VLAN help (HP Switch)VLAN for WiFi traffic separation (new to VLANing)What happens when a consumer switch receives a VLAN-tagged Ethernet frame?vlan switch port modesVlan Tagging at Access Port in SwitchDifference between trunk and tagged portConfiguring VLANs on HP 1910 switchTrunk port needs to be tagged or untagged?Switch port VLAN configurationVLANs and Access PointVLAN “trunking” with 2 ZyXEL GS1920-48HP

Proving that a Russian cryptographic standard is too structured

How creative should the DM let an artificer be in terms of what they can build?

Is it safe to change the harddrive power feature so that it never turns off?

Should I refuse being named as co-author of a bad quality paper?

How can one's career as a reviewer be ended?

Increase speed altering column on large table to NON NULL

Russian word for a male zebra

Code downloads a text file from a website, saves it to local disk, and then loads it into a list for further processing

Does Assassinate grant two attacks?

How can I remove material from this wood beam?

If I leave the US through an airport, do I have to return through the same airport?

Fermat's statement about the ancients: How serious was he?

Why was this person allowed to become Grand Maester?

How can I deal with uncomfortable silence from my partner?

My boss want to get rid of me - what should I do?

Why do American speakers pronounce "the" as "/ðə/" before vowels?

What would be the way to say "just saying" in German? (Not the literal translation)

Is using 'echo' to display attacker-controlled data on the terminal dangerous?

Creating an Output vs. snipping tool

Printing Pascal’s triangle for n number of rows in Python

If there's something that implicates the president why is there then a national security issue? (John Dowd)

How to make insert mode mapping count as multiple undos?

How to communicate to my GM that not being allowed to use stealth isn't fun for me?

Generate basis elements of the Steenrod algebra



VLAN help (HP Switch)


VLAN for WiFi traffic separation (new to VLANing)What happens when a consumer switch receives a VLAN-tagged Ethernet frame?vlan switch port modesVlan Tagging at Access Port in SwitchDifference between trunk and tagged portConfiguring VLANs on HP 1910 switchTrunk port needs to be tagged or untagged?Switch port VLAN configurationVLANs and Access PointVLAN “trunking” with 2 ZyXEL GS1920-48HP






.everyoneloves__top-leaderboard:empty,.everyoneloves__mid-leaderboard:empty,.everyoneloves__bot-mid-leaderboard:empty height:90px;width:728px;box-sizing:border-box;








1















First off, thank you all very much for taking the time to read my post, I am hoping for some help!



I was hoping to get some help with getting the configs right for my network switches. I don't believe my issue is directly related to the vlans in my pfSense setup, rather my network switches, but please let me know your thoughts.



To make it simple, I will only use two switches, and once this is working, I can make the same changes for the third switch. I'm pretty sure my issue is that I am not understanding vlan tagging properly, so I was looking for some guidance. The goal is to ultimately segment my network and get the vlans working properly. I have security cameras I would like to put on their own segment, as well as some Access points I would also like to setup guest access for my wireless network. I also have a VLAN setup for IOT devices.



Currently, I am just untagging all ports on all switches on my default vlan, and allowing all traffic through for everything, until I can get things working properly. I have been tinkering with things for awhile now, but can't seem to get it working.



======================================================================



Key information:



Router = pfSense
All network switches = HP Procurve Switches (model 2530) one is a 24port GB switch, the other is 24port PoE.



I have a total of 5 vlans configured on all switches and in the router, the "default_vlan" is not being used (per best practice).



======================================================================



Here is the setup:



I am using a pfSense firewall and I have all vlans configured correctly on the router from what I can tell, the network interface from the firewall appliance is plugged into port 1 on switch01. Port 24 on switch01 is configured as a trunk port and is plugged into port 23 on switch02.



I will post the configs for both switches below, but wanted you to be aware of what the main ports are for. You will see below in the configs, but in my testing I just patched in a laptop to Port 1 on switch02 just to see if I can pull a dhcp address for it (only able to pull an IP from my default vlan). That particular vlan I was tinkering with is titled WIFI, so I just wanted to point out this out so there isn't any confusion, while you're looking at my config.



Here are the current configs for my switches, after I've made some additional changes. I do realize that I don't need to have the IP's listed in there for each vlan, and can remove them to simplify things further, but I wanted to put them in there just to test, and rule that out.



======================================================================
Switch01:
======================================================================
HP-SW-01# show running-config

Running configuration:

; J9776A Configuration Editor; Created on release #YA.15.17.0007
hostname "HP-SW-01"

ip default-gateway 10.10.1.1

snmp-server community "public" unrestricted

vlan 1
name "DEFAULT_VLAN"
no untagged 1-28
ip address dhcp-bootp
exit

vlan 100
name "100-DEFAULT"
untagged 1-28
ip address dhcp-bootp
exit

vlan 200
name "200-CAMERAS"
tagged 1,24
ip address 10.10.2.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 300
name "300-GUESTWIFI"
tagged 1,24
ip address 10.10.3.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 400
name "400-WIFI"
tagged 1,24
ip address 10.10.4.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 500
name "500-IOT"
tagged 1,24
ip address 10.10.5.1 255.255.255.0
ip helper-address 10.10.1.1
exit
primary-vlan 100


======================================================================
Switch02:
======================================================================
HP-SW-02# show running-config

Running configuration:

; J9773A Configuration Editor; Created on release #YA.15.12.0007
hostname "HP-SW-02"

ip default-gateway 10.10.1.1

snmp-server community "public" unrestricted

vlan 1
name "DEFAULT_VLAN"
no untagged 1-28
no ip address
exit

vlan 100
name "100-DEFAULT"
untagged 2-28
ip address 10.10.1.6 255.255.255.0
exit

vlan 200
name "200-CAMERAS"
tagged 23
ip address 10.10.2.1 255.255.255.0
exit

vlan 300
name "300-GUESTWIFI"
tagged 23
ip address 10.10.3.1 255.255.255.0
exit

vlan 400
name "400-WIFI"
tagged 1,23
ip address 10.10.4.1 255.255.255.0
exit

vlan 500
name "500-IOT"
tagged 23
ip address 10.10.5.1 255.255.255.0
exit

primary-vlan 100


======================================================================
On the pfSense (router) side:
======================================================================
All VLans are configured in the VLANs section using the same VLAN tag, and even the description (although that shouldn't matter). While I do have additional NIC ports on my firewall, I am not physically segmenting this off at the moment, rather I am using the lan port interface for each of the vlans.



======================================================================



Here are a few questions I had, that may help me get a better understanding of what I'm missing:



  1. I "presume" that the port that my router plugs into on switch01 should be a trunk port, but do all of the vlans need to be tagged (including the default vlan)? I currently have it setup so that the default vlan is untagged and all other vlans are tagged. I've tried changing this port to have all vlans being tagged (as I thought was the correct way), but then I lose connection to the internet on my main desktop that is plugged into a port on switch01 (not the laptop I'm testing on port1 above).


  2. Same question as above for all trunk ports. So port 24 on switch01 that connects to port 23 on switch02 should be my trunk port, do all vlans here need to be tagged, because I currently have the default vlan untagged (this is the only way I can get traffic to pass to the second switch) and all other vlans are configured as just tagged.


  3. The laptop that I'm using to test if I can pull a dhcp address on that is plugged into port 1 on switch02, should the default vlan be set to "no" and should I be just tagging that port on the WIFI vlan, or does the default vlan need to remain as untagged, while the WIFI vlan should be set to Tagged? My understanding is that you only want to tag the switch port on the vlan you want it to communicate with.


Apologies for these dumb questions, but I am having a difficult time getting things to work here. I have tried so many scenarios, but can't seem to get anything to work.



Thanks for any assistance on this! I really appreciate any help here!










share|improve this question



















  • 2





    Having the same IP address on two different switch interfaces is causing problems

    – Ron Trunk
    May 24 at 14:48











  • Rule of thumb: untag to your default vlan (e.g cctv camera on vlan 200 would have its port untagged vlan200). Trunk ports tag all VLANs.

    – Timothy Frew
    May 24 at 18:09

















1















First off, thank you all very much for taking the time to read my post, I am hoping for some help!



I was hoping to get some help with getting the configs right for my network switches. I don't believe my issue is directly related to the vlans in my pfSense setup, rather my network switches, but please let me know your thoughts.



To make it simple, I will only use two switches, and once this is working, I can make the same changes for the third switch. I'm pretty sure my issue is that I am not understanding vlan tagging properly, so I was looking for some guidance. The goal is to ultimately segment my network and get the vlans working properly. I have security cameras I would like to put on their own segment, as well as some Access points I would also like to setup guest access for my wireless network. I also have a VLAN setup for IOT devices.



Currently, I am just untagging all ports on all switches on my default vlan, and allowing all traffic through for everything, until I can get things working properly. I have been tinkering with things for awhile now, but can't seem to get it working.



======================================================================



Key information:



Router = pfSense
All network switches = HP Procurve Switches (model 2530) one is a 24port GB switch, the other is 24port PoE.



I have a total of 5 vlans configured on all switches and in the router, the "default_vlan" is not being used (per best practice).



======================================================================



Here is the setup:



I am using a pfSense firewall and I have all vlans configured correctly on the router from what I can tell, the network interface from the firewall appliance is plugged into port 1 on switch01. Port 24 on switch01 is configured as a trunk port and is plugged into port 23 on switch02.



I will post the configs for both switches below, but wanted you to be aware of what the main ports are for. You will see below in the configs, but in my testing I just patched in a laptop to Port 1 on switch02 just to see if I can pull a dhcp address for it (only able to pull an IP from my default vlan). That particular vlan I was tinkering with is titled WIFI, so I just wanted to point out this out so there isn't any confusion, while you're looking at my config.



Here are the current configs for my switches, after I've made some additional changes. I do realize that I don't need to have the IP's listed in there for each vlan, and can remove them to simplify things further, but I wanted to put them in there just to test, and rule that out.



======================================================================
Switch01:
======================================================================
HP-SW-01# show running-config

Running configuration:

; J9776A Configuration Editor; Created on release #YA.15.17.0007
hostname "HP-SW-01"

ip default-gateway 10.10.1.1

snmp-server community "public" unrestricted

vlan 1
name "DEFAULT_VLAN"
no untagged 1-28
ip address dhcp-bootp
exit

vlan 100
name "100-DEFAULT"
untagged 1-28
ip address dhcp-bootp
exit

vlan 200
name "200-CAMERAS"
tagged 1,24
ip address 10.10.2.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 300
name "300-GUESTWIFI"
tagged 1,24
ip address 10.10.3.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 400
name "400-WIFI"
tagged 1,24
ip address 10.10.4.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 500
name "500-IOT"
tagged 1,24
ip address 10.10.5.1 255.255.255.0
ip helper-address 10.10.1.1
exit
primary-vlan 100


======================================================================
Switch02:
======================================================================
HP-SW-02# show running-config

Running configuration:

; J9773A Configuration Editor; Created on release #YA.15.12.0007
hostname "HP-SW-02"

ip default-gateway 10.10.1.1

snmp-server community "public" unrestricted

vlan 1
name "DEFAULT_VLAN"
no untagged 1-28
no ip address
exit

vlan 100
name "100-DEFAULT"
untagged 2-28
ip address 10.10.1.6 255.255.255.0
exit

vlan 200
name "200-CAMERAS"
tagged 23
ip address 10.10.2.1 255.255.255.0
exit

vlan 300
name "300-GUESTWIFI"
tagged 23
ip address 10.10.3.1 255.255.255.0
exit

vlan 400
name "400-WIFI"
tagged 1,23
ip address 10.10.4.1 255.255.255.0
exit

vlan 500
name "500-IOT"
tagged 23
ip address 10.10.5.1 255.255.255.0
exit

primary-vlan 100


======================================================================
On the pfSense (router) side:
======================================================================
All VLans are configured in the VLANs section using the same VLAN tag, and even the description (although that shouldn't matter). While I do have additional NIC ports on my firewall, I am not physically segmenting this off at the moment, rather I am using the lan port interface for each of the vlans.



======================================================================



Here are a few questions I had, that may help me get a better understanding of what I'm missing:



  1. I "presume" that the port that my router plugs into on switch01 should be a trunk port, but do all of the vlans need to be tagged (including the default vlan)? I currently have it setup so that the default vlan is untagged and all other vlans are tagged. I've tried changing this port to have all vlans being tagged (as I thought was the correct way), but then I lose connection to the internet on my main desktop that is plugged into a port on switch01 (not the laptop I'm testing on port1 above).


  2. Same question as above for all trunk ports. So port 24 on switch01 that connects to port 23 on switch02 should be my trunk port, do all vlans here need to be tagged, because I currently have the default vlan untagged (this is the only way I can get traffic to pass to the second switch) and all other vlans are configured as just tagged.


  3. The laptop that I'm using to test if I can pull a dhcp address on that is plugged into port 1 on switch02, should the default vlan be set to "no" and should I be just tagging that port on the WIFI vlan, or does the default vlan need to remain as untagged, while the WIFI vlan should be set to Tagged? My understanding is that you only want to tag the switch port on the vlan you want it to communicate with.


Apologies for these dumb questions, but I am having a difficult time getting things to work here. I have tried so many scenarios, but can't seem to get anything to work.



Thanks for any assistance on this! I really appreciate any help here!










share|improve this question



















  • 2





    Having the same IP address on two different switch interfaces is causing problems

    – Ron Trunk
    May 24 at 14:48











  • Rule of thumb: untag to your default vlan (e.g cctv camera on vlan 200 would have its port untagged vlan200). Trunk ports tag all VLANs.

    – Timothy Frew
    May 24 at 18:09













1












1








1








First off, thank you all very much for taking the time to read my post, I am hoping for some help!



I was hoping to get some help with getting the configs right for my network switches. I don't believe my issue is directly related to the vlans in my pfSense setup, rather my network switches, but please let me know your thoughts.



To make it simple, I will only use two switches, and once this is working, I can make the same changes for the third switch. I'm pretty sure my issue is that I am not understanding vlan tagging properly, so I was looking for some guidance. The goal is to ultimately segment my network and get the vlans working properly. I have security cameras I would like to put on their own segment, as well as some Access points I would also like to setup guest access for my wireless network. I also have a VLAN setup for IOT devices.



Currently, I am just untagging all ports on all switches on my default vlan, and allowing all traffic through for everything, until I can get things working properly. I have been tinkering with things for awhile now, but can't seem to get it working.



======================================================================



Key information:



Router = pfSense
All network switches = HP Procurve Switches (model 2530) one is a 24port GB switch, the other is 24port PoE.



I have a total of 5 vlans configured on all switches and in the router, the "default_vlan" is not being used (per best practice).



======================================================================



Here is the setup:



I am using a pfSense firewall and I have all vlans configured correctly on the router from what I can tell, the network interface from the firewall appliance is plugged into port 1 on switch01. Port 24 on switch01 is configured as a trunk port and is plugged into port 23 on switch02.



I will post the configs for both switches below, but wanted you to be aware of what the main ports are for. You will see below in the configs, but in my testing I just patched in a laptop to Port 1 on switch02 just to see if I can pull a dhcp address for it (only able to pull an IP from my default vlan). That particular vlan I was tinkering with is titled WIFI, so I just wanted to point out this out so there isn't any confusion, while you're looking at my config.



Here are the current configs for my switches, after I've made some additional changes. I do realize that I don't need to have the IP's listed in there for each vlan, and can remove them to simplify things further, but I wanted to put them in there just to test, and rule that out.



======================================================================
Switch01:
======================================================================
HP-SW-01# show running-config

Running configuration:

; J9776A Configuration Editor; Created on release #YA.15.17.0007
hostname "HP-SW-01"

ip default-gateway 10.10.1.1

snmp-server community "public" unrestricted

vlan 1
name "DEFAULT_VLAN"
no untagged 1-28
ip address dhcp-bootp
exit

vlan 100
name "100-DEFAULT"
untagged 1-28
ip address dhcp-bootp
exit

vlan 200
name "200-CAMERAS"
tagged 1,24
ip address 10.10.2.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 300
name "300-GUESTWIFI"
tagged 1,24
ip address 10.10.3.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 400
name "400-WIFI"
tagged 1,24
ip address 10.10.4.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 500
name "500-IOT"
tagged 1,24
ip address 10.10.5.1 255.255.255.0
ip helper-address 10.10.1.1
exit
primary-vlan 100


======================================================================
Switch02:
======================================================================
HP-SW-02# show running-config

Running configuration:

; J9773A Configuration Editor; Created on release #YA.15.12.0007
hostname "HP-SW-02"

ip default-gateway 10.10.1.1

snmp-server community "public" unrestricted

vlan 1
name "DEFAULT_VLAN"
no untagged 1-28
no ip address
exit

vlan 100
name "100-DEFAULT"
untagged 2-28
ip address 10.10.1.6 255.255.255.0
exit

vlan 200
name "200-CAMERAS"
tagged 23
ip address 10.10.2.1 255.255.255.0
exit

vlan 300
name "300-GUESTWIFI"
tagged 23
ip address 10.10.3.1 255.255.255.0
exit

vlan 400
name "400-WIFI"
tagged 1,23
ip address 10.10.4.1 255.255.255.0
exit

vlan 500
name "500-IOT"
tagged 23
ip address 10.10.5.1 255.255.255.0
exit

primary-vlan 100


======================================================================
On the pfSense (router) side:
======================================================================
All VLans are configured in the VLANs section using the same VLAN tag, and even the description (although that shouldn't matter). While I do have additional NIC ports on my firewall, I am not physically segmenting this off at the moment, rather I am using the lan port interface for each of the vlans.



======================================================================



Here are a few questions I had, that may help me get a better understanding of what I'm missing:



  1. I "presume" that the port that my router plugs into on switch01 should be a trunk port, but do all of the vlans need to be tagged (including the default vlan)? I currently have it setup so that the default vlan is untagged and all other vlans are tagged. I've tried changing this port to have all vlans being tagged (as I thought was the correct way), but then I lose connection to the internet on my main desktop that is plugged into a port on switch01 (not the laptop I'm testing on port1 above).


  2. Same question as above for all trunk ports. So port 24 on switch01 that connects to port 23 on switch02 should be my trunk port, do all vlans here need to be tagged, because I currently have the default vlan untagged (this is the only way I can get traffic to pass to the second switch) and all other vlans are configured as just tagged.


  3. The laptop that I'm using to test if I can pull a dhcp address on that is plugged into port 1 on switch02, should the default vlan be set to "no" and should I be just tagging that port on the WIFI vlan, or does the default vlan need to remain as untagged, while the WIFI vlan should be set to Tagged? My understanding is that you only want to tag the switch port on the vlan you want it to communicate with.


Apologies for these dumb questions, but I am having a difficult time getting things to work here. I have tried so many scenarios, but can't seem to get anything to work.



Thanks for any assistance on this! I really appreciate any help here!










share|improve this question
















First off, thank you all very much for taking the time to read my post, I am hoping for some help!



I was hoping to get some help with getting the configs right for my network switches. I don't believe my issue is directly related to the vlans in my pfSense setup, rather my network switches, but please let me know your thoughts.



To make it simple, I will only use two switches, and once this is working, I can make the same changes for the third switch. I'm pretty sure my issue is that I am not understanding vlan tagging properly, so I was looking for some guidance. The goal is to ultimately segment my network and get the vlans working properly. I have security cameras I would like to put on their own segment, as well as some Access points I would also like to setup guest access for my wireless network. I also have a VLAN setup for IOT devices.



Currently, I am just untagging all ports on all switches on my default vlan, and allowing all traffic through for everything, until I can get things working properly. I have been tinkering with things for awhile now, but can't seem to get it working.



======================================================================



Key information:



Router = pfSense
All network switches = HP Procurve Switches (model 2530) one is a 24port GB switch, the other is 24port PoE.



I have a total of 5 vlans configured on all switches and in the router, the "default_vlan" is not being used (per best practice).



======================================================================



Here is the setup:



I am using a pfSense firewall and I have all vlans configured correctly on the router from what I can tell, the network interface from the firewall appliance is plugged into port 1 on switch01. Port 24 on switch01 is configured as a trunk port and is plugged into port 23 on switch02.



I will post the configs for both switches below, but wanted you to be aware of what the main ports are for. You will see below in the configs, but in my testing I just patched in a laptop to Port 1 on switch02 just to see if I can pull a dhcp address for it (only able to pull an IP from my default vlan). That particular vlan I was tinkering with is titled WIFI, so I just wanted to point out this out so there isn't any confusion, while you're looking at my config.



Here are the current configs for my switches, after I've made some additional changes. I do realize that I don't need to have the IP's listed in there for each vlan, and can remove them to simplify things further, but I wanted to put them in there just to test, and rule that out.



======================================================================
Switch01:
======================================================================
HP-SW-01# show running-config

Running configuration:

; J9776A Configuration Editor; Created on release #YA.15.17.0007
hostname "HP-SW-01"

ip default-gateway 10.10.1.1

snmp-server community "public" unrestricted

vlan 1
name "DEFAULT_VLAN"
no untagged 1-28
ip address dhcp-bootp
exit

vlan 100
name "100-DEFAULT"
untagged 1-28
ip address dhcp-bootp
exit

vlan 200
name "200-CAMERAS"
tagged 1,24
ip address 10.10.2.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 300
name "300-GUESTWIFI"
tagged 1,24
ip address 10.10.3.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 400
name "400-WIFI"
tagged 1,24
ip address 10.10.4.1 255.255.255.0
ip helper-address 10.10.1.1
exit

vlan 500
name "500-IOT"
tagged 1,24
ip address 10.10.5.1 255.255.255.0
ip helper-address 10.10.1.1
exit
primary-vlan 100


======================================================================
Switch02:
======================================================================
HP-SW-02# show running-config

Running configuration:

; J9773A Configuration Editor; Created on release #YA.15.12.0007
hostname "HP-SW-02"

ip default-gateway 10.10.1.1

snmp-server community "public" unrestricted

vlan 1
name "DEFAULT_VLAN"
no untagged 1-28
no ip address
exit

vlan 100
name "100-DEFAULT"
untagged 2-28
ip address 10.10.1.6 255.255.255.0
exit

vlan 200
name "200-CAMERAS"
tagged 23
ip address 10.10.2.1 255.255.255.0
exit

vlan 300
name "300-GUESTWIFI"
tagged 23
ip address 10.10.3.1 255.255.255.0
exit

vlan 400
name "400-WIFI"
tagged 1,23
ip address 10.10.4.1 255.255.255.0
exit

vlan 500
name "500-IOT"
tagged 23
ip address 10.10.5.1 255.255.255.0
exit

primary-vlan 100


======================================================================
On the pfSense (router) side:
======================================================================
All VLans are configured in the VLANs section using the same VLAN tag, and even the description (although that shouldn't matter). While I do have additional NIC ports on my firewall, I am not physically segmenting this off at the moment, rather I am using the lan port interface for each of the vlans.



======================================================================



Here are a few questions I had, that may help me get a better understanding of what I'm missing:



  1. I "presume" that the port that my router plugs into on switch01 should be a trunk port, but do all of the vlans need to be tagged (including the default vlan)? I currently have it setup so that the default vlan is untagged and all other vlans are tagged. I've tried changing this port to have all vlans being tagged (as I thought was the correct way), but then I lose connection to the internet on my main desktop that is plugged into a port on switch01 (not the laptop I'm testing on port1 above).


  2. Same question as above for all trunk ports. So port 24 on switch01 that connects to port 23 on switch02 should be my trunk port, do all vlans here need to be tagged, because I currently have the default vlan untagged (this is the only way I can get traffic to pass to the second switch) and all other vlans are configured as just tagged.


  3. The laptop that I'm using to test if I can pull a dhcp address on that is plugged into port 1 on switch02, should the default vlan be set to "no" and should I be just tagging that port on the WIFI vlan, or does the default vlan need to remain as untagged, while the WIFI vlan should be set to Tagged? My understanding is that you only want to tag the switch port on the vlan you want it to communicate with.


Apologies for these dumb questions, but I am having a difficult time getting things to work here. I have tried so many scenarios, but can't seem to get anything to work.



Thanks for any assistance on this! I really appreciate any help here!







networking router switch pfsense






share|improve this question















share|improve this question













share|improve this question




share|improve this question








edited May 24 at 17:33









Ron Trunk

546315




546315










asked May 24 at 14:36









CommanderCommander

61




61







  • 2





    Having the same IP address on two different switch interfaces is causing problems

    – Ron Trunk
    May 24 at 14:48











  • Rule of thumb: untag to your default vlan (e.g cctv camera on vlan 200 would have its port untagged vlan200). Trunk ports tag all VLANs.

    – Timothy Frew
    May 24 at 18:09












  • 2





    Having the same IP address on two different switch interfaces is causing problems

    – Ron Trunk
    May 24 at 14:48











  • Rule of thumb: untag to your default vlan (e.g cctv camera on vlan 200 would have its port untagged vlan200). Trunk ports tag all VLANs.

    – Timothy Frew
    May 24 at 18:09







2




2





Having the same IP address on two different switch interfaces is causing problems

– Ron Trunk
May 24 at 14:48





Having the same IP address on two different switch interfaces is causing problems

– Ron Trunk
May 24 at 14:48













Rule of thumb: untag to your default vlan (e.g cctv camera on vlan 200 would have its port untagged vlan200). Trunk ports tag all VLANs.

– Timothy Frew
May 24 at 18:09





Rule of thumb: untag to your default vlan (e.g cctv camera on vlan 200 would have its port untagged vlan200). Trunk ports tag all VLANs.

– Timothy Frew
May 24 at 18:09










1 Answer
1






active

oldest

votes


















4














First you should know that HP and Cisco use the term "trunk" differently. What HP calls a trunk, Cisco calls an Etherchannel (port aggregation).



I'll use the term in the Cisco sense (VLAN trunk) since you seem comfortable with that.



Trunk ports can have up to one untagged VLAN; all others must be tagged. You can, if you prefer, tag all VLANs on a trunk. The tagging configuration must match on both sides of the trunk link.



Devices like PCs, cameras, etc. do not understand VLAN tags. So a port that has a PC on it must have the desired VLAN untagged on that port. For example, if you want your camera on VLAN 200, you would have VLAN 200 untagged on the camera port.



Some devices such as IP phones do understand tags. Typically, the data VLAN is untagged, and the VoIP vlan is tagged.






share|improve this answer

























    Your Answer








    StackExchange.ready(function()
    var channelOptions =
    tags: "".split(" "),
    id: "2"
    ;
    initTagRenderer("".split(" "), "".split(" "), channelOptions);

    StackExchange.using("externalEditor", function()
    // Have to fire editor after snippets, if snippets enabled
    if (StackExchange.settings.snippets.snippetsEnabled)
    StackExchange.using("snippets", function()
    createEditor();
    );

    else
    createEditor();

    );

    function createEditor()
    StackExchange.prepareEditor(
    heartbeatType: 'answer',
    autoActivateHeartbeat: false,
    convertImagesToLinks: true,
    noModals: true,
    showLowRepImageUploadWarning: true,
    reputationToPostImages: 10,
    bindNavPrevention: true,
    postfix: "",
    imageUploader:
    brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
    contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
    allowUrls: true
    ,
    onDemand: true,
    discardSelector: ".discard-answer"
    ,immediatelyShowMarkdownHelp:true
    );



    );













    draft saved

    draft discarded


















    StackExchange.ready(
    function ()
    StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f968722%2fvlan-help-hp-switch%23new-answer', 'question_page');

    );

    Post as a guest















    Required, but never shown

























    1 Answer
    1






    active

    oldest

    votes








    1 Answer
    1






    active

    oldest

    votes









    active

    oldest

    votes






    active

    oldest

    votes









    4














    First you should know that HP and Cisco use the term "trunk" differently. What HP calls a trunk, Cisco calls an Etherchannel (port aggregation).



    I'll use the term in the Cisco sense (VLAN trunk) since you seem comfortable with that.



    Trunk ports can have up to one untagged VLAN; all others must be tagged. You can, if you prefer, tag all VLANs on a trunk. The tagging configuration must match on both sides of the trunk link.



    Devices like PCs, cameras, etc. do not understand VLAN tags. So a port that has a PC on it must have the desired VLAN untagged on that port. For example, if you want your camera on VLAN 200, you would have VLAN 200 untagged on the camera port.



    Some devices such as IP phones do understand tags. Typically, the data VLAN is untagged, and the VoIP vlan is tagged.






    share|improve this answer





























      4














      First you should know that HP and Cisco use the term "trunk" differently. What HP calls a trunk, Cisco calls an Etherchannel (port aggregation).



      I'll use the term in the Cisco sense (VLAN trunk) since you seem comfortable with that.



      Trunk ports can have up to one untagged VLAN; all others must be tagged. You can, if you prefer, tag all VLANs on a trunk. The tagging configuration must match on both sides of the trunk link.



      Devices like PCs, cameras, etc. do not understand VLAN tags. So a port that has a PC on it must have the desired VLAN untagged on that port. For example, if you want your camera on VLAN 200, you would have VLAN 200 untagged on the camera port.



      Some devices such as IP phones do understand tags. Typically, the data VLAN is untagged, and the VoIP vlan is tagged.






      share|improve this answer



























        4












        4








        4







        First you should know that HP and Cisco use the term "trunk" differently. What HP calls a trunk, Cisco calls an Etherchannel (port aggregation).



        I'll use the term in the Cisco sense (VLAN trunk) since you seem comfortable with that.



        Trunk ports can have up to one untagged VLAN; all others must be tagged. You can, if you prefer, tag all VLANs on a trunk. The tagging configuration must match on both sides of the trunk link.



        Devices like PCs, cameras, etc. do not understand VLAN tags. So a port that has a PC on it must have the desired VLAN untagged on that port. For example, if you want your camera on VLAN 200, you would have VLAN 200 untagged on the camera port.



        Some devices such as IP phones do understand tags. Typically, the data VLAN is untagged, and the VoIP vlan is tagged.






        share|improve this answer















        First you should know that HP and Cisco use the term "trunk" differently. What HP calls a trunk, Cisco calls an Etherchannel (port aggregation).



        I'll use the term in the Cisco sense (VLAN trunk) since you seem comfortable with that.



        Trunk ports can have up to one untagged VLAN; all others must be tagged. You can, if you prefer, tag all VLANs on a trunk. The tagging configuration must match on both sides of the trunk link.



        Devices like PCs, cameras, etc. do not understand VLAN tags. So a port that has a PC on it must have the desired VLAN untagged on that port. For example, if you want your camera on VLAN 200, you would have VLAN 200 untagged on the camera port.



        Some devices such as IP phones do understand tags. Typically, the data VLAN is untagged, and the VoIP vlan is tagged.







        share|improve this answer














        share|improve this answer



        share|improve this answer








        edited May 24 at 17:35

























        answered May 24 at 15:00









        Ron TrunkRon Trunk

        546315




        546315



























            draft saved

            draft discarded
















































            Thanks for contributing an answer to Server Fault!


            • Please be sure to answer the question. Provide details and share your research!

            But avoid


            • Asking for help, clarification, or responding to other answers.

            • Making statements based on opinion; back them up with references or personal experience.

            To learn more, see our tips on writing great answers.




            draft saved


            draft discarded














            StackExchange.ready(
            function ()
            StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fserverfault.com%2fquestions%2f968722%2fvlan-help-hp-switch%23new-answer', 'question_page');

            );

            Post as a guest















            Required, but never shown





















































            Required, but never shown














            Required, but never shown












            Required, but never shown







            Required, but never shown

































            Required, but never shown














            Required, but never shown












            Required, but never shown







            Required, but never shown







            Popular posts from this blog

            How to write a 12-bar blues melodyI-IV-V blues progressionHow to play the bridges in a standard blues progressionHow does Gdim7 fit in C# minor?question on a certain chord progressionMusicology of Melody12 bar blues, spread rhythm: alternative to 6th chord to avoid finger stretchChord progressions/ Root key/ MelodiesHow to put chords (POP-EDM) under a given lead vocal melody (starting from a good knowledge in music theory)Are there “rules” for improvising with the minor pentatonic scale over 12-bar shuffle?Confusion about blues scale and chords

            What if the end-user didn't have the required library?What is setup.py?What is a clean, pythonic way to have multiple constructors in Python?What does Ruby have that Python doesn't, and vice versa?What is the reason for having '//' in Python?How do I create a namespace package in Python?How to package shared objects that python modules depend on?setuptools vs. distutils: why is distutils still a thing?Navigation in Windows 10 vs code not going to virtualenv library when the same library is installed at user levelPython create package for local usePackaging a project that uses multiple python versionsWhy is permission denied on pip install except for when “--user” is included at end of command?

            Esgonzo ibérico Índice Descrición Distribución Hábitat Ameazas Notas Véxase tamén "Acerca dos nomes dos anfibios e réptiles galegos""Chalcides bedriagai"Chalcides bedriagai en Carrascal, L. M. Salvador, A. (Eds). Enciclopedia virtual de los vertebrados españoles. Museo Nacional de Ciencias Naturales, Madrid. España.Fotos