09-01-2016 09:56 AM - edited 03-08-2019 07:16 AM
I have two vlans in L3 (3560)and this is trunked to l2 (2950) switch ..
Both switch have native VLAN1 but there is around 20 host on L2 switch in that VLAN .
Now my host from L3 cannot ping the native vlans host of L2 switch ..
Things i tried
Ip routing enabled
Intervlan is working between other vlan like from vlan 10 to 20
09-01-2016 12:00 PM
Hi;
In normal scenario it should ping. If the user in vlan 1 cannot ping then there will be some issue. Can you verify the following things in order to troubleshoot the issue:
1. Will vlan 1 is allowed on trunk between L3(3560) switch & L2 (2950) switch.
2. Will spanning-tree is blocking vlan 1 on trunk between L3 & L2 switch.
3. Interface Vlan 1 with proper IP address is configure on L3 switch.
4. Default gateway of Vlan 1 users should be interface vlan 1 ip address of L3 switch.
Thanks & Best regards;
09-01-2016 12:12 PM
09-01-2016 01:10 PM
1) show interface trunk - do this on both switches and post the output
2) show span and show span block - do this on both switches and post the output
3) good
4) what is the default gateway of vlan 1 users? What are the IP addresses configured on each switch?
HTH
Rick
09-01-2016 01:23 PM
1) show trunk interface
L3 Switch
Port Mode Encapsulation Status Native vlan
Gi0/2 auto 802.1q trunking 1
Port Vlans allowed on trunk
Gi0/2 1,20,30,40
Port Vlans allowed and active in management domain
Gi0/2 1,20,30,40
Port Vlans in spanning tree forwarding state and not pruned
Gi0/2 1,20,30,40
L2 Switch
Port Mode Encapsulation Status Native vlan
Gi1/0/20 on 802.1q trunking 1
Port Vlans allowed on trunk
Gi1/0/20 1,20,30,40
Port Vlans allowed and active in management domain
Gi1/0/20 1,20,30,40
Port Vlans in spanning tree forwarding state and not pruned
Gi1/0/20 1,20,30,40
09-01-2016 01:34 PM
show span
L2 Swithc
VLAN0001
Spanning tree enabled protocol ieee
Root ID Priority 32768
Address 004f.6a0a.905d
Cost 200004
Port 15 (GigabitEthernet1/0/15)
Hello Time 2 sec Max Age 20 sec Forward Delay 4 sec
Bridge ID Priority 32769 (priority 32768 sys-id-ext 1)
Address 8480.2d0a.0a80
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Aging Time 300 sec
Interface Role Sts Cost Prio.Nbr Type
------------------- ---- --- --------- -------- --------------------------------
Gi1/0/2 Desg FWD 4 128.2 P2p
Gi1/0/6 Desg FWD 4 128.6 P2p
Gi1/0/9 Desg FWD 100 128.9 P2p
Gi1/0/10 Desg FWD 19 128.10 P2p
Gi1/0/12 Desg FWD 19 128.12 P2p
Gi1/0/13 Desg FWD 19 128.13 P2p
Gi1/0/14 Desg FWD 4 128.14 P2p
L3 Switch
VLAN0001
Spanning tree enabled protocol ieee
Root ID Priority 32768
Address 004f.6a0a.905d
Cost 200008
Port 2 (GigabitEthernet0/2)
Hello Time 2 sec Max Age 20 sec Forward Delay 4 sec
Bridge ID Priority 32769 (priority 32768 sys-id-ext 1)
Address d48c.b53c.e700
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Aging Time 300 sec
Interface Role Sts Cost Prio.Nbr Type
------------------- ---- --- --------- -------- --------------------------------
Gi0/2 Root FWD 4 128.2 P2p
09-01-2016 06:35 PM
Hi,
May i know what is the source and destination ip you are trying to reach?
09-02-2016 03:10 AM
I have around 20-30 host on 2960 switch which is in VLAN 1
Now in 3560 I have vlan 10,20,30,40 and they are trunked to the 2960 switch .
Now my vlan clients from 10,20,30,40 cannot ping the vlan 1 clients
09-02-2016 02:38 PM
Could you do "show trunk interface " in your L2 switch, my only solutions are different native vlan or one port in a switch like trunk and other like access.
09-02-2016 03:44 PM
L 3
show int gi0/2 switchport
Name: Gi0/2
Switchport: Enabled
Administrative Mode: dynamic auto
Operational Mode: trunk
Administrative Trunking Encapsulation: dot1q
Operational Trunking Encapsulation: dot1q
Negotiation of Trunking: On
Access Mode VLAN: 1 (default)
Trunking Native Mode VLAN: 1 (default)
Administrative Native VLAN tagging: enabled
Voice VLAN: none
Administrative private-vlan host-association: none
Administrative private-vlan mapping: none
Administrative private-vlan trunk native VLAN: none
Administrative private-vlan trunk Native VLAN tagging: enabled
Administrative private-vlan trunk encapsulation: dot1q
Administrative private-vlan trunk normal VLANs: none
Administrative private-vlan trunk associations: none
Administrative private-vlan trunk mappings: none
Operational private-vlan: none
Trunking VLANs Enabled: 1,20,30,40
Pruning VLANs Enabled: 2-1001
Capture Mode Disabled
Capture VLANs Allowed: ALL
Protected: false
Unknown unicast blocked: disabled
Unknown multicast blocked: disabled
Appliance trust: none
L2
Switch#show int gi1/0/20
GigabitEthernet1/0/20 is up, line protocol is up (connected)
Hardware is Gigabit Ethernet, address is 8480.2d0a.0a94 (bia 8480.2d0a.0a94)
MTU 1500 bytes, BW 1000000 Kbit/sec, DLY 10 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation ARPA, loopback not set
Keepalive set (10 sec)
Full-duplex, 1000Mb/s, media type is 10/100/1000BaseTX
input flow-control is off, output flow-control is unsupported
ARP type: ARPA, ARP Timeout 04:00:00
Last input 00:00:23, output 00:00:01, output hang never
Last clearing of "show interface" counters never
Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
Queueing strategy: fifo
Output queue: 0/40 (size/max)
5 minute input rate 0 bits/sec, 0 packets/sec
5 minute output rate 4000 bits/sec, 6 packets/sec
2263333 packets input, 256792188 bytes, 0 no buffer
Received 29125 broadcasts (24748 multicasts)
0 runts, 0 giants, 0 throttles
0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
0 watchdog, 24748 multicast, 0 pause input
0 input packets with dribble condition detected
269056200 packets output, 349864999167 bytes, 0 underruns
0 output errors, 0 collisions, 3 interface resets
1 unknown protocol drops
0 babbles, 0 late collision, 0 deferred
0 lost carrier, 0 no carrier, 0 pause output
0 output buffer failures, 0 output buffers swapped out
09-02-2016 07:33 PM
Hi Jordan,
please put you "show trunk interface " command in your L2 switch.
09-03-2016 10:43 AM
Switch#show int gi1/0/20
GigabitEthernet1/0/20 is up, line protocol is up (connected)
Hardware is Gigabit Ethernet, address is 8480.2d0a.0a94 (bia 8480.2d0a.0a94)
MTU 1500 bytes, BW 1000000 Kbit/sec, DLY 10 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation ARPA, loopback not set
Keepalive set (10 sec)
Full-duplex, 1000Mb/s, media type is 10/100/1000BaseTX
input flow-control is off, output flow-control is unsupported
ARP type: ARPA, ARP Timeout 04:00:00
Last input 00:00:23, output 00:00:01, output hang never
Last clearing of "show interface" counters never
Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
Queueing strategy: fifo
Output queue: 0/40 (size/max)
5 minute input rate 0 bits/sec, 0 packets/sec
5 minute output rate 4000 bits/sec, 6 packets/sec
2263333 packets input, 256792188 bytes, 0 no buffer
Received 29125 broadcasts (24748 multicasts)
0 runts, 0 giants, 0 throttles
0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
0 watchdog, 24748 multicast, 0 pause input
0 input packets with dribble condition detected
269056200 packets output, 349864999167 bytes, 0 underruns
0 output errors, 0 collisions, 3 interface resets
1 unknown protocol drops
0 babbles, 0 late collision, 0 deferred
0 lost carrier, 0 no carrier, 0 pause output
0 output buffer failures, 0 output buffers swapped out
09-03-2016 01:11 PM
"show trunk interface " , "show int gi1/0/20 switch" or "sh vlan" commands in your L2 switch, but no only "show int gi1/0/20" because this command don't show information about native vlan.
09-01-2016 01:44 PM
No span block
4) Default gateway for 192.168.1.1 and its a draytrek router ..
What i am trying to achieve is enabling routing between vlans from the switch itself rather than relying on router ( router is draytrek 2830..
09-01-2016 02:08 PM
Thank you for the information. It does show clearly that the vlan is allowed on the trunk and that there is not a problem with spanning tree blocked ports.
Just to be sure that I understand it correctly the default gateway configured on user PC is 192.168.1.1 and that address is on draytrek router?
Could you post the output of show ip interface brief from the L3 router and the output of show ip route from that router?
HTH
Rick
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide