02-09-2025 08:02 AM
Hi All I wonder if someone could shed some light on this, I'm not a network engineer but have a lite knowledge on Cisco equipment. I currently have a vlan where I moved an Interface TenGigabitEthernet1/1/2 the device attached to this interface gets an IP address, and this subnet is connected to a remote location via an IPSEC tunnel, everything works i can ping devices on this subnet and vice versa. But there is this device attached to this interface TE1 where I'm not able to ping at all, i have been reviewing the interface config, firewall policies, and every other possible config that could be preventing from reaching it but couldn't find nothing obvious. I wonder if someone with more experience can have a look at the running config and help me out here perhaps.
interface Port-channel1
description ########
switchport trunk allowed vlan 2-249,251-999
switchport mode trunk
!
interface Port-channel2
description #### ####
switchport trunk native vlan 100
switchport trunk allowed vlan 2-249,251-999
switchport mode trunk
!
interface Port-channel3
description ########
switchport trunk allowed vlan 100,134,170,190
switchport mode trunk
!
interface Port-channel4
description ########
switchport trunk allowed vlan 100,134,170,190
switchport mode trunk
!
interface Port-channel5
description ########
switchport trunk allowed vlan 100,134,170,190
switchport mode trunk
!
interface Port-channel6
description ########
switchport trunk allowed vlan 2,100,134,190,203
switchport mode trunk
!
interface Port-channel7
description ########
switchport trunk allowed vlan 2,100,134,190,203
switchport mode trunk
!
interface Port-channel8
description ########
switchport trunk allowed vlan 2,100,134,190,203
switchport mode trunk
!
interface Port-channel9
description ########
switchport trunk allowed vlan 2,100,134,190,203
switchport mode trunk
!
interface Port-channel10
description ########
switchport trunk allowed vlan 2,100,134,190,203
switchport mode trunk
!
interface Port-channel18
description #### ####
switchport trunk native vlan 100
switchport trunk allowed vlan 4,100
switchport mode trunk
shutdown
!
interface Port-channel20
switchport trunk native vlan 100
switchport trunk allowed vlan 2-249,251-999
switchport mode trunk
!
interface Port-channel21
switchport trunk native vlan 100
switchport mode trunk
!
interface Port-channel22
switchport trunk native vlan 100
switchport trunk allowed vlan 2-249,251-999
switchport mode trunk
!
interface Port-channel23
switchport trunk native vlan 100
switchport trunk allowed vlan 2-249,251-999
switchport mode trunk
!
interface Port-channel24
switchport trunk native vlan 100
switchport trunk allowed vlan 2-249,251-999
switchport mode trunk
!
interface GigabitEthernet0/0
vrf forwarding Mgmt-vrf
no ip address
shutdown
negotiation auto
!
interface GigabitEthernet1/0/1
description #### ####
switchport access vlan 138
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/2
description #### ####
switchport access vlan 2
!
interface GigabitEthernet1/0/3
description #### ####
switchport access vlan 2
speed 1000
duplex full
spanning-tree portfast
!
interface GigabitEthernet1/0/4
switchport access vlan 190
spanning-tree portfast
!
interface GigabitEthernet1/0/5
description ########
switchport access vlan 150
switchport trunk allowed vlan 150
switchport mode trunk
!
interface GigabitEthernet1/0/6
description #####VLAN 190###
switchport access vlan 190
switchport mode access
!
interface GigabitEthernet1/0/7
description #### VLAN 190 ####
switchport access vlan 190
spanning-tree portfast
!
interface GigabitEthernet1/0/8
description #### VLAN 190 ####
switchport access vlan 190
spanning-tree portfast
!
interface GigabitEthernet1/0/9
description #########
spanning-tree portfast
!
interface GigabitEthernet1/0/10
description #########
spanning-tree portfast
!
interface GigabitEthernet1/0/11
description #########
switchport access vlan 134
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/12
description ####VLAN 134#####
switchport access vlan 134
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/13
description #### ####
switchport access vlan 190
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/14
description ####port not in use####
switchport trunk native vlan 100
switchport trunk allowed vlan 4,100
switchport mode trunk
shutdown
channel-group 18 mode active
!
interface GigabitEthernet1/0/15
description #########
switchport access vlan 190
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/16
description #########
switchport trunk native vlan 190
switchport trunk allowed vlan 15,100,190
switchport mode trunk
!
interface GigabitEthernet1/0/17
description #########
spanning-tree portfast
!
interface GigabitEthernet1/0/18
description ####port not in use####
switchport access vlan 190
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/19
description ########
switchport access vlan 190
switchport trunk native vlan 190
switchport trunk allowed vlan 14,15,19-21,134,190
switchport mode trunk
spanning-tree portfast
service-policy output OUT_UPLINK
!
interface GigabitEthernet1/0/20
description ########
switchport access vlan 190
spanning-tree portfast
!
interface GigabitEthernet1/0/21
description #########
switchport access vlan 250
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/22
description #########
switchport access vlan 250
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/23
description #### ###
switchport trunk native vlan 138
switchport trunk allowed vlan 138,139
switchport mode trunk
shutdown
!
interface GigabitEthernet1/0/24
description ########
switchport access vlan 190
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/25
description ####-####
switchport trunk allowed vlan 2,100,134,190,203
switchport mode trunk
channel-group 6 mode active
!
interface GigabitEthernet1/0/26
description #########
switchport access vlan 250
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/27
description ########
switchport trunk allowed vlan 2,100,134,190,203
switchport mode trunk
channel-group 7 mode active
!
interface GigabitEthernet1/0/28
description ########
switchport trunk allowed vlan 138
switchport mode trunk
!
interface GigabitEthernet1/0/29
description #### ####
switchport access vlan 25
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/30
description ########
switchport trunk allowed vlan 2,100,134,190,203
switchport mode trunk
channel-group 8 mode active
!
interface GigabitEthernet1/0/31
description ########
switchport trunk allowed vlan 2,100,134,190,203
switchport mode trunk
channel-group 9 mode active
!
interface GigabitEthernet1/0/32
description #### ###
switchport trunk native vlan 138
switchport trunk allowed vlan 138,139
switchport mode trunk
!
interface GigabitEthernet1/0/33
description #### ####
switchport access vlan 25
spanning-tree portfast
!
interface GigabitEthernet1/0/34
description ########
switchport trunk allowed vlan 2,100,134,190,203
switchport mode trunk
channel-group 10 mode active
!
interface GigabitEthernet1/0/35
description ########
switchport access vlan 190
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/36
description ########
switchport access vlan 190
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/37
description ########
switchport access vlan 190
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/38
description ########
switchport access vlan 190
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/39
description #########
switchport access vlan 250
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/40
description #########
switchport access vlan 250
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/41
description #########
switchport access vlan 250
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/42
description #########
switchport access vlan 250
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/43
description #########
switchport access vlan 250
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/44
description #########
switchport access vlan 250
switchport mode access
spanning-tree portfast
!
interface GigabitEthernet1/0/45
description
switchport trunk native vlan 365
switchport mode trunk
spanning-tree portfast
!
interface GigabitEthernet1/0/46
description
switchport access vlan 190
switchport mode access
!
interface GigabitEthernet1/0/47
description
switchport access vlan 100
switchport trunk native vlan 190
switchport trunk allowed vlan 5,14,15,19-21,100,134,190,191,202,240,300
switchport mode trunk
spanning-tree portfast
!
interface GigabitEthernet1/0/48
description ########
switchport access vlan 190
switchport mode access
!
interface GigabitEthernet1/1/1
!
interface GigabitEthernet1/1/2
!
interface GigabitEthernet1/1/3
!
interface GigabitEthernet1/1/4
!
interface TenGigabitEthernet1/1/1
description ### ###
switchport trunk native vlan 100
switchport trunk allowed vlan 2-249,251-999
switchport mode trunk
auto qos trust dscp
channel-group 20 mode on
service-policy output AutoQos-4.0-Output-Policy
!
interface TenGigabitEthernet1/1/2
description ### ###
switchport access vlan 190
switchport mode access
spanning-tree portfast
Protocol Address Age (min) Hardware Addr Type Interface
Internet 10.1.160.240 0 0cf5.a49c.3441 ARPA Vlan2
Internet 10.1.160.241 0 501c.bf2d.dcc1 ARPA Vlan2
Internet 10.1.160.242 0 28c7.ce61.96c1 ARPA Vlan2
Internet 10.1.160.243 0 c064.e452.21c1 ARPA Vlan2
Internet 10.1.160.244 0 c472.95dc.37c1 ARPA Vlan2
Internet 10.1.190.254 - 80e8.6ff4.5d77 ARPA Vlan2
Internet 10.3.1.254 - 80e8.6ff4.5d57 ARPA Vlan4
Internet 10.4.1.27 231 0012.5f17.441f ARPA Vlan5
Internet 10.4.1.28 1 0012.5f17.4420 ARPA Vlan5
Internet 10.4.1.240 61 0cf5.a49c.3444 ARPA Vlan5
Internet 10.4.1.244 12 c472.95dc.37c4 ARPA Vlan5
Internet 10.4.1.254 - 80e8.6ff4.5d47 ARPA Vlan5
Internet 10.10.22.254 - 80e8.6ff4.5d76 ARPA Vlan22
Internet 10.10.150.253 - 80e8.6ff4.5d7d ARPA Vlan150
Internet 10.10.190.1 54 f825.519b.1d8e ARPA Vlan190
Internet 10.10.190.2 115 00c0.b7e9.8c42 ARPA Vlan190
Internet 10.10.190.3 149 4c77.6d99.560a ARPA Vlan190
Internet 10.10.190.4 0 00a0.98e3.5bd2 ARPA Vlan190 PORT IN QUESTION TE1 1/1/2
Internet 10.10.190.5 57 bc24.1128.15a0 ARPA Vlan190
Internet 10.10.190.11 0 Incomplete ARPA
Internet 10.10.190.12 0 Incomplete ARPA
Protocol Address Age (min) Hardware Addr Type Interface
Internet 10.10.190.49 8 0005.ee00.b0a3 ARPA Vlan190
Internet 10.10.190.80 18 e073.e710.e4ed ARPA Vlan190
Internet 10.10.190.240 184 00a0.98e3.5aa8 ARPA Vlan190
Internet 10.10.190.251 0 94ff.3c9d.16a7 ARPA Vlan190
Internet 10.10.190.254 - 80e8.6ff4.5d7f ARPA Vlan190
Internet 10.100.20.37 215 d880.3983.4f98 ARPA Vlan100
Internet 10.100.160.240 49 0cf5.a49c.344a ARPA Vlan100
Internet 10.100.160.241 167 501c.bf2d.dcc6 ARPA Vlan100
Internet 10.100.160.242 7 28c7.ce61.96c6 ARPA Vlan100
Internet 10.100.160.243 233 c064.e452.21c6 ARPA Vlan100
Internet 10.100.160.249 0 Incomplete ARPA
Internet 10.100.160.254 - 80e8.6ff4.5d51 ARPA Vlan100
Internet 10.101.160.254 - 80e8.6ff4.5d41 ARPA Vlan101
Internet 10.102.14.1 - 80e8.6ff4.5d47 ARPA Vlan300
Internet 10.102.16.1 - 80e8.6ff4.5d7f ARPA Vlan365
Internet 10.249.203.254 - 80e8.6ff4.5d50 ARPA Vlan203
Internet 134.1.160.254 - 80e8.6ff4.5d7e ARPA Vlan134
Internet 10.10.190.2 119 00c0.b7e9.8c42 ARPA Vlan190
Internet 10.10.190.3 153 4c77.6d99.560a ARPA Vlan190
Internet 10.10.190.4 0 00a0.98e3.5bd2 ARPA Vlan190
Internet 10.10.190.5 61 bc24.1128.15a0 ARPA Vlan190
AH-Core1#show mac address-table interface tenGigabitEthernet 1/1/2
Mac Address Table
-------------------------------------------
Vlan Mac Address Type Ports
---- ----------- -------- -----
190 00a0.98e3.5bce DYNAMIC Te1/1/2
190 00a0.98e3.5bd2 DYNAMIC Te1/1/2
Total Mac Addresses for this criterion: 2
02-09-2025 10:57 AM
Hello @Beneto ,
do you mean by TE1, interface TenGigabitEthernet1/1/1? If so, then the device connected to this interface is also configured as a trunk with the same native vlan 100 and allowed vlans 2-249,251-999?
02-09-2025 11:03 AM
Hi Liviu, thanks for taking the time. The interface is the Ten 1/1/2 the device in the other end is a SAN,and it gets an IP in the Vlan I'm able to ping all other devices in this same Vlan except the SAN connected to this interface what is really weird...
02-09-2025 11:06 AM
Ok. What is the configuration for the port connected to Ten1/1/2?
02-09-2025 11:09 AM
Nothing specific, just a normal gig port with an SFP module. The only config I have available In the SAN is to specify a vlan, and DHCP or static IP allocation, I did try specify a VLAN but still not able to ping the SAn
02-09-2025 11:24 AM
Can you share the config from the SAN? Also can you share the output of show interface Ten1/1/2?
02-09-2025 11:37 AM
Here it is
TenGigabitEthernet1/1/2 is up, line protocol is up (connected)
Hardware is Ten Gigabit Ethernet, address is 80e8.6ff4.5d36 (bia 80e8.6ff4.5d3 6)
Description: ######
MTU 9000 bytes, BW 10000000 Kbit/sec, DLY 10 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation ARPA, loopback not set
Keepalive not set
Full-duplex, 10Gb/s, link type is auto, media type is SFP-10GBase-SR
input flow-control is off, output flow-control is unsupported
ARP type: ARPA, ARP Timeout 04:00:00
Last input never, output 00:00:01, output hang never
Last clearing of "show interface" counters never
Input queue: 0/2000/0/0 (size/max/drops/flushes); Total output drops: 0
Queueing strategy: fifo
Output queue: 0/40 (size/max)
5 minute input rate 0 bits/sec, 0 packets/sec
5 minute output rate 2000 bits/sec, 2 packets/sec
20962 packets input, 1858509 bytes, 0 no buffer
Received 19883 broadcasts (9156 multicasts)
0 runts, 0 giants, 0 throttles
0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
0 watchdog, 9156 multicast, 0 pause input
0 input packets with dribble condition detected
644428 packets output, 52680577 bytes, 0 underruns
0 output errors, 0 collisions, 2 interface resets
0 unknown protocol drops
0 babbles, 0 late collision, 0 deferred
0 lost carrier, 0 no carrier, 0 pause output
0 output buffer failures, 0 output buffers swapped out
AH-Core1#
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide