On 11/26/2010 2:31 PM, Brad Clarke wrote: > On Fri, Nov 26, 2010 at 1:35 PM, Alan Madill<[email protected]> wrote: > >> You should not have both tagged and untagged traffic on the same port > That depends on the switch. Some switches will not let you tag with > VLAN 1, so the only way to get there is with untagged traffic. They > also sometimes won't let you access the management interface on any > VLAN other than 1. This is what I have to do for our Dell switches and > I have no problems with martians (using Debian): >
We are using Allied Telesyn units and carry all of the VLAN's on our trunks. We have a linux based router that does the layer 3 routing between the layer 2 VLANs which is what I think he is trying to accomplish. When we first set it up many years ago we ran into an issue similar to what Stephen is seeing. To make it more complicated I think he is trying to make use of voice VLANs which seem to be a sort of hybrid. http://cciepursuit.wordpress.com/2009/01/01/group-study-good-explanation-of-the-voice-vlan/ Netgear Manual p3-16 http://documentation.netgear.com/gs700t/enu/202-10484-02/usermanual.pdf > And this is a sample of what I see in the logs: > Nov 25 15:24:36 bubastis kernel: [28104.130146] martian source 10.5.1.1 from 10.5.10.2, on dev eth1 > Nov 25 15:24:36 bubastis kernel: [28104.130152] ll header: d8:5d:4c:b0:70:8e:00:25:90:01:35:44:08:00 He is seeing VLAN2 traffic on eth1 - correct? If it is voice VLAN I wonder if he is trying to solve a problem that doesn't exist by putting it on a separate layer 3 subnet. ------------------------------------------------------------------------------ Increase Visibility of Your 3D Game App & Earn a Chance To Win $500! Tap into the largest installed PC base & get more eyes on your game by optimizing for Intel(R) Graphics Technology. Get started today with the Intel(R) Software Partner Program. Five $500 cash prizes are up for grabs. http://p.sf.net/sfu/intelisp-dev2dev _______________________________________________ Shorewall-users mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/shorewall-users
