VLAN configuration.
Dear Colleagues,
I have been trying to set up VLANs on my 3 x TL-SG108E switches and OPNSense router, but so far I managed to get the VLANs working on first switch only, but not on second and third.
Please see the link with description and setup of my network:
https://drive.google.com/open?id=1HCYWOgDKGultCJOpjdqO9zCtCtvV8vU6
Could you please advise where lies the problem?
Thank you in advance.
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
- Copy Link
- Report Inappropriate Content
This should be helpful for you. Similar idea, but with fewer switches.
Note that the example shows two switches, each with two VLANs, and the machines in each VLAN communicate with each other, but not with the devices on the other VLAN.
In your case, I believe you want to be routing between ALL the VLANs via the firewall, so you need to configure either six tagged subinterfaces on the firewall, one for each VLAN, and tagged with the VLAN ID of the VLAN. On each subinterface will be the default gateway IP address for the subnet, so that the devices in the VLAN (and on the IP subnet associated with the VLAN) can leave the VLAN to either communicate with devices on the other VLANs, or out to the Internet.
-rb
- Copy Link
- Report Inappropriate Content
I looked at the documents again, and your diagram.
Switch A needs to have ALL SIX VLANs configured on it. Right now, you only have VLANs 30,40 and 50 on it. You need to add VLANs 10, 20 and 60 to it as well. Then, your trunk port 5 needs to be a member of all the VLANS, since Port 5 goes to the firewall where you will be routing them. It needs to have all six of the VLANs tagged. Port 6, to Switch B, need to be a member port for VLANs 10, 20, and 60, and they need to be tagged.
Then on Switch B, you need to add VLAN 60. Then, Port 4 on Switch B will be a member of VLANs 10, 20, and 60 going to Switch A, and those three VLANs need to be tagged. Port 6 on Switch B will be a member of VLANs 20 and 60, and those two VLANs need to be tagged.
It looks like Switch C is configured correctly.
Hope this helps.
-rb
- Copy Link
- Report Inappropriate Content
Information
Helpful: 0
Views: 1333
Replies: 3
Voters 0
No one has voted for it yet.