03-23-2023 10:22 AM
Hello all,
I have a bunch of switches C2960 at work and I can connect to most except 2. I can't even ping them. The thing is, I have the same setup procedure for all switches so I don't understand where I went wrong on this one.
No SSH, no ping, no telnet, nothing.
Any help would be greatly appreciated.
See attached "sh run" result.
03-28-2023 04:52 AM
that is exactly why i suggested:
-> configure an access port in vlan 30 and connect some device to it
then test the result
03-28-2023 05:58 AM
Pieter,
So I configured an access port to vlan 30, connected a tablet with an Ethernet cable to IP address 192.168.30.215 and from there tried to connect SSH to the switch at 192.168.30.34 and it worked.
So why can't I connect from other VLANs? I can reach other switches on VLAN 30 from VLANs 10-11-12-200, etc.
Thanks
03-28-2023 05:21 AM
only in inaccessible switch do
vlan 30<<- add this into global mode
and check again
03-28-2023 05:50 AM
Done.
No changes.
03-28-2023 06:13 AM
@marc vlan 30 exists, but as on this switch there is (was) no other port active in vlan 30 this vlan is "pruned" from the uplink
by adding the access port the vlan is "published" again to the neighboring switch.
@MHM Cisco World the command is allready in the config
vlan 20
name PACSEC
!
vlan 30
name PACPHY
!
vlan 100
name Internet
03-28-2023 06:20 AM
The switch still is inaccessible from other VLANs. The only way I can access it is from a device that has an IP on VLAN 30. Which shouldn't be.
Also, VLAN 30 shows in the list of VLANs "not pruned".
Thanks
03-28-2023 06:43 AM
vlan 30 add to db and it have access SW port assign to this port
I can not access VLAN 30 !!
the answer is defualt-gaeway
if the defualt-gateway that the SW use is in subnet of VLAN X this vlan must also add to vlan db and must also have access SW port OR disbale autostate if tSW support this feature.
03-28-2023 07:21 AM
the switch has the defaut gateway configured (see configuration in first post )
interface Vlan30
description *** MANAGEMENT LAN ***
ip address 192.168.30.34 255.255.255.0
!
ip default-gateway 192.168.30.1
-> does the subnet mask match the subnet mask of the gateway ?
03-28-2023 07:48 AM
Yes, subnet mask is good (255.255.255.0). All my switches are configured as such.
03-28-2023 07:56 AM
then from inaccessible SW do
traceroute GW source VLAN 30 <<- share here
03-28-2023 08:19 AM
I've tried to issue the following command without success
traceroute 192.168.30.1 source VLAN 30
It's as if it's expecting an IP address for the source instead of a VLAN number
03-30-2023 05:38 AM - edited 03-30-2023 05:47 AM
Here's a schematic explaining quickly the layout of my switches.
One PC on subnet 192.168.10.x can connect to all switches except SPYS1-SW11.
Another PC on subnet 192.168.30.x can connect to all switches.
It doesn't matter where the PCs are connected. The places shown on the schematic are random.
03-30-2023 03:03 PM
03-31-2023 11:30 AM
Thank you for this @MHM Cisco World .
The command "no autostate" does not work.
Port Gi1/0/28 is already on vlan 30.
"ip default-gateway" is on 192.168.30.1, the same as all other switches.
I have validated that on our main router, VLAN 30 is allowed on the interface that connects to switch SPYS1-SW11.
04-06-2023 08:11 AM
Bump (if this is allowed)
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide