Can this topology change be triggered by adding/removing a VLAN from a trunk connected to an upstream switch? I was under the impression that the link that was shut will have to go through STP calculations, but not all other truck ports. Does this affect access ports without portfast setup?
spanning-tree calculations will run before transitioning to forwarding... but can't see how that affects local switch traffic between two ESX hosts. The truck PG that is connected to ESX does not go down when I shutdown the uplink or remove the VLAN in question from the uplink truck. However...
A little background on my infrastructure: I have 3 VMware ESX Servers, each with a 2 channel port group setup as a trunk on a 2-member 3570G stack. There is a VTP server upstream on a core switch, however we allow only a certain number of VLANs through the upstream trunk to the core switches...
Please share your thoughts and advice on the following network.
I just inherited a class c network (public IP addresses), split into three segments. The subnets are configured as follows:
x.x.70.0/25 - Server Network
x.x.70.64/25 - VPN Network
x.x.70.128/24 - User Network
This...
I have a Cisco 1800 router with a T1 serial interface and another interface setup with a cable modem. I have setup the cable modem interface as the backup and the T1 as the primary. I am using an SLA to rollover to backup interface in case of failure of the primary. I also setup a route map...
I put this question before Microsoft today, however I didn't receive an answer that made sense... imagine that. Here is the scenario:
**You have enabled Volume Shadow Copy Service
1. What happens when you first enable this service? Does it start tracking changes to the file system...
Thanks everyone... I think I got a clear explanation of PortFast and BPDUs. The network admin SHOULD drop portfast and disable bpduguard on this port. Also should have been a trunk port. I can't do anything about it though... time to rig with the bpdu filter :).
So what is spanning...
Thanks for the information. Makes sense now... shouldn't matter if the ports can support jumbo frames and I am only working with jumbo frames within my storage VLAN.
Lenny - With more thought on the situation, I have another question LOL. If I setup PortFast on my Public LAN interface and the interface on my SAN switch (Gi1/0/24). Assuming this swtich has BPDUguard enabled and then I filter BPPUs on my SAN switch interface (Gi1/0/24). How is the STP...
Lenny - Thanks for you advice regarding bridge protocol data unit filtering on Gi1/0/24... even though I didn't see this in the interface configuration I was given... must have been enabled globally. I am working with a LARGE University Network (Class B).... I don't have control over the...
I have two SVIs in this situation, what should the ACLs look like for these. I believe I want an ACL on the VLAN 500 interface that blocks incoming/outgoing traffic, but on VLAN 1 I don't know. Can you provide an example?
In regard to VLAN 1, I didn't think this was important. The link...
I put this on VLAN 500 so I can manage the switch from a host within my SAN network. Also, my EqualLogic device required a default gateway.
I did a "no ip routing" within the global configuration mode, however the running config did not reflect this command. Could it be that I download a...
The documentation for my EqualLogic SAN recommended that I didn't use STP on access ports. If I did use it, it suggests that I use portfast. I don't see a reason, as there will be no loops in this small network. In regard to VLAN 1, I had to disable spanning tree because the port on my Public...
Thanks for your feedback everyone. I am just trying to make sense of what the CCIE did so I can learn from it... don't want to bring him back if I don't have to.
I have attached my running configuration for my Cisco 3750G. A quick description of the configuration: I have several hosts and three iSCSI storage appliances that I want to isolate from my public LAN. However, I want to be able to access the management interface from my Public LAN. At the...
Message received. I brought in a CCIE to configure some network switches and then started to look over the configuration. Your explanation is consistent with my thoughts... I do comprehend what STP is and it's intended purpose. I wanted to seek clarification from the Hard Forum community...
I made a mistake in regard to my question about portfast and trunk ports. Why would you use portfast with a trunk port?
I will respond in detail after I digest the other posts.
Okay... why would you enable spanning-tree if you are using portfast? If I understand correctly there are 5-states a port can be in (blocking, listening, learning, forwarding, and disabled), portfast bypasses the listening and learning states to the forwarding state. If spanning tree was...
Thanks... going to add that command to my reference sheet. My thought was there was no need for portfast if setting a port to access disables STP. However, with the command you have given me I must have been misinformed.
Here is a sample of a configuration done by a "Cisco Engineer:"
interface GigabitEthernet0/7
switchport access vlan 343
switchport mode access
switchport nonegotiate
snmp trap mac-notification change added
snmp trap mac-notification change removed
no cdp enable
spanning-tree...
I am currently setting up an independent network for my SAN traffic. One of the recommendations from the manufacturer was to enable jumbo frames. On the 3750G it appears as though this must be done globally. I entered into priv exec mode and entered "system mtu jumbo 9000." After that I...
just2cool You mention that the example you wrote is missing something I cant see what. Can you explain? I have it working, had to disable spanning tree on the VLAN I setup up for the management interface (no span VLAN X) otherwise the port would be shutdown on the 2960 with portfast...
LOL... I am not sure what I want, I think I need to step back and review what I know and clearly don't know. I want to connect two switches (2960G and 3750G) so I can manage the switch from my Public LAN (maybe eventually route the SAN network down the road, not now), however I don't want any...
Also, what if I plug into an access port on the 2960G that already has the management VLAN assigned to it? Can you tell me why I need a trunk port rather than an access port with VLAN already assigned to inter connect the switches for management only? Are there settings I need to change to...
Thanks Vito. Can I choose any port on the 3750G for management? Do I need to use a crossover cable between a 3750G and the 2960G? You have been very helpful... I will report my findings tomorrow. Unfortunately I don't manage the 2960G but can interface with the folks that do to establish a...
My understanding is vague. Here is a better description of what I am trying to accomplish. I have purchased three iSCSI SANs and have four servers that will utilize this storage with dedicated NICs (4 ports/server). I want to build an isolated SAN network, however I would like to be able to...
Thanks Vito. Please post a template if its not too much trouble. How does Access Control Lists apply to this situation? In this situation the isolated switch (network) will be plugged into an access port on my 2960G (primary network). Can you provide a quick background (or point me in the...
Cisco novice here. I have two Cisco 3750s (stacked), and just performed an express setup to assign an IP address for management. Now I need to connect this switch to my primary network for management purposes only (not trying to cascade my primary network switch). I want the 3750's to be...
I need to build an AD to store 85-100 user accounts/passwords for 2-3 file servers I am setting up. Further, my clients are on public IP addresses that are DHCP-assigned. They would like to use remote desktop, however their IP address shifts time to time when the lease expires. So I need to...
Well the server needs to be accessible via the public IP, a public website will be hosted from their server. There will be a few local users connecting to the server as well. Can you please explain the concept of NAT... perhaps I am confused.
When you do a router/router tunnel, is routing...
When you say capable routers, you mean a router capable of terminating a VPN connection? I am not sure how routing is handled between these two differnet networks. At what point does a router become a gateway between these two networks?
No the router on the other end is not within my control. I work for a small research center within a University. If I did have a router capable of terminating a VPN connection, why do I need to NAT the server? I am not sure if I understand what you are saying? The single server, located at...
I am just starting to put together some ideas for an upcoming project. Basically I have a site with 16 client computers, connected to the internet with two DSL modems. I purchased the Linksys RV016 router to load balance between the two lines. This site will be accessing a server in a remote...