I've a PowerConnect 6224 with a routing problem, host in 10.128.36.101 (vlan 636) can't reach host 10.248.132.132 (vlan 280).
If I test ping from switch, there is no problem.
This is a sample of my configuration :
!Current Configuration:!System Description "PowerConnect 6224, 184.108.40.206, VxWorks 6.5"!System Software Version 220.127.116.11!Cut-through mode is configured as disabled!configurevlan databasevlan 280,600,636-648vlan routing 280 1vlan routing 637 2vlan routing 638 3vlan routing 639 4vlan routing 640 5vlan routing 641 6vlan routing 642 7vlan routing 643 8vlan routing 644 9
vlan routing 636 10
exithostname "swbruneau01"stackmember 1 1member 2 1exitip routingip route 0.0.0.0 0.0.0.0 10.248.132.158interface vlan 280name "SW-MGMT"routingip address 10.248.132.145 255.255.255.0exitinterface vlan 600name "LS-COLT"exitinterface vlan 636name "DRAC-MGMT"ip address 10.128.36.254 255.255.255.0routingexitinterface vlan 637name "LAN-ISCSI"routingip address 10.128.37.254 255.255.255.0exitinterface vlan 638name "LAN-PRODFR1"routingip address 10.128.38.254 255.255.255.0exitinterface vlan 639name "LAN-PRODFR2"routingip address 10.128.39.254 255.255.255.0exitinterface vlan 640name "LAN-PRODES1"routingip address 10.128.40.254 255.255.255.0exitinterface vlan 641name "LAN-PRODES2"routingip address 10.128.41.254 255.255.255.0exitinterface vlan 642name "LAN-PPRODFR"routingip address 10.128.42.254 255.255.255.0exitinterface vlan 643name "LAN-PPRODES"routingip address 10.128.43.254 255.255.255.0exitinterface vlan 644name "LAN-SBAD"routingip address 10.128.44.254 255.255.255.0exitusername "admin" password ded2188f9add3f74cff54e54e5c37530 level 15 encryptedline consolepassword ded2188f9add3f74cff54e54e5c37530 encryptedexitline telnetpassword ded2188f9add3f74cff54e54e5c37530 encryptedexitline sshpassword ded2188f9add3f74cff54e54e5c37530 encryptedexit!interface ethernet 1/g1switchport mode generalswitchport general pvid 636switchport general allowed vlan add 637-644exit!interface ethernet 1/g2switchport mode generalswitchport general pvid 636switchport general allowed vlan add 636switchport general allowed vlan add 637-644 taggedswitchport general allowed vlan remove 1exit!
interface ethernet 2/g23description 'uplink-to-scbru2'switchport mode generalswitchport general pvid 280switchport general allowed vlan add 280 taggedswitchport general allowed vlan remove 1exit!
Do you have an idea to solve this problem ?
Thanks a lot,
Antispoofing on client's firewall (ip 10.248.132.145) block traffic ...
After client correction, all it's ok
From first point of view, the switch configuration don’t seems too bad :
Host 1 : 10.128.36.101 vlan 636
VLAN 636interface vlan 636 name "DRAC-MGMT" ip address 10.128.36.254 255.255.255.0routing Host 2 : 10.248.132.132 vlan 280 VLAN 280 interface vlan 280 name "SW-MGMT" routing ip address 10.248.132.145 255.255.255.0
Without more information, I will suggest you :
1) To check that you’ve well configured the IP define in VLAN 280 and VLAN 636 as gateway on both hosts. 2) You said that switch can ping host, but it could be great to confirm in the mac address table that the hosts mac address are well in the good vlan.(with the ”show bridge address-table”command) 3) Try to use “access mode” instead of “general mode” for test purpose (frame will be always untagged) “switchport mode access”“switchport access vlan 280” 4) Confirm the route path used with the "traceroute" or "tracert" command5) To perform test without any other networks device connected; only with the two hosts connected (and maybe console access for troubleshoot purpose). 6) To upgrade switch to Firmware 18.104.22.168, available on dell website. For any configuration query/problem, DELL support can also help you through billable tickets. Ps : if you prefer, we can also talk in French. Hope it will help you. Regards. Ghassane J
Thanks for keeping us informed about the resolution !
Have a good day,