cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3922
Views
0
Helpful
15
Replies

VLAN can't get to Internet

sonitadmin
Level 1
Level 1

Have multiple Catalyst 2960S switches, Cisco 2911 router and ASA 5510 firewall.

On the router have subinterfaces created for the VLAN's

Int FA0.0/41 for wirless VLAN setup with IP 10.10.41.100

Int FA0.0/60 for new Voice VLAN setup with IP 10.10.60.100

Internal network is 10.10.10.0/24 and LAN IP of router is 10.10.10.100

Have default route setup to push traffic from the router to the firewall ip route 0.0.0.0 0.0.0.0 10.10.10.251

On the firewall have added the new VLAN 10 (10.10.60.0) to the network object-group

Have configured route inside command route 10.10.60.0 255.255.255.0 10.10.10.100 1

Have also added the NAT command nat (inside) 1 10.10.60.0 255.255.255.0

On the 2960 I have my laptop connected to port 45 and I have it configured as follows

switchport mode access

switchport access vlan 10

I assign my computer a static IP address of 10.10.60.84/255.255.255.0/10.10.60.100 with 10.10.10.11 as DNS server.  When I do this, I can ping anything on the 10.10.60.0 network, I can ping anythign on the LAN 10.10.10.0 network.  I am able to connect MSN messenger, I am able to do NSLOOKUP and get outside IP addresses to resolve. I am unable to browse the Internet though.  I am not sure where the problem is at though.  It doesn't make sense to me, as it is setup the same way as VLAN 41 which is the wireless network, and when users connect to that, they get out to the Internet with no issues. 

Anyone have any advice on what to look at or where the problem may be?  I'd appreciate any help I can get on this.

Thanks!

15 Replies 15

I've already emailed the client to have her check that for me.  Will let you know what I hear back on that.

Thanks!

Review Cisco Networking for a $25 gift card