Default route on VLAN
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎11-13-2018 12:42 PM
Hi,
I have an problem with my core switch, the core is 2 Summit 670 with EXOS 16.1.3.6 .
On the core and peripheral we have many VLAN but when I try to configure an client with the sumimt's IP as default gw I'm able only to ping other VLAN client.. but the default iproute for 0.0.0.0 don't work.
Intervlan forwarding is enabled.
an example config:
configure vlan Client ipaddress 172.26.15.254 255.255.248.0
enable ipforwarding vlan Client
configure vlan AP ipaddress 192.168.110.10 255.255.255.0
enable ipforwarding vlan AP
configure vlan didattical ipaddress 172.26.20.254 255.255.255.0
configure iproute add default 172.26.15.253
Can anyone help me? please...!
I have an problem with my core switch, the core is 2 Summit 670 with EXOS 16.1.3.6 .
On the core and peripheral we have many VLAN but when I try to configure an client with the sumimt's IP as default gw I'm able only to ping other VLAN client.. but the default iproute for 0.0.0.0 don't work.
Intervlan forwarding is enabled.
an example config:
configure vlan Client ipaddress 172.26.15.254 255.255.248.0
enable ipforwarding vlan Client
configure vlan AP ipaddress 192.168.110.10 255.255.255.0
enable ipforwarding vlan AP
configure vlan didattical ipaddress 172.26.20.254 255.255.255.0
configure iproute add default 172.26.15.253
Can anyone help me? please...!
19 REPLIES 19
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎11-19-2018 09:30 PM
Paolo, based on the traceroute it appears the fortigate does not know how to get back to ap subnet. I suspect that the summit is sending all "unknown" traffic to its default route (the fortigate). However when the traffic is coming back (ie a ping reply) it gets lost at the fortigate because the route is not there. Can you add a route on the fortigate for the 192.168.110.0/24 network to 172.26.15.254 and see if the ping goes through?
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎11-19-2018 07:30 PM
I want to use sunmit as gateway for Radio, didattical, VideoSoveglianza.. where right now I use fortigate as gw
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎11-19-2018 07:12 PM
Backroute for 172.26.8.0/21 from fortigate is created when you configure anninterface with this ip..
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Get Direct Link
- Report Inappropriate Content
‎11-19-2018 07:12 PM
Sorry, I must have grabbed the wrong network from the initial post. Regardless, does the Fortigate have routes to the two networks that are not working?
