cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1836
Views
5
Helpful
9
Replies

Router on a stick on packet tracer

achrafdotcisco
Level 1
Level 1

Hello,

I have the following topology:

achrafdotcisco_1-1672519243346.png

Every client on a VLAN can ping to the subinterfaces in the routers (Fortigate) but the clients can't ping each other between diffirent VLAN'S:

achrafdotcisco_3-1672520475183.png

I use multiple VLAN's on each Switch example: on S3 vlan 50 Management and 60 IT:

achrafdotcisco_2-1672519525655.png

Someone who can help me? Thanks a lot!

 

 

 

1 Accepted Solution

Accepted Solutions

Hello,

on the Fortigate, you have 'ip routing' disabled.

no ip cef
no ip routing

Enable 'ip routing':

Fortigate(config)#ip routing

View solution in original post

9 Replies 9

balaji.bandi
Hall of Fame
Hall of Fame

what you see on the logs of fortigate, when the you ping PC to PC ?

First thing need to check :

End device have correct gateway and subnet 

end device can ping their gateway

end device has any Firewall and it is disabled ?

From the router are you able to ping the end device IP address ?

if all tests and still not working post the below information for us to look into the issue.

Hope all the switches act as Layer 2 only ?

you have 2 Fortigate here in the diagram, how are they acting Active/Standby ?

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Hello,

post the zipped Packet Tracer project (.pkt) file...

Hello,

Here you are.

Thank you!

Hello,

what are the device passwords ?

sorry i forgot it,

cisco and cisco123

Hello,

on the Fortigate, you have 'ip routing' disabled.

no ip cef
no ip routing

Enable 'ip routing':

Fortigate(config)#ip routing

Thank so much @Georg Pauwen !!!

Hello,

easy fix...good luck with your project, and happy new year !

achrafdotcisco
Level 1
Level 1

Thank you for your help,

Yes every End device have correct gateway and subnet given by the right DHCP pool from the 1941 routers (named:fortigate)

Every end device can ping their gateway

There is no Firewall (Fortigates are only 1941 routers not fortigates)

From the router i am able to ping the end device IP address.

All the switches act as Layer 2 only (2960)

Like i said for the 2 Fortigate in the diagram its only the name but those are Cisco 1941 routers. 

achrafdotcisco_0-1672568049430.png