cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
651
Views
0
Helpful
5
Replies

Not sure what my routing needs to look like and just lost..

tommygunnah
Level 1
Level 1

I've recently been thrown into a nightmare network and trying to piece everything together. This place has static routes everywhere and some places the gateway points to the Cisco router ending in .1. The cisco router has a 0.0.0.0 0.0.0.0 10.18.24.3 along with the core to point to the firewall. Higher up wants the default gateway to become the Sonicwall firewall ending in .3 but im just so lost .. I think Ive been seeing too many static routes and just getting overwhelmed but it all. I'm also trying to get my vlan 130 talking to the rest of the network but the host can't ping out to the 10. network, only the default gateway...Do I need a route somewhere....? 

 

*Edit*

 

VLAN 1 = 10.18.24.0 255.255.255.0

VLAN 130 = 192.168.130.0 255.255.255.0

 

Dont ask me why its setup like this....I already have enough of a headache

 

netwk.PNG

5 Replies 5

Hi

Could you please share the config of the router and the multilayer switch?, You could use a dynamic protocol instead static routes. 




>> Marcar como útil o contestado, si la respuesta resolvió la duda, esto ayuda a futuras consultas de otros miembros de la comunidad. <<

Here is the router configuration, dont mind the other networks as im trying to focus on our main one along with vlan 130.

 


!
!
!
!
!
!
!
!
!
!
!
!
!
!
!
interface GigabitEthernet0/0
description Internal Network
ip address 10.18.24.1 255.255.248.0
ip pim sparse-dense-mode
ip multicast ttl-threshold 1
ip route-cache flow
ip igmp version 3
duplex auto
speed auto
no cdp enable
no mop enabled
!
interface GigabitEthernet0/1
ip address 10.17.17.1 255.255.255.248
ip pim sparse-mode
ip multicast ttl-threshold 1
no ip route-cache
ip igmp version 3
duplex auto
speed auto
no mop enabled
!
interface FastEthernet0/0/0
switchport access vlan 10
shutdown
no cdp enable
no mop enabled
!
interface FastEthernet0/0/1
switchport access
no cdp enable
!
interface FastEthernet0/0/2
switchport access
shutdown
no cdp enable
spanning-tree portfast
!
interface FastEthernet0/0/3
shutdown
no cdp enable
!
interface Serial0/1/0:0
description T1 Connection to Other site
ip address 10.31.1.5 255.255.255.252
shutdown
!
interface Vlan1
no ip address
shutdown
no mop enabled
!
interface Vlan5
ip address 192.168.1.1 255.255.255.0

!
router eigrp 2755
network 10.18.0.0
network 10.31.0.0
auto-summary
!
ip route 0.0.0.0 0.0.0.0 10.18.24.3
ip route 10.18.16.0 255.255.248.0 10.18.24.5
ip route 10.18.32.0 255.255.255.0 10.18.24.6
ip route 10.18.40.0 255.255.248.0 10.18.24.3
ip route 10.19.24.0 255.255.248.0 10.18.24.3
ip route 10.29.1.0 255.255.255.0 10.18.31.1
ip route 10.29.154.0 255.255.255.0 10.18.24.25
ip route 10.30.1.0 255.255.255.0 10.18.31.2
ip route 10.31.1.0 255.255.255.0 10.18.31.3
ip route 10.32.1.0 255.255.255.0 10.18.31.1
ip route 192.168.32.0 255.255.255.0 10.18.31.1
ip route 192.168.33.0 255.255.255.0 10.18.31.10
ip route 192.168.34.0 255.255.255.0 10.18.31.11
!

!
ip http server
ip http authentication local
no ip http secure-server
!
!
!
!
!
!
!
!
!

 

 

 

 

 

 

Here is the multilayer switch config

 

boot-start-marker
boot-end-marker
!
!
vrf definition Mgmt-vrf
!
address-family ipv4
exit-address-family
!
address-family ipv6
exit-address-family
!
!
!
!
!
!
!
!
!
qos queue-softmax-multiplier 100
!
!
diagnostic bootup level minimal
spanning-tree mode pvst
spanning-tree extend system-id
hw-switch switch 1 logging onboard message level 3
!
redundancy
mode sso
!
!
!
class-map match-any non-client-nrt-class
!
policy-map port_child_policy
class non-client-nrt-class
bandwidth remaining ratio 10
!
!
!
!
!
!
!
!
!
!
!
!
!
!
interface GigabitEthernet0/0
vrf forwarding Mgmt-vrf
no ip address
negotiation auto
!
interface GigabitEthernet1/0/1
!
interface GigabitEthernet1/0/2
!
interface GigabitEthernet1/0/3
!
interface GigabitEthernet1/0/4
!
interface GigabitEthernet1/0/5
!
interface GigabitEthernet1/0/6
!
interface GigabitEthernet1/0/7
!
interface GigabitEthernet1/0/8
!
interface GigabitEthernet1/0/9
!
interface GigabitEthernet1/0/10
!
interface GigabitEthernet1/0/11
!
interface GigabitEthernet1/0/12
!
interface GigabitEthernet1/0/13
switchport trunk allowed vlan 130
switchport mode trunk
!
interface GigabitEthernet1/0/14
!
interface GigabitEthernet1/0/15
!
interface GigabitEthernet1/0/16
!
interface GigabitEthernet1/0/17
!
interface GigabitEthernet1/0/18
!
interface GigabitEthernet1/0/19
!
interface GigabitEthernet1/0/20
!
interface GigabitEthernet1/0/21
!
interface GigabitEthernet1/0/22
!
interface GigabitEthernet1/0/23
!
interface GigabitEthernet1/0/24
!
interface GigabitEthernet1/0/25
!
interface GigabitEthernet1/0/26
!
interface GigabitEthernet1/0/27
!
interface GigabitEthernet1/0/28
!
interface GigabitEthernet1/0/29
!
interface GigabitEthernet1/0/30
!
interface GigabitEthernet1/0/31
!
interface GigabitEthernet1/0/32
!
interface GigabitEthernet1/0/33
!
interface GigabitEthernet1/0/34
!
interface GigabitEthernet1/0/35
!
interface GigabitEthernet1/0/36
!
interface GigabitEthernet1/0/37
!
interface GigabitEthernet1/0/38
!
interface GigabitEthernet1/0/39
description SonicWall X/0
!
interface GigabitEthernet1/0/40
!
interface GigabitEthernet1/0/41
!
interface GigabitEthernet1/0/42
!
interface GigabitEthernet1/0/43
!
interface GigabitEthernet1/0/44
!
interface GigabitEthernet1/0/45
!
interface GigabitEthernet1/0/46
!
interface GigabitEthernet1/0/47
!
interface GigabitEthernet1/0/48
!
interface GigabitEthernet1/1/1
!
interface GigabitEthernet1/1/2
!
interface GigabitEthernet1/1/3
!
interface GigabitEthernet1/1/4
!
interface TenGigabitEthernet1/1/1
switchport mode trunk
!
interface TenGigabitEthernet1/1/2
switchport mode trunk
!
interface TenGigabitEthernet1/1/3
switchport mode trunk
!
interface TenGigabitEthernet1/1/4
switchport mode trunk
!
interface Vlan1
ip address 10.18.24.2 255.255.248.0
!
interface Vlan130
ip address 192.168.130.1 255.255.255.0
ip helper-address 10.18.24.8
ip helper-address 10.18.24.45
!
ip forward-protocol nd
ip http server
ip http authentication local
ip http secure-server
ip route 0.0.0.0 0.0.0.0 10.18.24.3
!
!
!
!

 

 

 

Thank you for all your help! Would you like me to post the routing conifguation of the sonic wall?

Hi

I think there is a mess with the static routes, there are many next hop IP addresses and the networks under the interfaces are not part of them. 

Do you know who is the IP 10.18.24.3, the interface description says Internal Network but it is not configured on the Multilayer switch. 

 

This routing can be fixed but you need to create an IP plan (in Excel can be made)  to keep an order and to know the exit interfaces and prefixes. 




>> Marcar como útil o contestado, si la respuesta resolvió la duda, esto ayuda a futuras consultas de otros miembros de la comunidad. <<

The .3 is the sonicwall firewall and the higher ups would like that to be the default gateway...

 

I just don't know where to even start...

Hi,

The router does not need many static route, do you know the reason of this router?

Now I think the sonic wall firewall is being used as perimeter proteccion and it is connected to the Internet provider, now the Multilayer switch could be the gateway for each LAN. 

 

Basically I dont see the reason to have a router connected to the Multilayer switch and it connected to the firewall. The multilayer switch can handle the routing for this network. I suggest disable the VLAN 1 and create a new VLAN for management. 




>> Marcar como útil o contestado, si la respuesta resolvió la duda, esto ayuda a futuras consultas de otros miembros de la comunidad. <<
Review Cisco Networking for a $25 gift card