cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2104
Views
0
Helpful
8
Replies

How to ping firewall gateway in inter vlan routing ?

Wilson Kwok
Level 1
Level 1

Hello,

Please see attached diagram first.

Vlan 1 , 10 , 20 PCs can ping each others, but cannot ping 200.1.1.2. I want those PCs can reach 222.0.0.2 server.

Please help !

1 Accepted Solution

Accepted Solutions

1841 have the necessary route statements to reach Vlan1,10 and 20 or a default route pointing to 3560? Please check the routing table.

Thx

MS

View solution in original post

8 Replies 8

Mohamed Sobair
Level 7
Level 7

Hi,

Make sure the Server Gateway address is set to 222.0.0.1 (which is the router local interface).

This behaviour can be seen when the server is missing a gateway, all hosts can reach the Router 222.0.0.1 but there is no return packet from the server to the hosts due to a gateway address assignemnt on the server for example.

Regards,

Mohamed

Sorry, I forgot to add the server default gateway in this diagram, is it already be set.

Now, all hosts cannot reach the 200.1.1.2.

The L3 switch fa0/4 assigned to default Vlan 1, is it incorrect ?

Please see attached new screenshot.

Thanks !

1841 have the necessary route statements to reach Vlan1,10 and 20 or a default route pointing to 3560? Please check the routing table.

Thx

MS

Hello,

I haven't setup 1841 to route traffic to all Vlan, if I use default route, which next hop IP address should be use ?

Thanks !

OK, after added a default route to next hop L3 switch fa0/4 200.1.1.1, all Vlan hosts can reach the server.

Thanks !

hi wilson,

try using a cross-cable (represented by a dashed line) between your 3560 and 1841.

add a static route on your 1841:

ip route 192.168.0.0 255.255.0.0 200.1.1.1

Hello,

Please see attached new screenshot.

I have added a Router1 to test separate another network. Router1 successfully ping Server0, but PC6 can't reach Vlan 1 default gateway 192.168.2.1.

Thanks !

OK now, I forgot add default route from L3 switch to 10.0.0.0/24 network.

Thanks !!