cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
746
Views
0
Helpful
6
Replies

Configure trunk port to access internet with fixed public IP - CBS350

EdoIT89
Level 1
Level 1

Hi all, 

I would like to try to understand, with your help, how to configure a trunk port to access the internet with a fixed public IP on a Cisco CBS 350 switch.

The port configured as trunk (in my case the GE10 port) is connected to a router and the internet flow must be directed towards the VLANs that I have configured on the switch and which I have associated with specific switch ports. I will then connect 3 AP Cisco 150AX to some of these ports.

Network diagramNetwork diagram

Having a fixed public IP to use, the switch is not a DHCP host in my case but is a DHCP server, a function that I have enabled to be able to automatically assign IP addresses to the VLANs that I have created. I have also enabled the DNS with addresses provided by my ISP. 

DNS.PNG

To date I have managed to create VLANs and VLAN pools for assigning IP addresses and by connecting a device to one of the switch ports DHCP works and the IP address is assigned to the device(s).

IPv4 interfaceIPv4 interface

VLANs poolsVLANs pools

 

VLANs settingsVLANs settings

The problem is that the devices connected to the switch don't have access to the internet and I think because switch isn't accessing the internet properly, I'm definitely missing some configuration details.

 

Thanks to those who want to help me and greetings from Italy 

6 Replies 6

Joseph W. Doherty
Hall of Fame
Hall of Fame

Are you familiar with NAT/PAT?  Something the router would normally provide.

Are you also familiar with having multiple VLAN/subnets use a single public IP, i.e. routing aspects?

I ask the above to understand how detailed I, and others,bmight need to be to troubleshoot your issue.

Hi Joseph and thanks in advance. 

Honestly, I know what NAT/PAT are but I'm not familiar with them. I'm also not familiar with routing aspects among VLANs using a single public IP. 

As @balaji.bandi asks, do you have (configuration) access to the router?  And, as he also asks, what's the actual device?

balaji.bandi
Hall of Fame
Hall of Fame

If you like G10 to be trunk and allow other VLAN, you need to configure as Trunk (not Layer3 interface) - if i understand your requirement correctly as you mentioned.

Do you have more 1 Public IP from ISP ?

Gig10 have Fixed IP what will be ISP router side Config (most case Lan side RFC 1918 address  - that is private IP address)

@Joseph W. Doherty - is mentioned are you faimiliar all the things mentioned, since you need to have access ISP Router to do some of the stuff mentioned.

CBS switch is switch , does not do NAtting, so you need to do all these task on ISP router ( do you have full acess to that ISP Router ) what model of the device ?

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

EdoIT89
Level 1
Level 1

I will try to answer everything and give you additional details that may be useful.

@balaji.bandi  port 10 is configured as Trunk for both VLAN 3 and VLAN 5 and I enabled also the smartport function on this port, setting it as ''router'' . Yes, I have more than 1 Public IP from the provider and if needed I can use also 2 of them.

EdoIT89_0-1710412282963.png 

EdoIT89_1-1710412394892.png

@Joseph W. Doherty @balaji.bandi  instead, Port 9 is also configured as Trunk because the first time I tried to configure this switch with a different type of internet line and provider. Indeed, to make a test, the first time I configured the network using a home type of internet connection (without Fixed Public IP), connecting the switch to my home router and disabling the DHCP function of the switch (my home router works as dhcp). All worked fine and I was able to configure also the AP to access internet in my home. 

After, when I configured the network with the line I'm talking here in this post I switched to fixed IP (on port GE10) to access internet and I was not longer able to connect to the Internet. This line is a company line, is a P2P line with a pool of Public IPs and I'm using one of them to access internet with the Cisco switch. 
I'm sure the port of the router and the Fixed IP works properly because if I use a laptop to access internet with the same ISP router port and the same fixed IP then I can. 

 

I can't access ISP router because this is a company agreement with the ISP and the ISP router is managed and configured by the provider. At most I can contact the provider to make a change on the Router if needed. The router is a ''Tiesse Imola 0872-IKF-Ik2W'' . 

How do you think I can solve the problem and be able to configure internet access on port 10 and then VLAN 5? At that point I would have no problem configuring the APs. 

Thanks so much for collaboration

 

I'll add one more detail.
I was thinking that I have configured the GE10 port with the Public IP address (and subnet) but I don't have the ability to enter the Gateway IP from that windows. Should it be inserted somewhere else, creating a route?
In the way I configure it the switch doesn't know the gateway related to the Public IP . 

EdoIT89_0-1710500419206.png

 

 

Review Cisco Networking for a $25 gift card