cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
456
Views
0
Helpful
3
Replies

Cisco Switch can't ping computer on Vlan 86, but the computer can ping

DSterling
Level 1
Level 1

Connected computer to port 24 on switch1 on vlan 86. The switch is a layer 3 switch (Cisco C9500) and the default gatway for numerous vlans to include vlan 86.

ip of computer 192.168.86.55 255.255.255.0
default gateway: 192.168.86.1


The arp table shows the computer ip and it's complete.

Port configuration on Switch2:
switchport mode access
switchport access vlan 86

From the computer I can ping the default gateway and other devices in the vlan 86 arp table.
I can't ping the computer ip from the switch it's connected too (Switch1). If I try to source the ping from another vlan I still can't get to the computer IP, but I can get to other IPs on the vlan 86 subnet sourcing from another vlan.

If I try to configure another device on the same vlan (vlan 86) on the switch, nothing can communicate to it, same issue as above.

There was an access-list on vlan 86 that I took off and still did not make a difference.

Current vlan 86 configuration after taking off the access-group is:
interface vlan 86
ip add 192.168.86.1 255.255.255.0

There are a number of access-list on the switch, but I don't see how any of them could be blocking icmp to the computer. I checked the interfaces and they are not applied on the vlan 86 or the port the computer is connected too.

Need help?

Thank you, 

 

1 Accepted Solution

Accepted Solutions

Harold Ritter
Level 12
Level 12

Hi @DSterling ,

This is probably due to the host based FW on the computer. Please disable it and try again.

Regards,

Harold Ritter
Sr Technical Leader
CCIE 4168 (R&S, SP)
harold@cisco.com
México móvil: +52 1 55 8312 4915
Cisco México
Paseo de la Reforma 222
Piso 19
Cuauhtémoc, Juárez
Ciudad de México, 06600
México

View solution in original post

3 Replies 3

Harold Ritter
Level 12
Level 12

Hi @DSterling ,

This is probably due to the host based FW on the computer. Please disable it and try again.

Regards,

Harold Ritter
Sr Technical Leader
CCIE 4168 (R&S, SP)
harold@cisco.com
México móvil: +52 1 55 8312 4915
Cisco México
Paseo de la Reforma 222
Piso 19
Cuauhtémoc, Juárez
Ciudad de México, 06600
México

that was it, thank you Harold. 

Harold Ritter
Level 12
Level 12

You are very welcome @DSterling and thanks for the feedback

Harold Ritter
Sr Technical Leader
CCIE 4168 (R&S, SP)
harold@cisco.com
México móvil: +52 1 55 8312 4915
Cisco México
Paseo de la Reforma 222
Piso 19
Cuauhtémoc, Juárez
Ciudad de México, 06600
México
Review Cisco Networking for a $25 gift card