Sunday, February 24, 2019

Layer 3 Switch

Ok, definitely having a noob moment..

A little back story, I have been so far doing my inter-vlan routing on my pfsense box. This works fine, but I want to move that off of the firewall and onto our new (to us) Arista 7050Q-16. I have created the vlans, and I have for now, created 3 interfaces, one on vlan 1 (10.1.1.1) vlan 2 (10.1.2.1) and vlan 254 (switch to router vlan)(10.1.254.6/29). Switch is running the latest it can, 4.18.5. I removed the corresponding addresses on the pfsense box, and have added the vlan254 and ip address of 10.1.254.1 with an upstream gateway of 10.1.254.6 - I have tried it without this gateway and same results.

I have issued ip routing on the switch and it shows correctly in the running config that ip routing is enabled. I set the static default route of 0.0.0.0/0 10.1.254.1 but I cannot ping 10.1.254.1, but I can ping 10.1.1.1 and 10.1.2.1 as well as 10.1.254.6, On the pfsense box I cannot ping 10.1.254.6, neither can I ping 10.1.1.1 or 10.1.2.1 from any other device, however, from the Arista I can ping other devices on the network that I have interfaces on, i.e. I can ping 10.1.1.10 etc..

I do have a server plugged into another port on the Arista, and it is trunking, and I can reach that server no problem, so I know the switch is talking with the network, it is just some routing issue.

The firewall is connected through a trunk port on my 1gb switch, which is connected to a trunk port on the Arista (no extra 10gb nics to put in the pfsense box atm) I still have about 7-8 other vlans, and those gateways are still on the pfsense box, I did not want to remove them till I got this sorted out as they do include a production website in there.



No comments:

Post a Comment