03-13-2024 04:33 AM
Hi all,
I would like to try to understand, with your help, how to configure a trunk port to access the internet with a fixed public IP on a Cisco CBS 350 switch.
The port configured as trunk (in my case the GE10 port) is connected to a router and the internet flow must be directed towards the VLANs that I have configured on the switch and which I have associated with specific switch ports. I will then connect 3 AP Cisco 150AX to some of these ports.
Having a fixed public IP to use, the switch is not a DHCP host in my case but is a DHCP server, a function that I have enabled to be able to automatically assign IP addresses to the VLANs that I have created. I have also enabled the DNS with addresses provided by my ISP.
To date I have managed to create VLANs and VLAN pools for assigning IP addresses and by connecting a device to one of the switch ports DHCP works and the IP address is assigned to the device(s).
The problem is that the devices connected to the switch don't have access to the internet and I think because switch isn't accessing the internet properly, I'm definitely missing some configuration details.
Thanks to those who want to help me and greetings from Italy
03-13-2024 09:18 AM
Are you familiar with NAT/PAT? Something the router would normally provide.
Are you also familiar with having multiple VLAN/subnets use a single public IP, i.e. routing aspects?
I ask the above to understand how detailed I, and others,bmight need to be to troubleshoot your issue.
03-13-2024 10:16 AM - edited 03-14-2024 02:13 AM
Hi Joseph and thanks in advance.
Honestly, I know what NAT/PAT are but I'm not familiar with them. I'm also not familiar with routing aspects among VLANs using a single public IP.
03-13-2024 12:15 PM
As @balaji.bandi asks, do you have (configuration) access to the router? And, as he also asks, what's the actual device?
03-13-2024 10:41 AM
If you like G10 to be trunk and allow other VLAN, you need to configure as Trunk (not Layer3 interface) - if i understand your requirement correctly as you mentioned.
Do you have more 1 Public IP from ISP ?
Gig10 have Fixed IP what will be ISP router side Config (most case Lan side RFC 1918 address - that is private IP address)
@Joseph W. Doherty - is mentioned are you faimiliar all the things mentioned, since you need to have access ISP Router to do some of the stuff mentioned.
CBS switch is switch , does not do NAtting, so you need to do all these task on ISP router ( do you have full acess to that ISP Router ) what model of the device ?
03-14-2024 04:08 AM - edited 03-14-2024 08:16 AM
I will try to answer everything and give you additional details that may be useful.
@balaji.bandi port 10 is configured as Trunk for both VLAN 3 and VLAN 5 and I enabled also the smartport function on this port, setting it as ''router'' . Yes, I have more than 1 Public IP from the provider and if needed I can use also 2 of them.
@Joseph W. Doherty @balaji.bandi instead, Port 9 is also configured as Trunk because the first time I tried to configure this switch with a different type of internet line and provider. Indeed, to make a test, the first time I configured the network using a home type of internet connection (without Fixed Public IP), connecting the switch to my home router and disabling the DHCP function of the switch (my home router works as dhcp). All worked fine and I was able to configure also the AP to access internet in my home.
After, when I configured the network with the line I'm talking here in this post I switched to fixed IP (on port GE10) to access internet and I was not longer able to connect to the Internet. This line is a company line, is a P2P line with a pool of Public IPs and I'm using one of them to access internet with the Cisco switch.
I'm sure the port of the router and the Fixed IP works properly because if I use a laptop to access internet with the same ISP router port and the same fixed IP then I can.
I can't access ISP router because this is a company agreement with the ISP and the ISP router is managed and configured by the provider. At most I can contact the provider to make a change on the Router if needed. The router is a ''Tiesse Imola 0872-IKF-Ik2W'' .
How do you think I can solve the problem and be able to configure internet access on port 10 and then VLAN 5? At that point I would have no problem configuring the APs.
Thanks so much for collaboration
03-15-2024 04:01 AM
I'll add one more detail.
I was thinking that I have configured the GE10 port with the Public IP address (and subnet) but I don't have the ability to enter the Gateway IP from that windows. Should it be inserted somewhere else, creating a route?
In the way I configure it the switch doesn't know the gateway related to the Public IP .
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide