Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VLANs and HP ProCurve 2810-48g running N.11.78

I am struggling with getting my interfaces fully functional. I am currently configured on the Sophos as follows:

Port 1:

VLAN 10 - 10.10.10.1

DHCP Pool for that subnet

VLAN 100 - 172.16.20.1

No DHCP (MGMT)

Port 3:

VLAN 20 - 10.10.20.1

DHCP Pool for that subnet

VLAN 30 - 10.10.30.1

DHCP Pool for that subnet

Port 1 is connected to Port 14 of my switch and Port 3 is connected to Port 16 on the same switch. The following is the current configuration for those VLANs on the ProCurve:

; J9022A Configuration Editor; Created on release #N.11.78

vlan 10
name "HOMENET"
untagged 25-30
no ip address
tagged 14
exit
vlan 20
name "VLAN20"
untagged 31-33
tagged 16
exit
vlan 30
name "VLAN30"
untagged 34-36
tagged 16
exit
vlan 100
name "MGMT"
untagged 21-24
tagged 14
exit

I currently do not have it configured using the trunk command, but if my understanding is correct, tagged traffic only passes on a trunk. However, in both this configuration and when configuring with the trunk command:

trunk 14 trk1
trunk 16 trk2

I have been unsuccessful in bringing up the connections. My Sophos VLAN Interfaces still read N/A under status. If there is anyone more familiar with this switch and OS the has any input, it would be greatly appreciated. 



This thread was automatically locked due to age.
Parents
  • Hi,

    HP Procure 2xxx switches use a different view on vlan and trunks.

    Trunks on a procurve are basicly LAG (Link Aggregation groups) interfaces and have nothing to do with vlan's. 

    Cisco vlan ports have three configuration modes, trunks, access and hybrid ports. Basicly procurve's have only hybrid ports.

    Hybrid ports have one access vlan (untagged) and can have multiple tagged ports at the same time.

    The XG acts the same: Use one interface and make that untagged on the switch. Then add vlan interfaces on top of the physical one, and ad teh tagges to the interface in the switch.

    When on the switch cli use command menu -> 2, Configure switch, and i beleive 8 Vlan menu to configure those ports. It's easier.

    A lot of info on vlan's is available on procurves from HP since it has been in use for a long time, they use a different approach to vlans and trunking than lets say Cisco.

    Al is compatible but just the way to configure is different. 

    So in HP trunk is a different thing than in Cisco and have nothing to do with each other.

    Succes.

       

    Bart van der Horst


    Sophos XG v18(.5) / v19 Certified Architect
    https://www.bpaz.nl

Reply
  • Hi,

    HP Procure 2xxx switches use a different view on vlan and trunks.

    Trunks on a procurve are basicly LAG (Link Aggregation groups) interfaces and have nothing to do with vlan's. 

    Cisco vlan ports have three configuration modes, trunks, access and hybrid ports. Basicly procurve's have only hybrid ports.

    Hybrid ports have one access vlan (untagged) and can have multiple tagged ports at the same time.

    The XG acts the same: Use one interface and make that untagged on the switch. Then add vlan interfaces on top of the physical one, and ad teh tagges to the interface in the switch.

    When on the switch cli use command menu -> 2, Configure switch, and i beleive 8 Vlan menu to configure those ports. It's easier.

    A lot of info on vlan's is available on procurves from HP since it has been in use for a long time, they use a different approach to vlans and trunking than lets say Cisco.

    Al is compatible but just the way to configure is different. 

    So in HP trunk is a different thing than in Cisco and have nothing to do with each other.

    Succes.

       

    Bart van der Horst


    Sophos XG v18(.5) / v19 Certified Architect
    https://www.bpaz.nl

Children
  • Because I came from a Cisco background and was primarily routing, I was mixing up tagged and untagged traffic. I was successful in getting my Sophos implemented by tagging my vlans on each interface and leaving my static vlan untagged. After that it was just a matter of untagging the ports on those vlans and everything was beautiful! I believe I made the same mistake when attempting to uplink to my Ubiquiti Edgeswitch, plan to test that after I get home tonight. Thank you all for the input, it was valuable!

Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?