We have a stack of sg500x switches and are using the auto voice vlan for voip. Phones pick up their ip from the correct scope and auto smartport recognises the phones when plugged into the switch and assigns them to the correct vlan. Have configured a port to be the trunk link to the ASA firewall by assigning the port as tagged for the voice VLAN and placed it in trunk mode. The connecting interface on the firewall is configured with an IP on the voice subnet and for testing I have allowed icmp from anywhere to anywhere. I can ping the next hope on the WAN but I can’t ping back into the voice LAN on the switches neither can I ping from the data VLAN to the ASA on the voice vlan. But I can ping any phones on the voice VLAN from the data VLAN - basically the ASA is unreachable on its voice gateway port connected to the voice VLAN. I’m thinking auto voice vlan is not allowing traffic to the ASA but I don’t know how or why.
Thanks for any help