I'm trying to setup trunking from an ASA 5505 to a Catalyst Express CE-500.
Unfortunately, I'm confused as to what "smartport" role to use. I've tried both "switch" and "router" because I need something that turns on trunking. The problem is, the ASA will NOT send untagged traffic, so there is no native vlan (untagged). However, on the CE-500, I have to put in something for a "native vlan". Since I don't use vlan 1 for anything, I put that in as the native vlan.
This actually seems to work just fine for my tagged traffic VLANs. However, the Catalyst Express freaks out and generates an alarm light on the panel of the switch and when I read why in the gui, it says that "there is a smartport mismatch" on the port that I've got trunked to the ASA 5505.
I want to pull my hair out - everything is fine - speed and duplex match (I've got that hardcoded on both sides), and the VLANs that are active on the 5505 work to the CE500. The only thing I can assume is that it's freaking out because it's not seeing any untagged traffic?
This switch port cannot pass traffic until you assign at least one VLAN to it. Trunk ports do not support untagged packets; there is no native VLAN support, and the adaptive security appliance drops all packets that do not contain a tag specified in this command.
I suggest to ignore the alarm light in the CE-500.
Unfortunately, the CE-500 is gui based, meaning there technically is no CLI access. There is a way to "see" some cli output, by throwing /exec on the end of the gui url. However, this isn't actually CLI, and some commands are not there or ignored. I'm not sure if this is a limitation of the gui itself or of the actual IOS version on these switches.
In any case, while I can "configure" the interface in question, the "vlan" command is invalid. Looking through the available commands, I can set allowed VLANs, set trunking to nonegotiate, etc. but the look is more like the 2900 syntax rather than the 3600 syntax.
Sadly, it appears that you may be right and I just have to ignore the alarm light. That's always fun to explain to a customer !
Hi everyone, I would like to thank you in advance for any help you can provide a newcomer like myself!
Im studying the 100-105 book by Odom and am currently on the topic of Port security. I purchased a used 2960 and I'm trying to follow a...
While deploying a number of 18xx/2802/3802 model access points (APs), which run AP-COS as their operating platform. It can be observed on some occasions that while many of their access points were able to join the fabric WLC withou...
I am going to design and build an LAN network under a tunnel underground with long distance between the switches.
I will have 2 Catalyst switches and 8 Industrial IE3000, and they will be connected with fiber.
For now I am planning on use Layer-2 s...