Configuring Catalyst 4503 Port as Internet Gateway

Unanswered Question

I have 4503 switch with Gig1/12 operating in L3 mode ( no switchport ) and has been assigned IP 115.115.115.66/255.255.255.224 as internet real IP.

Vlan 1 is 192.168.0.1 with member ports Gig1/1 to Gig1/11

I am able to ping hosts on the Vlan1 from inside the switch, internet gateway 115.115.5.65 also.

ip routing is enabled,

ip route 0.0.0.0 0.0.0.0 gig1/12 

The hosts from Vlan1 are not able to access the internet. Can you suggest the right configuration ?

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
paila.srinivas Thu, 05/20/2010 - 21:28

Can you please attach you existing Topology and configurations of the switch -  also confirm if you have any nat configured on the internet router /FW

chris.rae07 Thu, 05/20/2010 - 21:29

Hi Arun,

Have you got an SVI (VLAN Interface) configured for VLAN 1 with the gateway configured? ie. 192.168.0.254/24

Can you paste in -:      sh ip route

                                   sh run

Thanks

Chris

Ganesh Hariharan Thu, 05/20/2010 - 21:51

I have 4503 switch with Gig1/12 operating in L3 mode ( no switchport ) and has been assigned IP 115.115.115.66/255.255.255.224 as internet real IP.

Vlan 1 is 192.168.0.1 with member ports Gig1/1 to Gig1/11

I am able to ping hosts on the Vlan1 from inside the switch, internet gateway 115.115.5.65 also.

ip routing is enabled,

ip route 0.0.0.0 0.0.0.0 gig1/12 

The hosts from Vlan1 are not able to access the internet. Can you suggest the right configuration

For access internet you need to configure NAT on 4500 series switches but unfortunetly 4500 series switches does not support NAT featue either you need to have 6500 series or router.

Check out the below with switches which support NAT feature

http://www.cisco.or.at/en/US/tech/tk648/tk361/technologies_tech_note09186a008011c629.shtml

Hope to Help !!

Ganesh.H

Remember to rate the helpful post

paila.srinivas Thu, 05/20/2010 - 22:08

Hi Arun,

For the internet to work in you lan you may have to introduce a Router after you 45XX switch where all the traffice to be pointed to router and you need to do NAT to, translate the inside  priviteip adress to outside pubic ip.

Regards

Srinivas

Actions

This Discussion