The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.
In no event shall Author be liable for any damages whatsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.
It would help if your topology labeled ports!
However, I suspect most of your edge hosts are in VLAN 1 as is the link to the router. As the router's 192.168.10.0/24 is the native VLAN, it's physically in the same VLAN and so your 192.168.10.2 host can ping it.
BTW, what are you trying to accomplish? Because normally one would expect the port to the router would be configured as a trunk and each host, that's in a different subnet, should be in the VLAN for it.
The drawing shows 1 router and 2 switches. The configuration shown has 1 router and 1 switch and the switch config appears to be for the switch that connects the router to the outside. We do not see the config of the switch that connects the router to the hosts. And that is the one that we need to see to understand what the issue is.
Thanks for the additional information. It allows us to accurately identify what is the issue. The switch has only a single vlan configured and no trunk port. So all its frames are sent without any vlan tags. The untagged frames are received by the router and treated as belonging to vlan 10 which is configured to be the native vlan. This explains why the PC configured with an address that matches the subnet of vlan 10 on the router is able to ping the router address.
All of the PCs are connected in a single vlan which corresponds to a single IP subnet. So PCs that are configured with IP addresses in other subnets are not able to ping the router addresses because they are physically in vlan 10 but have addresses in other vlans.
This document gives several answers on frequently asked questions for PFRv3 channel state behavior.
Q1: What are all the channel operational states from a BR (border role) perspective and what are the rules/conditions to be in each st...
The need was to reach an host inside a LAN through a VPN connection managed by the LAN gateway (Cisco 1921).
The LAN gateway performs NAT and there was a dedicate nat rule for the host i wanted to reach through VPN.
I couldn't connect to the hos...
We have 3 identical switches configured by someone else and would like to claim some of the Gigabit ports(G1/G2/G3/G4) for use on servers. When we try to change the wiring and configuration, we run in to connectivity issues. Attached is a des...