Re: VLAN Help



It woul be nice to see a graph of you topology, it doesn't seems very
clear how your network is setted up.

But, generally speaking you should, in you create a vlan which hold
the remote office LAN and add a port which will connect to this LAN
(you will probably want to do this at your core switch(es) ).
Once you do that you have to add a tagged port to the 2 VLANS (yours
and the remote). Once you do that the remote vlan will be able to
reach your network center (and vice versa) if you enable ipforwarding
between the 2 VLANS and appropiate ACLs or Firewall rules are in
place.

Regards,
Jaime

On 1/14/06, Brendan Zerr <bzerr@xxxxxxx> wrote:
> Hello, I was wondering if anybody had any experience setting up VLANs.
>
> Here is our situation: we have a client who would like to connect their
> remote offices to their corporate network via fibre, but this connection
> is not set up for internet access. We are wondering if there is a way
> to set up a VLAN from our network center to their remote office. Our
> network is a fixed wireless network, and at each tower station, there is
> a D-Link DES-3226 Layer 2 Switch.
>
> Our network center runs the same switch but the Layer 3 Version. These
> switches both support 802.1q VLANs. The radios at each tower station
> also support these VLANs. Is there any way we can configure all of these
> switches and/or radios to allow this setup?
>
> Also, the switches implement the VLANs by setting each specific port on
> the switch to be in one of 4 states: Non-Member, Tagged, Untagged and
> Forbidden. We have no clue what Non-Member and Forbidden mean but their
> functionality seems pretty self explanitory. Tagged means that the
> switch will insert the VLAN Id into the packets and Untagged means that
> ANY VLAN tag on the packet will be removed as to provide compatibility
> with devices that do not recognize VLANs. On each switch, they come
> loaded up with one VLAN 'default' with every port set to Untagged.
>
> Any insight or help would be greatly appreciated, Thanks
>
> --
> Brendan Zerr
> CCL Networks
> www.cclnetworks.com
>
>
> ---------------------------------------------------------------------------
> EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
> The Norwich University program offers unparalleled Infosec management
> education and the case study affords you unmatched consulting experience.
> Tailor your education to your own professional goals with degree
> customizations including Emergency Management, Business Continuity Planning,
> Computer Emergency Response Teams, and Digital Investigations.
>
> http://www.msia.norwich.edu/secfocus
> ----------------------------------------------------------------------------
>
>

---------------------------------------------------------------------------
EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The Norwich University program offers unparalleled Infosec management
education and the case study affords you unmatched consulting experience.
Tailor your education to your own professional goals with degree
customizations including Emergency Management, Business Continuity Planning,
Computer Emergency Response Teams, and Digital Investigations.

http://www.msia.norwich.edu/secfocus
----------------------------------------------------------------------------



Relevant Pages

  • Re: Catalyst 3750G / Network design question
    ... that is - two static VLANs. ... stub routing and other L3 features not needed where a basic L2 switch will ... getting back to the security .. ... While I'm a 'network engineer' by profession and my job doesn't involve ...
    (comp.dcom.sys.cisco)
  • RE: RE: Pros and against using Multiple firewalls in a network ru nning on Win2k Advanced server.(re
    ... Pros and against using Multiple firewalls in a network ru nning on Win2k Advanced server.(repost.. ... slackware for my server setups, so I haven't run into any problems on that ... that is usually handled by a switch. ... The vlans were all set up before I came ...
    (Focus-Microsoft)
  • VLANS in a DMZ - good idea?
    ... I am looking to setup a new perimeter network for a client and am ... VLANS setup on the switch and equally Firewall 2 will only allow ...
    (comp.security.firewalls)
  • Re: To vlan or not to vlan, thats the question
    ... > divide the network in two, ... Unless you will now or in the near future implement vlans there is no ... routers to route traffic _between_ different vlans as well as switches ... opposed to conventional switching. ...
    (comp.os.linux.networking)
  • High end network routing,
    ... network that i need to subnet and seperate out into VLANS and I want to ... What I'm thinking about doing is setting up a Linux box ... Foundry switch is telling me that the new switch will route at 'wire' ...
    (RedHat)