Quantcast
Channel: PowerConnect Forum - Recent Threads
Viewing all 2954 articles
Browse latest View live

Implementing Sonic firewall TZ 170SP

$
0
0

In my company the present ISP setup is  Dlink adsl2+ router to switch and then local computer and laptops(WIFI) now i need to implement sonicwall firewall TZ170 SP for WAN  Security and local access rights,

From ISP We bought static IP and that thing is configured on Dlink router and DVR, HTTP, FTP Port forwarding and wifi setup are configured on that router . so pls help me how to connect sonicwall between router and switch without affecting the current setup


Powerconnect N3048P and ESXi 5.1 LAG setup

$
0
0

Hi,

I bought 3X Powerconnect N3048P Switches and want to set these up with ESXi 5.1 but I am new to Dell switches and have a few questions.

What I am trying to achieve is:

I have 3X Poweredge R710 servers with 4Nics each

In VMWare I have 1 vSwitch and I want to have all 4 Nics added to this Vswitch as Nic Teaming. (Multiple VLans but that should be easy to setup)

The 3 X N3048P switches are in a stack.

Now Dell best practise describes that the cabling should look as follows:

Server 1: Nic 1 + 2 go to Switch 1

Server 1: Nic 3 + 4 go to Switch 2

Server 2: Nic 1 + 2 go to Switch 2

Server 2: Nic 3 + 4 go to Switch 3

Server 3: Nic 1 + 2 go to Switch 3

Server 3: Nic 3 + 4 go to Switch 1

How do I set up the LAG's on the Dell switches?

Do I create 3 LAGS on each switch? And If I create LAG1, LAG2 and LAG3 on switch1  do I use the same LAG ID on switch 2 and switch 3?

If it is the same LAG ID do I then connect Server 1 Nic 1 + 2 to LAG1 on switch 1 and server 1 NIC 3 + 4 to LAG1 on Switch 2 and so on?

I have added a simple drawing below. Excuse the looks it was done in paint.

I hope you understand what I am trying to achieve?

Thanks in advance.

PowerConnect 2824 Guest VLAN

$
0
0

So, I have read through the documentation and I am still unclear on how the Guest VLAN works on the 2824.

What is the catalyst (no pun intended) to push a client into the Guest VLAN? Failure to authenticate via RADIUS 802.1x?

thrilling message from my stack of 8164F switch

$
0
0

hi 

since several days i have the followingmessages from my stack of 8164F 

broad_hpc_drv.c(4362) 26845 %% _soc_xgs3_mem_dma: FP_TCAM.ipipe0 fa
iled(NAK)

should i worry about that?

these switchs are involved in long term computation and i would prefer reload the stack only in case

of emergency.

The firmware of the switch is  6.0.1.3

5424 Configuration with iSCSI and failover

$
0
0
I’m setting up a recovery site for our company’s production servers (small company in the same building with recovery site on the opposite side) which will be using 2x power connect 5424 switches, 2x Dell PowerEdge 2950 servers running VMware ESX, and 2 Dell Equal logic PS4000 SANs. I’ve configured the 2x 5424 switches for 2 vlans and a LAG group (vlan 100-Management on ports 1-2, vlan 200-iSCSI with jumbo frames turned on using ports 3-22, LAG on ports 23-24). Since I am new to this, I would like to see if this configuration is correct or if there are any changes that need to be made? The intention is for the LAG to be used for fail over since these switches don’t have the stacking module. Thanks for your help. ///////////////////////////////// 5424 Config ///////////////////////////////// RS_5424-1# RS_5424-1# show run spanning-tree mode rstp interface range ethernet g(3-22) spanning-tree portfast exit interface range ethernet g(1-2) description 'Management' exit interface range ethernet g(3-22) description 'iSCSI' exit interface range ethernet g(3-22) flowcontrol on exit port jumbo-frame interface port-channel 1 switchport mode trunk exit vlan database vlan 100,200 exit interface range ethernet g(1-2) switchport access vlan 100 exit interface port-channel 1 switchport trunk allowed vlan add 100 exit interface port-channel 1 switchport trunk allowed vlan add 200 exit interface vlan 200 name iSCSI exit interface range ethernet g(23-24) channel-group 1 mode on exit interface vlan 100 ip address 192.#.#.# (subnet_mask) exit ip default-gateway 192.#.#.# hostname RS_5424-1 line telnet password xxxxxxxxxxxxxx encrypted exit username admin password xxxxxxxxxxxxx level 15 encrypted clock timezone -5 clock summer-time recurring usa zone utc Default settings: Service tag: ????? SW version 2.0.0.46 (date 14-Apr-2011 time 13:10:53) Gigabit Ethernet Ports ============================= no shutdown speed 1000 duplex full negotiation flow-control off mdix auto no back-pressure interface vlan 1 interface port-channel 1 - 8 spanning-tree spanning-tree mode STP qos basic qos trust cos RS_5424-1# RS_5424-1#

PowerConnect 7024 - IPv6 route issue

$
0
0

I have IPv6 route issue from SonicWall to server of 1 VLAN in L3 switch.

Sonicwall
WAN: 2403:b100:1001:7::2/126
LAN: 2403:b100:1012::1/64
Static route: 2403:b100:1012:1::/64 2403:b100:1012::4/128

L3 switch
VLAN 100: 2403:b100:1012::4/64
VLAN 1: 2403:b100:1012:1::1/64
Static route: ::/0 2403:b100:1012::1/128

Server IP
2403:b100:1012:1::2/64

Ping testing result
From sonicwall:-
Can ping 2403:b100:1001:7::2, 2403:b100:1012::1, 2403:b100:1012::4, 2403:b100:1012:1::1 and 2001:4860:4860::8888(google DNS).
Cannot ping 2403:b100:1012:1::2

From L3 switch:-
Can ping 2403:b100:1001:7::1, 2403:b100:1012::1, 2403:b100:1012::4, 2403:b100:1012:1::1, 2403:b100:1012:1::2 and 2001:4860:4860::8888(google DNS). All passed.

From Server IP:-
Can ping 2403:b100:1012:1::2, 2403:b100:1012:1::1 and 2403:b100:1012::4
Cannot ping 2403:b100:1012::1, 2403:b100:1001:7::1 and 2001:4860:4860::8888(google DNS).

Force10 vlan exclusivity?

$
0
0

I had a whale of a Saturday in in my COLO today trying (and failing) to complete what should have been a very simple task.  I still do not understand why this happened, or how to fix it, but here it is.


Equipment setup:

Stacked Force10 MXL switches inside an M1000e chassis with VMware ESXi 5.5 cluster on the inside backed by the Equallogis M4001x storage set.

3 Blade servers inside all running NPAR so all inernal links are tagged.

I have been running 4 vlans forever: 1.Internal networking for virtual hosts. 2.ISCSI 3.Vmotion 4.External connectivity with other hosts on outside LAN subnets.  This is fine, and dandy.  I need to set up some connectivity to the Internet now, and Have added a 5th VLAN to my stack, and tagged the ports appropriately in bring the connectivity "inside" to the VM that needs the external connection.  Simple.  Now:

VLAN 10. Is Vmotion

VLAN 20 is iSCSI

VLAN 100 is my internal LAN

VLAN 200 is external LAN subnets

VLAN 300 is Internet,

Here it comes....when I plug in the cable (VLAN300) between my Internet switch, and the MXL the Internet comes up..HOORAY!

AND....(VLAN200) is unreachable.  Now I can SSH into my M1000e, but  cannot reach it from inside the organization.

Until - I unplug the cable leading to VLAN200 and then plug it back in then...VLAN200 becomes reachable, but VLAN300 is now inaccessable. 

I tested this 9 ways to Saturday night today, and this is all I have learned.  I cannot find any logging on the MXL stack that will give me a clue as to why this is happening, nor can I explain this myself.  I have ancient HP switches that can handle this kind of connectivity, but these cutting edge interconnects from Force10 cannot?  What gives?

Is there a maxvlans setting on these things that just will not allow those two external/internal vlans to exist together? 

Anyone seen anything like this?  I plan on calling DELL support about this first thing Monday if I can't get any help here.  Thanks for any comments you leave me.

SSH login on PowerConnect 5524/5548

$
0
0

I either able to make the SSH works with password / private key authentication, but not both.

Is there any way to do so?

User A is authenticated by password
UserB is authenticated by key

Thank you.

Brian


strange PoE problem

$
0
0

hi there,

We have just replaced our switches with an n4032 in the core and a number of stacked 2048p's for distribution.

I have seen a strange problem whereby some PoE phones will not work when plugged into one switch (i.e. the port won't light up) but does work when plugged into another. 

The power consumption is nowhere near the limit so I am confused why this would happen? Can anyone suggest what might be causing this?

Cheers,

Huw

M6220 vlan routing

$
0
0

Hi,

I'm getting crazy while trying to setup VLAN routing on 2 stacked M6220.

I have 2 M6220 in a blade chassis. They are stacked together and connected to 10 blades.

I upgraded their firmware : they are now running version 5.1.4.5

I have setup 2 VLANs, default (1) and 200.

the internet gateway is 10.0.104.254 (default VLAN 1). I want to be able to access internet from VLAN 200, so i try to setup VLAN routing. First i've tried to do this from the web UI (this seemed simple, i followed the Dell Powerconnect M6220 configuration guide which says i need to enable IP routing and i need to assign each VLAN an IP interface). This was not successful.

Now i'm looking into the forum, and i found some instructions about how to setup VLAN routing from CLI.
 I'm supposed to do something like :

config
interface vlan 200
routing
ip address 192.168.200.254 255.255.255.0


well, the "routing" command does not exist. The prompt says :

SW1(config-if-vlan200)#routing
                                            ^
% Invalid input detected at '^' marker.

Anybody knows what i'm doing wrong ?

DELL Force10 S4810T Management Port

$
0
0

Hello Everyone


I have two DELL Force10 S4810 Network switches.

On both switches I got the following 2 VLANS defined

The management ports of the switches are connected to the other switch.


VLAN 11 (router ip 10.16.1.1/24) - vlan for management interfaces (dracs, etc)

VLAN 13 (router ip 10.16.3.1/24) - vlan for servers

I set the ip address of the management port to 10.16.2.2 or 10.16.2.3 (depending on switch).

Which management port route do I need to specify to make the management port accessible from 10.16.1.x and 10.16.3.x?


Right now they are not accessible. I will go to the datacenter and dump the config of both switches and post it here.

7048 and vlan routing

$
0
0

Hello,

First off, I am new to this and secondly, I have searched high and low for a solution and I have found several in the forum and in the manual. None work - so I am missing something.

I have a 7048p switch with firmware 5.1.4.5

I am trying to set up several vlans - but I can't get even one to access the internet via the other. running config is :

console(config)#show running-config

!Current Configuration:
!System Description "PowerConnect 7048P, 5.1.4.5, VxWorks 6.6"
!System Software Version 5.1.4.5
!System Operational Mode "Normal"
!
configure
vlan 2,10
exit
vlan 2
name "EXIT_VLAN"
exit
vlan 10
name "DATA_VLAN"
exit
slot 1/0 6    ! PowerConnect 7048P
stack
member 1 6    ! PCT7048P
exit
ip routing
ip route 0.0.0.0 0.0.0.0 192.168.2.1
interface vlan 2
ip address 192.168.2.2 255.255.255.0
exit
interface vlan 10
ip address 192.168.10.1 255.255.255.0
exit
!
interface Gi1/0/3
switchport access vlan 10
exit
!
interface Gi1/0/48
switchport access vlan 2
exit
snmp-server engineid local 800002a2035c260acfbbb2
exit

console(config)#ex

console#ping 4.2.2.2
 Pinging 4.2.2.2 with 0 bytes of data:

Reply From 4.2.2.2: icmp_seq = 0. time= 40000 usec.
Reply From 4.2.2.2: icmp_seq = 1. time= 30000 usec.
Reply From 4.2.2.2: icmp_seq = 2. time= 30000 usec.
Reply From 4.2.2.2: icmp_seq = 3. time= 30000 usec.

----4.2.2.2 PING statistics----
4 packets transmitted, 4 packets received, 0% packet loss
round-trip (msec) min/avg/max = 30/32/40

console#show ip route

Route Codes: R - RIP Derived, O - OSPF Derived, C - Connected, S - Static
       B - BGP Derived, IA - OSPF Inter Area
       E1 - OSPF External Type 1, E2 - OSPF External Type 2
       N1 - OSPF NSSA External Type 1, N2 - OSPF NSSA External Type 2

Default Gateway is 192.168.2.1

S      0.0.0.0/0 [1/0] via 192.168.2.1,   Vl2
C      192.168.2.0/24 [0/1] directly connected,   Vl2
C      192.168.10.0/24 [0/1] directly connected,   Vl10

console#

From a host with ip 192.168.10.25 on gi1/0/3 (access vlan 10)  i can ping 192.168.10.1 (vlan 10 interface) and even 192.168.2.2 (vlan 2 interface) but I can't get to the router at 192.168.2.1 or 4.2.2.2.

I seem to be missing how to send trafic out gi1/0/48 (access vlan 2) from vlan 10.

Thanks in advance for help. I have banged my head on this for two days now!

Powerconnect 6248's, RADIUS and selected method issues

$
0
0
I feel this should be pretty straight forward but isn't working out so. I have multiple 6248's and a handful of other PC switches and I am deploying RADIUS as the primary authentication mechanism. I am going through a couple of trial runs here and one simple thing just isn't working out that way. For the networklist profile I set RADIUS first as the selection method then LOCAL for the second. The RADIUS user authenticates just fine but when trying to lookup the LOCAL user, it is rejected. I thought if the local user isn't found per the RADIUS policy it is sent to the next method? I am only using the telnet method for now before changing the HTTP methods. Any thoughts would be appreciated. Thanks!

S4820T ACL

$
0
0

Hi all

Does anyone knows how many ACEs per ACL in S4820T? 

I found the text on document.

"The number of ACLs supported on a system depends on your content addressable memory (CAM) size. "

I wonder will more ACEs per ACL  consume more CAM size?

Many Thanks.

Poweredge vrtx i/o module configuration

$
0
0

Hi,

I am working on a Dell Poweredge VRTX and trying to connect the blades to the outer switch.

The model of the switch (VRTX 1Gb R1-2401 switch module) with p/n:<ADMIN NOTE: Service tag removed as per privacy policy>

When you check the network adapters on blade servers it shows connected but cannot pick up an IP on my DHCP network.

Kindly assist.

Anim


problems addin vlan interface

$
0
0

hi 

i have a problem with my powerconnect 8164F with 6.1.0.1 version

i create the vlan 643

then i create an interface vlan

interface vlan 643
ip address 172.24.64.2 255.255.240.0
exit

put when i ping this ip from the switch

ping 172.24.64.2
Pinging 172.24.64.2 with 0 bytes of data:

4 packets transmitted, 0 packets received, 100% packet loss
round-trip (msec) min/avg/max = <10/<10/<10

in the log i have the following line

<173> Jun 11 14:39:29 172.16.8.100-2 TRAPMGR[1206213340]: traputil.c(697) 1604 %% Link on Vl643 is failed

show ip interface vlan 643

Routing interface status....................... Down
Primary IP Address............................. 172.24.64.2/255.255.240.0
Method......................................... Manual
Routing Mode................................... Enable
Administrative Mode............................ Enable
Forward Net Directed Broadcasts................ Disable
Proxy ARP...................................... Enable
Local Proxy ARP................................ Disable
Active State................................... Inactive
MAC Address.................................... D067.E595.0B1A
Encapsulation Type............................. Ethernet
IP MTU......................................... 1500
Bandwidth...................................... 10000 kbps
Destination Unreachables....................... Enabled
ICMP Redirects................................. Enabled

that really puzzling me

Powerconnect 5500 / Force10 S4810 MTU settings

$
0
0

This is likely a noob question so forgive me, but I can't find the answer anywhere.  I am in the process of setting up vCloud Director and in a number of places it mentions:  "Physical infrastructure MTU must be at least 50 bytes more than the MTU of the virtual machine vNIC"

My problem is that I can't figure out what the MTU settings on these switches are currently and how I can change them to appropriately match what I need in the vShield environment?

Hopefully this makes sense!

Thanks!

Powerconnect 8000 series routing question

$
0
0

We're using a Dell powerconnect 8132F as a core switch, and we've got 2 different firewalls (In this example firewall1 and firewall2, each with their own internet conenctions.

Each firewall sits on a different vlan, in this example, 1 and 20. We need clients on vlan 1 to route out to the internet via firewall1, and clients on vlan20 to route out to the internet on firewall2.

Now at the moment, clients that sit on VLAN 1 are using our VLAN 1 switch IP (192.168.1.249) as the default gateway on their machines, and the switch is routing this then to firewall1 using the below command:

ip route 0.0.0.0 0.0.0.0 192.168.1.254

That works fine, clients are able to access the internet, and devices on some of our other vlans.

Now on VLAN 20, firewall2 has the IP 10.106.0.254, and the switch has 10.106.50.249, and at the moment on that VLAN, clients are using firewall 2's IP address as their default gateway.

We want the client gateway to be the switch VLAN 20 IP, and route out to the internet on 10.106.50.254.

How can we configure this?

Thanks.

6248 VLAN not getting DHCP scope

$
0
0

I have created two new DHCP scopes in my windows server 2003:

192.168.2.0 - Public, and
192.168.3.0 - VOIP.

This DHCP server is connected to a Dell powerconnect 2708, which is connected to our new powerconnect 6248P via fiber point to point.

In the new network computers on the default VLAN 1 are correctly being assigned IPs as they connect.

I have issued the following commands to the 6248's CLI:

enable
configure
vlan database
vlan 20
vlan 30
exit

configure
interface range ethernet 1/g1-1/g2
switchport mode general
switchport general allowed vlan add 20
switchport general pvid 20
dhcp l2relay
exit

configure
interface range ethernet 1/g3-1/g6
switchport mode general
switchport general allowed vlan add 30
switchport general pvid 30
dhcp l2relay
exit

interface ethernet 1/g11
switchport mode general
switchport general allowed vlan add 20
switchport general allowed vlan add 30
dhcp l2relay
exit

configure
interface vlan 20
name "PUBLIC"
routing
ip address 192.168.2.1 255.255.255.0
ip helper-address 192.168.1.150
exit

configure
interface vlan 30
name "VOIP"
routing
ip address 192.168.3.1 255.255.255
ip helper-address 192.168.1.150
exit

ip routing

I have also tagged all traffic on VLAN 20 and VLAN 30 on ports 1/g11 (6248) and port 2 (2708). VLAN 1 access has been removed from ports 1/g1 - 1/g6 (6248)


Everything appears to have been set correctly, but I am unable to get any answer from the DHCP server on any ports attached to VLAN 20. Is the powerconnect 2708 unable to pass the relay to the server? Is it possible something is getting dropped in the point to point?


I'd greatly appreciate any comments or suggestions, thanks!

N2000 SFP+ ports

$
0
0

Is it supported to connect hosts directly to N2000 switch using SFP+ ports?

Viewing all 2954 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>