GS1900-24 - Unable to split switch into 2 different ip ranges, is this possible?
Hi, I asked about this some time ago but cannot find the original thread, nothing I could do would make it work as I would always lose communicaton with the webui and have to reset. I tried again for 6 hours last night with the same results and am once again back using to tplink switches for each ip range. Can someone please take a look and tell me if what I am trying to acheive is possible?
Here are the interfaces on my Sophos XG Firewall
Here are the VLANS
With this setup I currently have a switch connected to port 1 and another in port 3 (ironically placed both tp-link switches on top of the GS1900-24 for over 2 years!)
the two networks are able to communicate with each other (IMPORTANT)
With the GS1900-24 on 2.70 firmware I would like to remove the 2 tplink switches and have the following.
ports 1-16 to be a switch for port1
ports 17-24 to be a switch for port2
Is this possible? Do I need an uplink? I just want the switch to behave as two independent switches for each IP range.
Many thanks in advance to anyone that can advise.
Best Answers
-
Sure its possible you just need to move webui to a VLAN and for VLAN1 all forbidden.
Port 1 for webui
Ports 2-16 with PVID 100 with port 16 as a uplink ports 2-15 untagged ports 17-24 forbidden
then change management VLAN to 100 and connect to port 2 and see if you can login
when logged in change port 1 to PVID 100 and set to untagged for VLAN 100
set VLAN 1 for all ports forbidden
ports 17-24 with PVID 101 with port 24 as a uplink ports 17-24 untagged ports 1-16 forbidden
1 -
Hi, thank you!! I have only been using untagged and excluded never tried forbidden.
Apologies if this is a dumb question but when you say uplink you mean to my xg firewall? I.e. sophos port 1 to port 16 on the switch in your example?
Thank you again! Would love to get this to work.
0 -
You likely will not need to use LAG but in short say you wanted to add another switch with LAG to VLAN 100 you use two ports of VLAN100 and two ports to the other switch with LAG then say the 1st switch has two PC and the 2nd has two PC instead of being limited to 1Gb between the two ports LAG could give you more bandwidth over two port between the switches.
0
All Replies
-
Sure its possible you just need to move webui to a VLAN and for VLAN1 all forbidden.
Port 1 for webui
Ports 2-16 with PVID 100 with port 16 as a uplink ports 2-15 untagged ports 17-24 forbidden
then change management VLAN to 100 and connect to port 2 and see if you can login
when logged in change port 1 to PVID 100 and set to untagged for VLAN 100
set VLAN 1 for all ports forbidden
ports 17-24 with PVID 101 with port 24 as a uplink ports 17-24 untagged ports 1-16 forbidden
1 -
Hi, thank you!! I have only been using untagged and excluded never tried forbidden.
Apologies if this is a dumb question but when you say uplink you mean to my xg firewall? I.e. sophos port 1 to port 16 on the switch in your example?
Thank you again! Would love to get this to work.
0 -
yes uplink to xg firewall ports
0 -
I cannot thank you enough! after years it is finally working as I intened :-) If you don't mind, I just have one last question? what do I do (if anything) with the LAG ports?
0 -
You likely will not need to use LAG but in short say you wanted to add another switch with LAG to VLAN 100 you use two ports of VLAN100 and two ports to the other switch with LAG then say the 1st switch has two PC and the 2nd has two PC instead of being limited to 1Gb between the two ports LAG could give you more bandwidth over two port between the switches.
0 -
Thank you, I can see no need to do that as this switch is overkill for what I need, thank you again for your help, you have been amazing!
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 149 Nebula Ideas
- 96 Nebula Status and Incidents
- 5.7K Security
- 264 USG FLEX H Series
- 271 Security Ideas
- 1.4K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 41 Wireless Ideas
- 6.4K Consumer Product
- 249 Service & License
- 387 News and Release
- 84 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.5K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 73 Security Highlight