Monday, September 10, 2018

VLANs, VPNs and switch management - Help!

I hope someone can help here!

I was sent across country to install a Draytek and Netgear 8-port managed switch. I setup some VLANs on the Draytek and configured the ports on the Netgear as per instructed. I had hoped to get back to the office, VPN into the Draytek and be able to manage the switch from the web interface. Seems I've locked myself out of it, and can't get it. Let me explain.

The Draytek has 4 VLANs - let's call them VLAN10, VLAN20, VLAN30 and VLAN40.

Port 1 of the Draytek has all 4 VLANs, tagged, going into Port1 of the switch.

The management VLAN of the switch is the default VID1, which I have untagged on Port 8. When on-site, I could access the switch through this port and configure it up. Whenever I changed the management VLAN to anything other than 1, I locked myself out and had to reset the switch. So I left it on 1, figuring I'd be able to access the switch through some VPN kung-fu when I got back.

HOWEVER - I know now I messed up. I'm in the office and can't access the switch via VPN at all. It's not responding on the web management page.

I created a new VLAN, gave it a VID of 1 and assigned the dial-in VPN to that, thinking that would get me into the switch. No joy, and now I'm panicking a bit. I know I'm out my depth here, and going back to the site isn't an option.

The switch doesn't appear in the Draytek ARP cache table, but I know it's there and been assigned a static IP on VLAN10. I was able to plug into the switch on site and get whatever untagged VLAN I wanted from the configured ports. So I know the switch is there, doing its job.

Does anyone have any thoughts, ideas or pointers in how I can get into the switch? I know I dun goofed.

Thanks in advance!



No comments:

Post a Comment