cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
449
Views
8
Helpful
7
Replies

Vlans internetworking

mmohanni1981
Level 1
Level 1

Hi all,

Could you please advise. we have set a new network using 4507 as cores,3750 as distribution,2960 as access switches. now the vlans doesn't see each other and you can't access remotely to any host on a different vlan! how can i assign the IT ports the privilege to see all VLANS and access them. i only can access servers remotely if i disabled the firewall.

P.S: the IT are connected to the access which is connected to the distribution which is connected to the cores. the distribution and access are clients and the cores are servers

7 Replies 7

glen.grant
VIP Alumni
VIP Alumni

It is hard to say without seeing your configs. Obviously something is misconfigured either at layer 2 or 3 or you have trunks or etherchannels misconfigured . we would need to see what the configs look like for core, dist, acess switches .

glen,

attached is my configuration could you please comment...

P.S:open with word pad to view correctly

To understand your topology a bit better, please type the following commands on each switch:

show cdp ne

show vtp status

show vlan

show int trunk

I think u miss the "ip routing" command in the core configuration, then it dont make the intervlan routing.

Try it and tell us how it as.

Best Regards,

Bruno Petr?nio

4507 comes with 'ip routing' enabled by default.

The only way to see ip routing in the config, is by typing 'no ip routing' as default commands don't show up in the running config.

Many Thanks Edison.

I'm always learning in this forum :)

Best Regards,

Bruno Petr?nio

i'v tried to enable this by ACL's what i did is:

i added an ACL on the core

access-list 110 permit tcp any any

access-list 110 permit udp any any

and i assigned the IT ports on the access-group 110.

the problem is now everyone sees everyone ?? should i add an ACL before 110 and say DENY ANY ANY.

also after i'm seeing all the computers i can't access them remotly or offer remote assistance as i was before installing the new network gear.

Review Cisco Networking products for a $25 gift card