ProCurve / ProVision-Based
cancel
Showing results for 
Search instead for 
Did you mean: 

Routing issus HP ProCurve 5406zl

coIT89073
Occasional Visitor

Routing issus HP ProCurve 5406zl

Hey Guys,

 

i hope someone can help.
Yesterday is switch die default GW form our Firewall to a 5460 Switch. It´s now GW for all VLANs.

The Issus is that i can´t access our MPLS Networks through the MPLS Router from the VLAN 10 from VLAN 1 it´s no Problem.

Example:
VLAN 1 -Member (10.10.1.200) to MPLS Router (10.10.1.3) -> OKAY
VLAN 1 -Member (10.10.1.200) to any MPLS Network (10.10.(2-30).0/24) - > OKAY

VLAN 1 - Member (10.10.1.200) to VLAN 10 Member (192.168.10.200) and the otherway ^^ -> OKAY

VLAN 10 -Member (192.168.10.200) to MPLS Router (10.10.1.3) -> Not OKAY
VLAN 10 -Member (192.168.10.200) to any MPLS Network (10.10.(2-30).0/24) - > Not OKAY

 

Following Configuration

VLAN 1 (10.10.1.0/24) Switch IP 10.10.1.1

VLAN 10 (192.168.10.0/24) IP 192.168.10.1

VLAN Firewall Transport (10.10.90.0/27) Switch IP: 10.10.90.2

Firewall IP 10.10.90.1

MPLS-Router IP: 10.10.1.3
MPLS Netzworks: 10.10.(2-30).0/24

 

MPLS Routes on 10.10.1.1 (5406)


  10.10.2.0/24       10.10.1.3       1    static               1          1
  10.10.3.0/24       10.10.1.3       1    static               1          1
  10.10.4.0/24       10.10.1.3       1    static               1          1
  10.10.5.0/24       10.10.1.3       1    static               1          1
  10.10.6.0/24       10.10.1.3       1    static               1          1
  10.10.7.0/24       10.10.1.3       1    static               1          1
  10.10.8.0/24       10.10.1.3       1    static               1          1
  10.10.9.0/24       10.10.1.3       1    static               1          1
  10.10.10.0/24      10.10.1.3       1    static               1          1
  10.10.11.0/24      10.10.1.3       1    static               1          1
  10.10.12.0/24      10.10.1.3       1    static               1          1
  10.10.13.0/24      10.10.1.3       1    static               1          1
  10.10.14.0/24      10.10.1.3       1    static               1          1
  10.10.15.0/24      10.10.1.3       1    static               1          1
  10.10.16.0/24      10.10.1.3       1    static               1          1
  10.10.17.0/24      10.10.1.3       1    static               1          1
  10.10.18.0/24      10.10.1.3       1    static               1          1
  10.10.19.0/24      10.10.1.3       1    static               1          1
  10.10.20.0/24      10.10.1.3       1    static               1          1
  10.10.21.0/24      10.10.1.3       1    static               1          1
  10.10.22.0/24      10.10.1.3       1    static               1          1
  10.10.23.0/24      10.10.1.3       1    static               1          1
  10.10.24.0/24      10.10.1.3       1    static               1          1
  10.10.25.0/24      10.10.1.3       1    static               1          1
  10.10.26.0/24      10.10.1.3       1    static               1          1
  10.10.27.0/24      10.10.1.3       1    static               1          1
  10.10.28.0/24      10.10.1.3       1    static               1          1
  10.10.29.0/24      10.10.1.3       1    static               1          1
  10.10.30.0/24      10.10.1.3       1    static               1          1

Hope someone can help me.

4 REPLIES
Vince-Whirlwind
Honored Contributor

Re: Routing issus HP ProCurve 5406zl

You need a static route on your router:

192.168.10.0/24 --> 10.10.1.1

coIT89073
Occasional Visitor

Re: Routing issus HP ProCurve 5406zl

This route is auto generated by internal VLAN routing
Vince-Whirlwind
Honored Contributor

Re: Routing issus HP ProCurve 5406zl

From your description, I understood that your internal VLAN routing is on the Firewall, not the router.

From the information you provided, it seemed very likely the router is only aware of the 10. network on the LAN side.

coIT89073
Occasional Visitor

Re: Routing issus HP ProCurve 5406zl

VLAN Routing is on the Switch, not on the Firewall but i think I found the issu but i can´t check it because the Router (10.10.1.3) is blocked by ISP. I think the solution is to create routes on the MPLS-Router in the VLANS over the Switch e.g. 192.168.10.0/24 10.10.1.1