How to configure VLAN and IP interfaces properly for 802.1x - Alcatel Unleashed
Code: Select all
core switch show VLAN
vlan admin oper 1x1 flat auth ip ipx tag name
-----+-------+------+------+------+------+----+-----+-----+-----------
1 off off on on off off NA off VLAN 1
20 on on on on off on NA off SL
30 on on on on off on NA off Visitor
99 on on on on off on NA off Radius
100 on on on on off on NA off Servers
999 on on on on off on NA off Management
core switch show IP interface
Name IP Address Subnet Mask Status Forward Device
--------------------+---------------+---------------+------+-------+--------
Management 192.168.248.254 255.255.255.0 UP NO vlan 999
Radius 192.168.249.254 255.255.255.0 UP YES vlan 99
SL 10.10.20.254 255.255.255.0 UP YES vlan 20
Servers 10.0.0.254 255.255.255.0 UP YES vlan 100
Visitor 10.10.30.254 255.255.255.0 UP YES vlan 30
core switch show ip route
Dest Address Subnet Mask Gateway Addr Age Protocol
------------------+-----------------+-----------------+---------+---------
0.0.0.0 0.0.0.0 192.168.1.254 123d 1h NETMGMT
10.0.0.0 255.255.255.0 10.0.0.254 126d 0h LOCAL
10.10.20.0 255.255.255.0 10.10.20.254 126d 0h LOCAL
10.10.30.0 255.255.255.0 10.10.30.254 126d 0h LOCAL
127.0.0.1 255.255.255.255 127.0.0.1 126d 1h LOCAL
192.168.248.0 255.255.255.0 192.168.248.254 126d 0h LOCAL
192.168.249.0 255.255.255.0 192.168.249.254 126d 0h LOCAL
6850 show vlan
vlan admin oper 1x1 flat auth ip ipx tag name
-----+-------+------+------+------+------+----+-----+-----+-----------
1 off off on on off off NA off VLAN 1
20 on on on on off on NA off SL
30 on on on on off on NA off Visitor
99 on on on on off on NA off Radius
100 on on on on off on NA off Servers
999 on on on on off on NA off Management
6850 show IP interface
Name IP Address Subnet Mask Status Forward Device
--------------------+---------------+---------------+------+-------+--------
Management 192.168.248.60 255.255.255.0 UP NO vlan 999
Radius 192.168.249.60 255.255.255.0 UP YES vlan 99
6850 show ip routes
Dest Address Subnet Mask Gateway Addr Age Protocol
------------------+-----------------+-----------------+---------+---------
0.0.0.0 0.0.0.0 192.168.1.254 123d 1h NETMGMT
192.168.248.0 255.255.255.0 192.168.248.60 126d 0h LOCAL
192.168.249.0 255.255.255.0 192.168.249.60 126d 0h LOCAL
the switches are connected to each other on two trunked ports:
core switch:show 802.1q 1/23
Acceptable Frame Type : Any Frame Type
Force Tag Internal : NA
Tagged VLANS Internal Description
-------------+------------------------------------------+
20 TEST TAG PORT 1/23 VLAN 20
99 TEST TAG PORT 1/23 VLAN 99
100 TEST TAG PORT 1/23 VLAN 100
6850 switch show 802.1q 1/48
Acceptable Frame Type : Any Frame Type
Force Tag Internal : NA
Tagged VLANS Internal Description
-------------+------------------------------------------+
20 TEST TAG PORT 1/23 VLAN 20
99 TEST TAG PORT 1/23 VLAN 99
100 TEST TAG PORT 1/23 VLAN 100
traceroute from core switch itself to 192.168.249.60
1 192.168.249.60 166 ms 2 ms 2 ms
traceroute from radius server on vlan 100 (10.0.0.150) to 192.168.249.60
1 1 ms 1 ms 1 ms 10.0.0.254
2 * * * Request timed out.
traceroute from 6850 switch itself to 10.0.0.150 (radiusserver)
1 * * *
Code: Select all
traceroute from core switch itself to 192.168.249.60
1 192.168.249.60 166 ms 2 ms 2 ms
Where did you do that? What is the defaultgateway of this client?i can ping a client on the radius vlan connected to the 6850 switch from the radius server.