Warning message

  • Cisco Support Forums is in Read Only mode while the site is being migrated.
  • Cisco Support Forums is in Read Only mode while the site is being migrated.

Cisco sg500x/ASA5512 can’t ping gateway on voice vlan

Unanswered Question
Dec 5th, 2013
User Badges:


We have a stack of sg500x switches and are using the auto voice vlan for voip. Phones pick up their ip from the correct scope and auto smartport recognises the phones when plugged into the switch and assigns them to the correct vlan. Have configured a port to be the trunk link to the ASA firewall by assigning the port as tagged for the voice VLAN and placed it in trunk mode. The connecting interface on the firewall is configured with an IP on the voice subnet and for testing I have allowed icmp from anywhere to anywhere. I can ping the next hope on the WAN but I can’t ping back into the voice LAN on the switches neither can I ping from the data VLAN to the ASA on the voice vlan. But I can ping any phones on the voice VLAN from the data VLAN - basically the ASA is unreachable on its voice gateway port connected to the voice VLAN. I’m thinking auto voice vlan is not allowing traffic to the ASA but I don’t know how or why.

Thanks for any help

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Rhys Davies Thu, 12/05/2013 - 04:33
User Badges:

Additionally I have plugged a pc into the voice vlan port given it voice subnet IP and I can't ping that either. I believe I'm not understanding something fundamental about how voice vlan works. How do I connect a router/firewall to the voice vlan to provide a gateway out?



This Discussion