Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 
New Member

Subnetmask concept

Hi evybdy,

I hav small confusion regarding subnetmask usage to allow access to particular range and to other range no access.Below here is an example...Iam confused that control device with a mask of,IP address range to and a pc with mask ,IP address range to cant they speak between them?as they r in the same IP range but diffrent subnet mask?can anybody detail this...

"Any device with a subnet mask of can communicate with any IP address anywhere in the range through to, however, the devices with a subnet mask of can only communicate with devices with an IP address that is in the same half of the smaller subnet range. In this way, a server with a mask and IP address in the range through to can communicate with a control device with a mask of mask and IP address in the range through to, but a Station with a mask of and IP address in the range through to cannot."

I wud appreciate if i get a response as early as possible...

Thankyou in advance...

Hall of Fame Super Blue

Re: Subnetmask concept


A control device with an IP address between and with a subnet mask of CAN talk to a PC with an IP address between the range and with a subnet mask of

Where the machines cannot talk is, using the same subnet masks as above, the control machine has an IP address in the range through This is because when the PC tries to reply to the Control machine it compares the Control machine IP address with it's own subnet mask ie.

Control machine =

Pc =

The PC compares against it's subnet mask and realises that Control machine is not on the same network so it has to send it to it's default gateway. This is why it would not work.

Hope this makes sense


Re: Subnetmask concept

Right, the mask detrmines how much of the address indicates the network. I suspect a phrase like "without the use of a router" is potentially missing off the "cannot access" statements.

One of my little shortcuts with mashs is to subtract the mask from 256 to look at the increments.

In this case the intesting octet is 248 or 252. They give 8 and 4 respectively. With a natwork that means: -> through -> through

That that means is that a host configured as sees as local. It can talk to that address range (note I am including all the range including zero (network ID) and all ones (broadcast)) directly. Anything outside that range and it needs a router to get to them.

If you have another device They can both talk to each other, as both devices think they are local.

Add a third on and it can talk to the second device OK, it thinks the first is local, but the first thinks the third device is remote and needs a router to send traffic back.



CreatePlease to create content