR /&gt;.....&lt;BR /&gt;Success rate is 0 percent (0/5)&lt;BR /&gt;IT100529#ping 10.110.110.1&lt;/P&gt;
&lt;P&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 10.110.110.1, timeout is 2 seconds:&lt;BR /&gt;!!!!!&lt;BR /&gt;Success rate is 100 percent (5/5), round-trip min/avg/max = 1/2/8 ms&lt;/P&gt;</description>
      <pubDate>Wed, 29 Nov 2017 06:02:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3224178#M1064817</guid>
      <dc:creator>vijayarampm</dc:creator>
      <dc:date>2017-11-29T06:02:15Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3224223#M1064819</link>
      <description>&lt;P&gt;Hi there,&lt;/P&gt;
&lt;P&gt;The routing &amp;amp; switching output on the switches looks correct, and packets sourced from the the VLAN1 SVI on IT100529, should be making it to DVR devices on VLAN250 connected to the same switch.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I suspect that perhaps the DVRs have either a misconfigured gateway or netmask and are not able to correctly forward packets off the local subnet.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;cheers,&lt;/P&gt;
&lt;P&gt;Seb.&lt;/P&gt;</description>
      <pubDate>Wed, 29 Nov 2017 08:22:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3224223#M1064819</guid>
      <dc:creator>Seb Rupik</dc:creator>
      <dc:date>2017-11-29T08:22:57Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3229050#M1064821</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Observed the misconfiguration of gateway IP in DVR and same has been corrected now. It is working from LAN and same needs to be tested through VPN.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What needs to be done to check via VPN ?&amp;nbsp;Is static route of DVR VLAN segment in core switch pointing to Router will work ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 08 Dec 2017 06:51:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3229050#M1064821</guid>
      <dc:creator>vijayarampm</dc:creator>
      <dc:date>2017-12-08T06:51:07Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3229632#M1064823</link>
      <description>&lt;P&gt;Hi there,&lt;/P&gt;
&lt;P&gt;Yes you are correct, but you will also need a static route on Core1-3750-24-PoE directing traffic destined to the remote site subnets via the VPN.&lt;/P&gt;
&lt;P&gt;It would be much easier to configure dynamic routing between your sites.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;cheers,&lt;/P&gt;
&lt;P&gt;Seb.&lt;/P&gt;</description>
      <pubDate>Sat, 09 Dec 2017 20:15:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3229632#M1064823</guid>
      <dc:creator>Seb Rupik</dc:creator>
      <dc:date>2017-12-09T20:15:44Z</dc:date>
    </item>
    <item>
      <title>Re: Inter vlan routing issue</title>
      <link>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3229977#M1064824</link>
      <description>&lt;P&gt;I have pointed one static route in my core switch to core router and now it is working. Thanks for your support.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Dec 2017 09:08:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/inter-vlan-routing-issue/m-p/3229977#M1064824</guid>
      <dc:creator>vijayarampm</dc:creator>
      <dc:date>2017-12-11T09:08:41Z</dc:date>
    </item>
  </channel>
</rss>

