Current Network:
Internet-->PIX-->Cisco 2800-->Cisco Catalyst 3560-->Cisco 2900 switch
After deploying CR:
Internet-->CR-->Cisco 2800-->Cisco Catalyst 3560-->Cisco 2900 Switch
More on Network:
Internet-->PIX-->Cisco 2800-->Cisco Catalyst 3560-->Cisco 2900 switch
After deploying CR:
Internet-->CR-->Cisco 2800-->Cisco Catalyst 3560-->Cisco 2900 Switch
More on Network:
- There were vlans on the network.
- there were multiple 2900s connected to catalyst
- catalyst was responsible for the intervlan routing
- NAT was only done on pix, so will the cyberoam.
Issue:  No user from any VLAN was able to access internet
Debugging:
1> users were able to reach Cisco 2800
2> From Cisco 2800 we could ping CR and the vlan computers
3> From CR we could ping Cisco 2800 WAN interface but not the LAN interface IP. 
Clearly it was a routing issue. So we created static routes for a single vlan just to confirm. The static route we added was
if the destination is vlan 1 subnet then next hop will be cisco 2800 wan ip address
And it started working. 
 
No comments:
Post a Comment