Vlan Config 6860E & 6360

demfero46

Vlan Config 6860E & 6360

Post by demfero46 »

Hello i have a config vlan please help me

My topology

6360 switch -> edge_backbone 6860E -> main_backbone 6860E -> fortigate firewall 100f(dhcp realy) -> windows server dhcp server

i created vlan 40 and assign ports 1/1/11-12 but dhcp server cannot seen ip addresses

OS6360-24-A.0 ->> show vlan 40 members
port type status
----------+-----------+---------------
1/1/11 default active
1/1/12 default active

OS6360-24-A.0 ->> show vlan
vlan type admin oper ip mtu name
------+-------+-------+------+------+------+------------------
1 std Ena Ena Dis 1500 PERSONEL_PC
4 std Ena Ena Dis 1500 PERSONEL_WIFI
8 std Ena Ena Dis 1500 MISAFIR_WIFI
12 std Ena Ena Dis 1500 LAB_PC
14 std Ena Ena Dis 1500 SANTRAL
16 std Ena Ena Dis 1500 OGRENCI_WIFI
40 std Ena Dis Dis 1500 DIJITAL_DSPLY
100 std Ena Ena Dis 1500 MANAGEMENT
200 std Ena Ena Ena 1500 ALCATEL_AP
4094 vcm Ena Dis Dis 1500 VCM IPC
User avatar
Gleylancer
Member
Posts: 164
Joined: 08 May 2013 03:14

Re: Vlan Config 6860E & 6360

Post by Gleylancer »

According to your topology, your DHCP is on another network and broadcast packets from VLAN40 cannot reach it directly. You're saying that your Firewall is the relay agent.

Please check if the Relay packets pass through your firewall and are being answered. A wireshark trace on the windows server can help. This is not a switch issue.
ruemelin
Member
Posts: 14
Joined: 13 Oct 2021 05:44

Re: Vlan Config 6860E & 6360

Post by ruemelin »

Hi,
an additional thought: port 11 and 12 are the access-ports for the clients, aren't they? So (if you did no shorten your output) it looks like the vlan is missing (as tagged vlan) on your upstream-ports to the 6860E.
Regards
demfero46

Re: Vlan Config 6860E & 6360

Post by demfero46 »

this is edge_backbone 6860E

OS6860-48-A.0-> show configuration snapshot
! Chassis:
system name "OS6860-A_BLOK_OMURGA"
system location "MUDANYA_UNIVERSITESI"

! Configuration:
configuration error-file-limit 2

! Capability Manager:
! Virtual Flow Control:
! LFP:
! Interface:
interfaces port 1/1/41 alias "ALCATEL_AP"
interfaces port 1/1/42 alias "ALCATEL_AP"
interfaces port 1/1/43 alias "ALCATEL_AP"
interfaces port 1/1/44 alias "ALCATEL_AP"
interfaces port 1/1/45 alias "ALCATEL_AP"
interfaces port 1/1/47 alias "OS6360-48-A.2-UPLINK"
interfaces port 1/1/48 alias "OS6360-48-A.1-UPLINK"
interfaces port 1/1/51 alias "A_blok_Omurga_UPLINK"

! Port_Manager:
! Link Aggregate:
! VLAN:
vlan 1 admin-state enable
vlan 1 name "PERSONEL_PC"
vlan 4 admin-state enable
vlan 4 name "PERSONEL_WIFI"
vlan 8 admin-state enable
vlan 8 name "MISAFIR_WIFI"
vlan 12 admin-state enable
vlan 12 name "LAB_PC"
vlan 14 admin-state enable
vlan 14 name "SANTRAL"
vlan 16 admin-state enable
vlan 16 name "OGRENCI_WIFI"
vlan 40 admin-state enable
vlan 40 name "DIJITAL_DSPLY"
vlan 100 admin-state enable
vlan 100 name "MANAGEMENT"
vlan 200 admin-state enable
vlan 200 name "ALCATEL-AP"
vlan 200 members port 1/1/41-45 untagged
vlan 4 members port 1/1/44-52 tagged
vlan 8 members port 1/1/44-52 tagged
vlan 12 members port 1/1/45-52 tagged
vlan 14 members port 1/1/1-43 tagged
vlan 14 members port 1/1/46-52 tagged
vlan 16 members port 1/1/44-52 tagged
vlan 40 members port 1/1/45-52 tagged
vlan 100 members port 1/1/45-52 tagged
vlan 200 members port 1/1/46-52 tagged

! PVLAN:
! Spanning Tree:
spantree mode flat
spantree vlan 1 admin-state enable
spantree vlan 4 admin-state enable
spantree vlan 8 admin-state enable
spantree vlan 12 admin-state enable
spantree vlan 14 admin-state enable
spantree vlan 16 admin-state enable
spantree vlan 40 admin-state enable
spantree vlan 100 admin-state enable
spantree vlan 200 admin-state enable

! DA-UNP:
! Bridging:
! Port Mirroring:
! Port Mapping:
! IP:
ip interface "Switch_Management" address 10.5.200.154 mask 255.255.255.0 vlan 200 ifindex 2

! IPv6:
! IPSec:
! IPMS:
! AAA:
aaa authentication default "local"
aaa authentication console "local"
aaa authentication telnet "local"
aaa authentication http "local"
aaa authentication snmp "local"
aaa authentication ssh "local"

aaa tacacs command-authorization disable

! NTP:
! QOS:
! Policy Manager:
! VLAN Stacking:
! ERP:
! MVRP:
! LLDP:
! UDLD:
! Server Load Balance:
! High Availability Vlan:
! Session Manager:
session cli timeout 15
session prompt default "OS6860-48-A.0->"

! Web:
! Trap Manager:
! Health Monitor:
health threshold memory 80

! System Service:
ip domain-lookup

! SNMP:
snmp security no-security
snmp community-map mode enable
snmp community-map hash-key e9868b5aadfeee33 user "snmpv2" enable

! BFD:
! IP Route Manager:
ip static-route 0.0.0.0/0 gateway 10.5.200.1 metric 1

! VRRP:
! UDP Relay:
! RIP:
! OSPF:
! IP Multicast:
! DVMRP:
! IPMR:
! RIPng:
! OSPF3:
! BGP:
! ISIS:
! Module:
! LAN Power:
! RDP:
! DHL:
! Ethernet-OAM:
! SAA:
! SPB-ISIS:
no spb isis graceful-restart
spb isis graceful-restart helper disable

! SVCMGR:
service stats disable

! LDP:
! EVB:
! APP-FINGERPRINT:
! FCOE:
! QMR:
! OPENFLOW:
! Dynamic auto-fabric:
! SIP Snooping:
! DHCP Server:
! DHCPv6 Relay:
! DHCPv6 Snooping:
! DHCPv6 Server:
! DHCP Message Service:
! DHCP Active Lease Service:
! Virtual Chassis Split Protection:
! DHCP Snooping:
! APP-MONITORING:
app-mon separate-config-file

! Loopback Detection:
! VM-SNOOPING:
! PPPOE-IA:
! Security:
! Zero Configuration:
! MAC Security:
! OVC:
! EFM-OAM:
! ALARM-MANAGER:
! DEVICE-PROFILE:
! PTP:
! IP DHCP RELAY:
! TEST-OAM:
! LOOPBACK TEST:
! UDP6 RELAY:
! MGMT AGENT:
! MRP:
! PKGMGR:

OS6860-48-A.0->
ruemelin
Member
Posts: 14
Joined: 13 Oct 2021 05:44

Re: Vlan Config 6860E & 6360

Post by ruemelin »

Hi,
which ports on the 6360 are connected to which ports on the 6860?
Same for connection between the 6860-switches and the 6860 to the fortigate.
On all connections on both sites the vlan 40 shold be assigned as tagged.
From your first post:
OS6360-24-A.0 ->> show vlan 40 members
port type status
----------+-----------+---------------
1/1/11 default active
1/1/12 default active

-> it seems you have no port that has tagged vlan 40, so I think you are not assigning it on the uplink-port on the 6360.

On the 6860:
OS6860-48-A.0-> show configuration snapshot
...
! VLAN:
...
vlan 40 admin-state enable
vlan 40 name "DIJITAL_DSPLY"
...
vlan 40 members port 1/1/45-52 tagged
...
-> is the 6360 connected to a port in the range 1/1/45-52? And the main_backbone as well?

Regards
demfero46

Re: Vlan Config 6860E & 6360

Post by demfero46 »

Ruemelin so thanks you're all right but i have 10 device but two device assigned ip 40 vlan

connections

switch name OS6360-24-A.0 10.5.200.153 - 1/1/25 <<<connected>>>> switch name OS6860-48-A.0-> 10.5.200.154 - 1/1/46
switch name OS6860-48-A.0->10.5.200.150 - 1/1/50 <<<connected>>>> switch name 2 OMURGA-B.O->10.5.200.154 - 1/1/51
switch name 2 OMURGA-B.O->10.5.200.154 - 1/1/48 <<<connected>>>> fortigate firewall 100f port1 10.5.1.254
vlan interfaces
OS6360-24-A.0 ->> sh vl 40 mem
port type status
----------+-----------+---------------
1/1/1 default forwarding
1/1/2 default forwarding
1/1/3 default forwarding
1/1/4 default forwarding
1/1/5 default forwarding
1/1/6 default forwarding
1/1/7 default forwarding
1/1/8 default forwarding
1/1/9 default forwarding
1/1/10 default forwarding
1/1/11 default inactive
1/1/12 default inactive
1/1/25 qtagged forwarding uplink
1/1/26 qtagged inactive uplink


OS6860-48-A.0-> show vlan 40 members
port type status
----------+-----------+---------------
1/1/45 qtagged forwarding
1/1/46 qtagged forwarding
1/1/47 qtagged forwarding
1/1/48 qtagged forwarding
1/1/49 qtagged inactive
1/1/50 qtagged inactive
1/1/51 qtagged forwarding
1/1/52 qtagged inactive

OMURGA-B.O-> show vlan 40 members
port type status
----------+-----------+---------------
1/1/1 qtagged forwarding
1/1/2 qtagged inactive
1/1/3 qtagged forwarding
1/1/4 qtagged inactive
1/1/5 qtagged inactive
1/1/6 qtagged inactive
1/1/7 qtagged forwarding
1/1/8 qtagged inactive
1/1/9 qtagged inactive
1/1/10 qtagged inactive
1/1/11 qtagged inactive
1/1/12 qtagged inactive
1/1/13 qtagged inactive
1/1/14 qtagged inactive
1/1/15 qtagged inactive
1/1/16 qtagged forwarding
1/1/17 qtagged inactive
1/1/18 qtagged inactive
1/1/19 qtagged forwarding
1/1/20 qtagged inactive
1/1/21 qtagged inactive
1/1/22 qtagged forwarding
1/1/23 qtagged inactive
1/1/24 qtagged inactive
1/1/25 qtagged inactive
1/1/26 qtagged inactive
1/1/27 qtagged inactive
1/1/28 qtagged forwarding
1/1/29 qtagged blocking
1/1/30 qtagged inactive
1/1/31 qtagged forwarding
1/1/32 qtagged forwarding
1/1/33 qtagged inactive
1/1/34 qtagged inactive
1/1/35 qtagged forwarding
1/1/36 qtagged forwarding
1/1/37 qtagged forwarding
1/1/38 qtagged forwarding
1/1/39 qtagged forwarding
1/1/40 qtagged forwarding
1/1/41 qtagged forwarding
1/1/42 qtagged forwarding
1/1/43 qtagged forwarding
1/1/44 qtagged forwarding
1/1/45 qtagged forwarding
1/1/46 qtagged forwarding
1/1/47 qtagged forwarding
1/1/48 qtagged forwarding
1/1/49 qtagged inactive
1/1/50 qtagged forwarding
1/1/51 qtagged inactive
1/1/52 qtagged inactive
Last edited by demfero46 on 13 Apr 2023 02:19, edited 2 times in total.
User avatar
Gleylancer
Member
Posts: 164
Joined: 08 May 2013 03:14

Re: Vlan Config 6860E & 6360

Post by Gleylancer »

switch name OS6860-48-A.0->10.5.200.150 - 1/1/50 <<<connected>>>> switch name 2 OMURGA-B.O->10.5.200.154 - 1/1/51

OS6860-48-A.0-> show vlan 40 members
port type status
----------+-----------+---------------
1/1/50 qtagged inactive

OMURGA-B.O-> show vlan 40 members
port type status
----------+-----------+---------------
1/1/51 qtagged inactive
demfero46

Re: Vlan Config 6860E & 6360

Post by demfero46 »

Gleylancer you are failed. switch belong this problem. actually problem uplink ports tagged untagged
User avatar
Gleylancer
Member
Posts: 164
Joined: 08 May 2013 03:14

Re: Vlan Config 6860E & 6360

Post by Gleylancer »

So now it is a tagging problem - when at the same time you posted evidence that this is a physical problem.

Image
demfero46

Re: Vlan Config 6860E & 6360

Post by demfero46 »

Gleylancer wrote: 13 Apr 2023 15:31 switch name OS6860-48-A.0->10.5.200.150 - 1/1/50 <<<connected>>>> switch name 2 OMURGA-B.O->10.5.200.154 - 1/1/51

OS6860-48-A.0-> show vlan 40 members
port type status
----------+-----------+---------------
1/1/50 qtagged inactive

OMURGA-B.O-> show vlan 40 members
port type status
----------+-----------+---------------
1/1/51 qtagged inactive
i dont understand this problem so cable fiber
Last edited by demfero46 on 14 Apr 2023 03:20, edited 1 time in total.
Post Reply

Return to “OmniSwitch 6860 / 6860E”