Aruba & ProVision-based
1753963 Members
7367 Online
108811 Solutions
New Discussion

J9576A HP 3800-48G-4SFP+ Switch basic configuration

 
culasakti99
New Member

J9576A HP 3800-48G-4SFP+ Switch basic configuration

good day..

 

i'm quite new with this hp procurve 3800 switch inviroment..

 

can anyone assist me for this..

 

i have 3 unit hp procurve 3800 switch, and i try to do only a basic vlan and routing..

 

but i cannot ping to my firewall from the switch itself.. at the same time i can ping to vlan 1 and vlan 20 from switch..

 

and i can ping to firewall from user segment..

 

i attach too my diagram and switch configuration..

 

VLAN 1 – FOR SWITCH MANAGEMENT

10.200.200.1

10.200.200.2

10.200.200.3 – ignore this switch for backup only (not connected)

 

VLAN 20 – FOR USER

10.10.20.250/24

 

IP Routing

Ip route 0.0.0.0 0.0.0.0 10.10.20.251

 

Problem

  1. From user segment 1 i can ping to firewall ip 10.10.20.251 and any user segment 1 and user segment 2, but I cannot ping user segment 2 when i connect to the firewall.. if I take out the firewall connection I can ping to all user segment 1 and user segment 2 ip.
  2. I can ping vlan1 ip 10.200.200.1 and 10.200.200.2 and vlan 20 gateway 10.10.20.250 from all procurve 3800 switch, but I cannot ping to the firewall 10.10.20.251 from procurve 3800 switch itself. is procurve 3800 block ping by default?
  3. I can ping user segment 1 ip from my firewall.. but its still cannot ping to my procurve 3800 switch..
  4. I already try change to all this static route but still failed :

ip route 10.10.20.0 255.255.255.0 10.10.20.251

ip route 10.200.200.0 255.255.255.0 10.10.20.251

ip route 0.0.0.0 0.0.0.225 10.10.20.251

ip route 10.10.20.0 0.0.0.225 10.10.20.251

1 REPLY 1
Vince-Whirlwind
Honored Contributor

Re: J9576A HP 3800-48G-4SFP+ Switch basic configuration

1/ You have duplicate IP addresses on VLAN 20.

 

2/ You are extending your user VLAN to your FW - this is a) going to confuse you and b) create asymmetric routing. It's bad design.

 

You need to decide where your routing is being done for each subnet and configure your network accordingly.