cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
977
Views
0
Helpful
6
Replies

troubleshoot

Amer Salem
Level 1
Level 1

I have two AP wireless one in home and other one in house, already connected it on the switch and the switch connected to the router, there is one pc connected to AP home that have vlan 70 and the ip of the pc is 192.168.70.22(DHCP),

when i ping from any device on vlan 70 to pc already pingable,


why when i ping from any vlan on the switch to the pc is not pingable?

The result for ping's:

Sw to Pc is not pingable

Sw to AP home (192.168.70.2) it's pingable

Sw to AP office (192.168.70.3) it's pingable

Sw to 192.168.70.1 it's pingable

R to pc (192.168.70.22) it's pingable

R to AP home (192.168.70.2) it's pingable

R to AP office (192.168.70.3) it's pingable

R to 192.168.70.1 it's pingable

Ping from any vlan to the pc on vlan 70 not pingable

i need access to the PC from vlan 50 for example, how can i do that?and what the troubleshoot to do it?

6 Replies 6

Surendra BG
Cisco Employee
Cisco Employee

Hi,

1>> Make the AP connected to the Switchport as a Trunk port allowing all Vlans.

2>> Where is the intervlan Routing happening?

3>> Where ever you have the 2 interface VLANs, try pinging each other. For example, if you have int VLAN 50 and int VLAN 70 on the router, make sure you are able to ping each other sourcing the ping with the other..

That is..

ping vlan 70 sourcing from vlan 50 or the other way and see if we are successfull..

4>> Allow all the vlans on the switch as well.

Lemme know if this helps..

Regards

Surendra

Regards
Surendra BG

kindly find below the configuration for the router: i can't found the issue

EXD-ROUTER#
EXD-ROUTER#sh run
Building configuration...


Current configuration : 9554 bytes
!
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname EXD-ROUTER
!
boot-start-marker
boot-end-marker
!
logging message-counter syslog
enable secret 5 $1$7PXN$U3BlSBgQYA1vz0aoQws0t0
!
aaa new-model
!
!
aaa authentication login default local
aaa authentication login CONSOLE none
aaa authentication login VPN local
aaa authorization exec default local
aaa authorization network VPN local
!
!
aaa session-id common
!
dot11 syslog
ip source-route
!
!
ip cef
ip dhcp excluded-address 192.168.50.1 192.168.50.10
ip dhcp excluded-address 192.168.40.1 192.168.40.10
ip dhcp excluded-address 192.168.30.1 192.168.30.10
ip dhcp excluded-address 192.168.20.1 192.168.20.10
ip dhcp excluded-address 192.168.70.1 192.168.70.10
!
ip dhcp pool voice
   network 192.168.40.0 255.255.255.0
   default-router 192.168.40.1
   option 150 ip 192.168.100.51
!
ip dhcp pool data
   network 192.168.50.0 255.255.255.0
   default-router 192.168.50.1
   dns-server 156.154.70.1 4.2.2.2
!
ip dhcp pool wifi
   network 192.168.30.0 255.255.255.0
   default-router 192.168.30.1
   dns-server 156.154.70.1 4.2.2.2
!
ip dhcp pool GUEST
   network 192.168.20.0 255.255.255.0
   default-router 192.168.20.1
   dns-server 156.154.70.1 4.2.2.2
!
ip dhcp pool habib
   network 192.168.70.0 255.255.255.0
   default-router 192.168.70.1
   dns-server 156.154.70.1 4.2.2.2
   option 150 ip 192.168.100.51
!
!
no ip domain lookup
no ipv6 cef
!
multilink bundle-name authenticated
!
!
!
!
!
!
!
!
voice-card 0
!
!
crypto pki trustpoint TP-self-signed-3977146088
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3977146088
revocation-check none
rsakeypair TP-self-signed-3977146088
!
!
crypto pki certificate chain TP-self-signed-3977146088
certificate self-signed 01
  30820242 308201AB A0030201 02020101 300D0609 2A864886 F70D0101 04050030
  31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
  69666963 6174652D 33393737 31343630 3838301E 170D3131 30323236 31353533
  31365A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
  4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 39373731
  34363038 3830819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
  81009BFE 4BEC620E 1038E582 E05EF9AD 7EFE1675 C6F79076 B6F623BA C5361908
  C6979C69 40D09E29 99D5782A 102DA743 A1710FF5 D5DB84CB 2A12925A 4B28157C
  251B1D46 CE36D364 0D46D758 5DCC3976 6AD0925D DFCCC06A C6A30D29 E6289B90
  AA28BC7D A8ADE916 1AC32B34 1D22B715 2F1C7EF6 46BEE81C 5F15036B 792F03F5
  1C9B0203 010001A3 6A306830 0F060355 1D130101 FF040530 030101FF 30150603
  551D1104 0E300C82 0A455844 2D524F55 54455230 1F060355 1D230418 30168014
  8A0EDF66 64FDA2E7 DA8CFC93 08A85D20 147200E6 301D0603 551D0E04 1604148A
  0EDF6664 FDA2E7DA 8CFC9308 A85D2014 7200E630 0D06092A 864886F7 0D010104
  05000381 810096A0 0A069353 1753EED2 49454096 25E76CAB 304A86B0 F6209B62
  CC1275B3 CF9F9B17 A28C89E9 CFE0CDAC 68735C2B 7148C513 F9893054 994ED15B
  666B4F9C D059D9EA 4686204C 1F2BE959 46803EE6 497F8ACE 66BB9412 17768ABD
  BCCB73F6 4C336DD4 D95845AC 7C221E20 94112723 686F7DF0 10F35972 2B1F26CC
  E60519B0 B9AF
        quit
!
!
username iqbal privilege 15 password 7 020E01570709
username mustafa123 password 7 14120A0F5D56790B757A607B211C0A
username exd-hq privilege 15 password 7 00010B02240A5955
archive
log config
  hidekeys
!
!
crypto isakmp policy 10
encr 3des
authentication pre-share
group 2
crypto isakmp key VPN address 0.0.0.0 0.0.0.0
!
crypto isakmp client configuration group VPN
key VPN
dns 156.154.70.1 4.2.2.2
pool POOL
netmask 255.255.255.0
!
!
crypto ipsec transform-set tset esp-des esp-md5-hmac
!
crypto dynamic-map DMAP 1
set transform-set tset
reverse-route
!
!
crypto map SMAP client authentication list VPN
crypto map SMAP isakmp authorization list VPN
crypto map SMAP client configuration address respond
crypto map SMAP 1 ipsec-isakmp dynamic DMAP
!
!
!
bridge irb
!
!
!
bba-group pppoe global
!
!
interface FastEthernet0/0
description ** LAN **
no ip address
duplex auto
speed auto
!
interface FastEthernet0/0.1
encapsulation dot1Q 1 native
ip address 192.168.10.1 255.255.255.0
!
interface FastEthernet0/0.20
description GUEST vlan
encapsulation dot1Q 20
ip address 192.168.20.1 255.255.255.0
ip access-group 102 in
ip nat inside
ip virtual-reassembly
!
interface FastEthernet0/0.30
encapsulation dot1Q 30
ip address 192.168.30.1 255.255.255.0
ip nat inside
ip virtual-reassembly
!
interface FastEthernet0/0.40
encapsulation dot1Q 40
ip address 192.168.40.1 255.255.255.0
ip virtual-reassembly
!
interface FastEthernet0/0.50
encapsulation dot1Q 50
ip address 192.168.50.1 255.255.255.0
ip nat inside
ip virtual-reassembly
!
interface FastEthernet0/0.70
encapsulation dot1Q 70
ip address 192.168.70.1 255.255.255.0
ip nat inside
ip virtual-reassembly
!
interface FastEthernet0/0.100
encapsulation dot1Q 100
ip address 192.168.100.1 255.255.255.0
ip virtual-reassembly
!
interface Service-Engine0/1
ip address 192.168.60.1 255.255.255.0
service-module ip address 192.168.60.2 255.255.255.0
service-module ip default-gateway 192.168.60.1
!
interface FastEthernet0/1
no ip address
no ip address
shutdown
duplex auto
speed auto
!
interface ATM0/2/0
no ip address
no atm ilmi-keepalive
hold-queue 224 in
!
ip nat source list 10 interface Dialer1 overload
ip nat inside source list 10 interface Dialer1 overload
!
access-list 10 permit 192.168.50.0 0.0.0.255
access-list 10 permit 192.168.30.0 0.0.0.255
access-list 10 permit 192.168.70.0 0.0.0.255
access-list 10 permit 192.168.20.0 0.0.0.255
access-list 102 permit tcp 192.168.20.0 0.0.0.255 any eq www
access-list 102 permit tcp 192.168.20.0 0.0.0.255 any eq 443
access-list 102 permit tcp any any eq domain
access-list 102 permit udp any any eq domain
access-list 102 permit tcp any any eq 67
access-list 102 permit tcp any any eq 68
access-list 102 permit udp any any eq bootpc
access-list 102 permit udp any any eq bootps
!
!
!
!
!
!
tftp-server CP7912080004SCCP080108A.sbin
tftp-server SCCP70.8-3-1S
tftp-server term70.default
!
control-plane
!
!
!
voice-port 0/1/0
supervisory disconnect dualtone mid-call
cptone SA
timeouts interdigit 5
timeouts call-disconnect 1
timeouts ringing 5
timeouts wait-release 1
timing guard-out 300
connection plar 126
caller-id enable
caller-id alerting dsp-pre-allocate
!
voice-port 0/1/1
supervisory disconnect dualtone mid-call
cptone SA
timeouts interdigit 5
timeouts call-disconnect 1
timeouts ringing 5
timeouts wait-release 1
timing guard-out 300
connection plar 126
caller-id enable
caller-id alerting dsp-pre-allocate
!
voice-port 0/1/2
supervisory disconnect dualtone mid-call
cptone SA
timeouts interdigit 5
timeouts call-disconnect 1
timeouts ringing 5
timeouts wait-release 1
timing guard-out 300
connection plar 126
caller-id enable
caller-id alerting dsp-pre-allocate
!
voice-port 0/1/3
supervisory disconnect dualtone mid-call
cptone SA
timeouts interdigit 5
timeouts call-disconnect 1
timeouts ringing 5
timeouts wait-release 1
timing guard-out 300
connection plar 126
caller-id enable
caller-id alerting dsp-pre-allocate
!
ccm-manager fax protocol cisco
!
mgcp fax t38 ecm
!
!
!
dial-peer voice 5000 voip
destination-pattern 15..
session protocol sipv2
session target ipv4:10.0.0.2
dtmf-relay sip-notify
codec g711ulaw
no vad
!
dial-peer voice 4 pots
destination-pattern .T
no digit-strip
port 0/1/0
!
dial-peer voice 126 voip
destination-pattern 126
session target ipv4:192.168.100.51
codec g711ulaw
!
!
!
!
telephony-service
max-ephones 30
max-dn 60
ip source-address 192.168.40.1 port 2000
system message Experts Decision
load 7970 SCCP70.8-3-1S
voicemail 1500
max-conferences 8 gain -6
web admin system name exd password exd
dn-webedit
transfer-system full-consult
create cnf-files version-stamp Jan 01 2002 00:00:00
!
!
ephone-dn  2
number 122
name reception
call-forward busy 1500
call-forward noan 1500 timeout 15
!
!
ephone-dn  10
number 133
call-forward busy 1500
call-forward noan 1500 timeout 10
!
!
ephone-dn  50
number 150...
mwi on
!
!
ephone-dn  51
number 151...
mwi off
!
!
ephone  1
device-security-mode none
mac-address 0015.63FF.5595
username "wahab" password null
type 7912
!
!
!
ephone  2
device-security-mode none
mac-address 0013.19AC.C93E
username "habib" password null
type 7970
button  1:2
!
!
banner motd ^C

**********Authorized login only**********
^C
alias exec sib show ip interface brief
!
line con 0
logging synchronous
login authentication CONSOLE
line aux 0
line 258
no activation-character
no exec
transport preferred none
transport input all
transport output pad telnet rlogin lapb-ta mop udptn v120 ssh
line vty 0 5
password 7 14141B180F0B
logging synchronous
!
scheduler allocate 20000 1000
end

Surendra BG
Cisco Employee
Cisco Employee

TO which port on this router the switch is connected and whats the config on the switchport connecting to the router and the switchport connecting to the AP??

Regards

Surendra

Regards
Surendra BG

router connected in port fa0/24
configur on switchport connecting to the router:

EXD_SWITCH#sh run int fa0/24
Building configuration...

Current configuration:
!
interface FastEthernet0/24
switchport trunk encapsulation dot1q
switchport mode trunk
end

configur on switchport connecting to the AP Office:

EXD_SWITCH#sh run int fa0/22
Building configuration...

Current configuration:
!
interface FastEthernet0/22
switchport access vlan 70
switchport trunk encapsulation dot1q
switchport voice vlan 70
spanning-tree portfast
end

the configur for switchport for pc office that pingable to the pc home :

IP:192.168.70.22

!
interface FastEthernet0/18
shutdown
switchport access vlan 70
switchport trunk encapsulation dot1q
switchport trunk native vlan 70
switchport mode trunk
switchport voice vlan 40
spanning-tree portfast
end

i want to ping the pc home from vlan 50

any help please

Hmm. looks like we are using small office switch in the network.. make sure we just configure the port as TRUNK not both trunk and access.

Regards

Surendra

Regards
Surendra BG
Review Cisco Networking for a $25 gift card