cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
306
Views
1
Helpful
2
Replies

Configuration of VLANs Uplink from one cisco to another cisco

Krischeu
Level 1
Level 1

Hi,

we are upgrading our old network. We still have a SG200-50P running with some VLAN to seperate the network from each other.

Now I added a new CBS350-48-P4X. I connected this with copper cable from port 49 (old switch) to port 47 (new switch).

I created VLAN 21,22,23,120. Those are the same as at the old switch.

When I go to a port, e.g. Port 2, I put this as tagged to VLAN1, I can still ping my devices at VLAN 120. This should not work, but it does work.

Can anybody give me a hand?

 

Cheers

Heinz

1 Accepted Solution

Accepted Solutions

Krischeu
Level 1
Level 1

Old Switch configuration uplink port 49:

Interface settings: Trunk, Administrative PVID:1

Port to VLAN: tagged

Port VLAN Membership: 

Administrative VLANs:1UP21T22T23T120T
Operational VLANs:1UP21T22T23T120T

 

New Switch configuration uplink port 47

Interface settings: Trunk

Port to VLAN: TAGGED

Port VLAN Membership: 

Administrative VLANs:1T, 21-23T, 120T, 2-20I, 24-119I, 121-4094I
Operational VLANs:1T, 21-23T, 120T

 

So my Notebook is connected to the new switch on port 2 VLAN1 ( I guess ). And I still can ping my other PC at VLAN120. This should not work, because it should be seperated. When I am at the old switch - it is seperated.

Configuration at the new switch is:

VLAN Membership (active): Native VLAN ID:1

Tagged VLANs: All VLANs

Port VLAN Membership Details

Administrative VLANs:21-23T, 120T, 1U, 2-20I, 24-119I, 121-4094I
Operational VLANs:1U, 21-23T, 120T

View solution in original post

2 Replies 2

Krischeu
Level 1
Level 1

Old Switch configuration uplink port 49:

Interface settings: Trunk, Administrative PVID:1

Port to VLAN: tagged

Port VLAN Membership: 

Administrative VLANs:1UP21T22T23T120T
Operational VLANs:1UP21T22T23T120T

 

New Switch configuration uplink port 47

Interface settings: Trunk

Port to VLAN: TAGGED

Port VLAN Membership: 

Administrative VLANs:1T, 21-23T, 120T, 2-20I, 24-119I, 121-4094I
Operational VLANs:1T, 21-23T, 120T

 

So my Notebook is connected to the new switch on port 2 VLAN1 ( I guess ). And I still can ping my other PC at VLAN120. This should not work, because it should be seperated. When I am at the old switch - it is seperated.

Configuration at the new switch is:

VLAN Membership (active): Native VLAN ID:1

Tagged VLANs: All VLANs

Port VLAN Membership Details

Administrative VLANs:21-23T, 120T, 1U, 2-20I, 24-119I, 121-4094I
Operational VLANs:1U, 21-23T, 120T

Ruben Cocheno
Spotlight
Spotlight

@Krischeu 

thank you

Tag me to follow up.
Please mark it as Helpful and/or Solution Accepted if that is the case. Thanks for making Engineering easy again.
Connect with me for more on Linkedin https://www.linkedin.com/in/rubencocheno/
Review Cisco Networking for a $25 gift card