Wednesday, February 28, 2018

802.1q tunnel causing VLANs to not be able to access multiple websites.

I have a weird issue. We have two sites that are about 3 miles apart. ISP gives us an 802.1q tunnel between the sites.

Site A: Has entry point to the internet and our FW. Everything works at this site.

Site B: Uses provided 802.1q tunnel to tie into Site A and gets to the internet that way. Site B native traffic works fine, our Wifi VLAN cannot access multiple websites. (As in the majority of them). Which is weird because Wifi users on the same VLAN at Site A can access everything. As I said, Native traffic at Site B can access whatever it wants, but for some reason our Wifi VLAN cannot. I even bypassed the wireless gear and made a switchport access wifivlan and hardwired my laptop and still had the same problem.

The firewall is Watchguard XTM330 (it's on the list to get replaced), switches are all Ubiquiti Unifi, ISP switches are Cisco 4948s. Both of my ports going to the 802.1q tunnel are trunk ports.

I'm just not understanding how websites will work at Site A but not Site B when it's the same LAN same subnet same VLAN etc.

If anyone could give some insights that'd be awesome.

An example of what websites work/don't work: google.com and facebook.com work at Site B, but espn.com and portal.office365.com don't.



No comments:

Post a Comment