Quantcast
Channel: Web and Unmanaged topics
Viewing all 1308 articles
Browse latest View live

HP 1820 24G Trunk issue

$
0
0

Hi all,

In the past, I worked with HP 1810 24G switches and my system works properly.

Now I'm going to migrate HP 1820 24G switches, but I discover a little problem in my application, this is my scenario:

I have to connect two sites (site A and site B) throght 2 different phisical links, so, I place 1 switch x site and I configured

them as follow:

 

Site A and Site B has the same configurations:

port 1 to port 2 as part of trunk 1. 

port 3 to port 12 as part of VLAN2 untagged

port 13 to port 26 as part of VLAN1 untagged

trunk1 as part of VLAN1 and VLAN2 Tagged

Trunk 1 = dynamic mode

spanning tree enable as RSTP

 

Now I connect two phisical links (radio links) between Port 1 site A to Port 1 site B nad between Port 2 site A and Port 2 site B.

 

The sistem seems to works properly but, if one of the radio link goes down, the connection between site A to site B goes down for about 90 seconds and then go UP.

 

I think that the problem is someting about the the algoritm used from the trunk to switch from one port to another, but I don't found a solution.

 

With the HP 1810 24 G the switching time was about 5 seconds!!!!.

 

Can anyone help me?

 

Tanks and exuseme for my english.

 

 

 

 


Webconfigurator ssl version

$
0
0

Dear HP Team,

 

The latest Firmware for "HP 1920-48G Switch JG927A" is "5.20.99 Release 1107" which only supports sslv3.

Chrome AND Firefox 40.0.3 wont allow any connection to the webconfigurator, since sslv3 is very vulnerable.

will there be an upgrade for the SSL Protocol  used for the webconfigurator? Is there any workaround?

HP 1810-24 V2 not working with 1000Mbps

$
0
0

Hello everybody, here 'Levin' from holland.

 

Today we bought the HP Switch 1810-24 v2. We hooked it on and we've noticed that our apple iMac's didn't connect true the hp switch. What seems that our manual configuration in the ethernet settings with :

 

1000baseT

Full-duplex

MTU: Standard 1500

AVB/EAV Mode enabled

 

Won't work????? So we put them back to 100baseT

 

But how come??? Does anybody knows how to fix this?? Sorry for my englisch writing, im from the netherlands.

 

(funny thing is, we have here a very old, old, old, very old Micronet Fast Gigabit Ethernet Switch 8-ports, working perfect)

 

Or did we buy the wrong one??? Can please somebody tell me what is wrong...

 

We have printers with 10/100Mbps and our iMacs with 100/1000Mbps, but now the 1000 won't work with this switch?

 

 

Greetings Levin den Boer.

HP1910-48 VLAN Stuck

$
0
0

Hello.

I have issue with setting up of HP1910-48 (JG540A).

When I tried to configure VLAN other then ID=1 (for example 100) I had problem because I can’t transfer TCP packets over this VLAN.

What I meaned:

1. I run web console and select Network-VLAN
2. Create new VLAN with number 100
3. Select some ports and assign to this VLAN (All ports Untagged, of course)
4. Check configuration.

Then I connect to this ports (with new VLAN) three devices: other switch, one computer and one notebook.

So, computer can ping notebook but can’t ping devices behind other switch.

BUT, when I set for all ports default 1 VLAN - all works fine.

Any ideas?

procurve 1910 Vlan routing : no internet access

$
0
0

Vlan routing : can't access internet.

 

Hi ,

I need some help on this issue that is making me mad …

 

On my switch 1910-8G , I can create VLANs and make routing between them . Each PC in a vlan can ping another PC in another vlan

But a PC in a Vlan can't go on the internet excepting PC in default Vlan

 

Here is the details :

Switch HP 1910-8G JG348A , version 5,20 release : 1513P99 BootRom 173

 

Network schema :

Internet Box access : Lan 192,168,1,254 /255,255,255,0 , WAN Fix IP by Internet provider

|

Router : Lan : 192.168.0.254/255.255.255.0 , Wan 192.168.1.253/255.255.255.0 gw 192.168.1.254 on port 8 of the switch default vlan 1

|

|

Switch configured with network wizard : I give it : 192.168.0.253 / 255.255.255.0 and gw : 192.168.0.254

so it create a default IP V4 route : 0.0.0.0 / 0.0.0.0 / Nexthop192.168.0.254 Vlan Interfave 1

 

I created VLAN 30 and make untagged member Port 3 , and not member from VLAN 1

I created VLAN 40 and make untagged member Port 4 , and not member from VLAN 1

I create virtual vlan interface 30 : 192.168.30.254/255.255.255.0

I create virtual vlan interface 40 : 192.168.40.254/255.255.255.0

 

PC0 : 192.168.0.11/255.255.255.0 gw 192.168.0.253 on port 1 PVID 1

PC30 : 192.168.30.11/255.255.255.0 gw 192.168.30.254 on port 3 PVID 30

PC40 : 192.168.40.11/255.255.255.0 gw 192.168.30.254 on port 4 PVID 40

 

 

ping works in all ways between pc

 

PC0 can go on the internet and ping 8.8.8.8 and 192.168.1.254

PC30 & PC40 can't go on internet and can't ping 8.8.8.8. or even 192.168.1.254

Adding route 192.168.30.0/255.255.255.0 gw 192.168.0.253 in Internet Router (DD-WRT) helps PC30 to ping 192.168.0.254

 

Please note that I have already delete 0.0.0.0 / 0.0.0.0 / Nexthop192.168.0.254 Vlan Interfave 1 created by wizard and recreate it manually (instead with the wizard option) and there was no changes .

I didn't define any ACL. The configuration is done after a switch re-initialization .

Same result with port in Hybrid or in Access mode …

 

Aaaarrrgghhhh ! ;-)

 

What am i missing ? Thanks for your help !

 

Samy

 

 

1920-24G: ACL for unidirectional access between two VLANs

$
0
0

Hello everybody,

 

I want to achieve a configuration like this:

http://howdoesinternetwork.com/2012/allow-vlan-access-but-no-back

respectively

http://vmfocus.com/2012/10/14/how-to-configure-access-lists-route-between-vlans-on-hp-v1910-24g/

 

I tried everything with no success.

 

10.100.3.0/24 should be allowed to access 10.100.4.0/24; but not vice versa.

Here is my config:

 

3001
rule 0 permit tcp established
rule 10 deny ip source 10.100.4.0 0.0.0.255 destination 10.100.3.0 0.0.0.255
rule 15 permit ip

 

classifier for 3001
behavior deny
respective policy applied to ports of 10.100.4.0 inbound

 

Thank you in advance!

 

Best regards

1810-24G Switch Question - Is there a method to put the switch into a Pass-Thru Mode?

$
0
0

Good day, I have several new 1810-24G switches.  We were told by Vonage Business that we need to remove all the managed switches and move to un-managed switches. I read an article that you can change the switch into a Pass-Thru Mode?  I can't just remove all the switches.  We having dropped calls but the ISP (2 different ISPs) show that their data is as good as its going to get.  My next solution is either the switches or our Sonic Walls.

 

THanks for your help.

CSMG

intervlan routing on Procurve 1920

$
0
0

 

Hi  All,

 

 

 

I have created two network and want to isolate - however it it routing between networks.

 

Any advise?

 

Michael

 

 version 5.20.99, Release 1108

 sysname lon-sw-01

 dhcp relay server-group 1 ip 172.30.70.1
 dhcp relay server-group 2 ip 192.168.0.1

 domain default enable system

 ipv6

 telnet server enable

 password-recovery enable

vlan 1
 description default

vlan 10
 description guest wifi

domain system
 access-limit disable
 state active
 idle-cut disable
 self-service-url disable

traffic classifier class1 operator and

user-group system
 group-attribute allow-guest

local-user admin
 authorization-attribute level 3
 service-type lan-access
 service-type ssh telnet terminal
 service-type web

 stp mode rstp
 stp enable

interface NULL0

interface Vlan-interface1
 ip address 172.31.70.2 255.255.255.0
 dhcp select relay
 dhcp relay server-select 1

interface Vlan-interface10
 ipv6 address auto link-local
 ip address 192.168.0.2 255.255.255.0
 dhcp select relay
 dhcp relay server-select 2

interface GigabitEthernet1/0/1
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/2
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/3
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/4

interface GigabitEthernet1/0/5
 port link-type hybrid
 port hybrid vlan 10 tagged
 port hybrid vlan 1 untagged
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/6
 port access vlan 10
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/7
 port link-type hybrid
 port hybrid vlan 10 tagged
 port hybrid vlan 1 untagged
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/8
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/9
 stp edged-port enable

interface GigabitEthernet1/0/10
 stp edged-port enable

 ip route-static 0.0.0.0 0.0.0.0 Vlan-interface1 172.31.70.1

 dhcp enable

 load xml-configuration

user-interface aux 0
 authentication-mode scheme
user-interface vty 0 15
 authentication-mode scheme

return

 

 


prevent inter-vlan routing hp 1920

$
0
0

 

Hi  All,

I have created two network and want to isolate - however it it routing between networks.

Any advise?

Michael

 version 5.20.99, Release 1108

 sysname lon-sw-01

 dhcp relay server-group 1 ip 172.30.70.1
 dhcp relay server-group 2 ip 192.168.0.1

 domain default enable system

 ipv6

 telnet server enable

 password-recovery enable

vlan 1
 description default

vlan 10
 description guest wifi

domain system
 access-limit disable
 state active
 idle-cut disable
 self-service-url disable

traffic classifier class1 operator and

user-group system
 group-attribute allow-guest

local-user admin
 authorization-attribute level 3
 service-type lan-access
 service-type ssh telnet terminal
 service-type web

 stp mode rstp
 stp enable

interface NULL0

interface Vlan-interface1
 ip address 172.31.70.2 255.255.255.0
 dhcp select relay
 dhcp relay server-select 1

interface Vlan-interface10
 ipv6 address auto link-local
 ip address 192.168.0.2 255.255.255.0
 dhcp select relay
 dhcp relay server-select 2

interface GigabitEthernet1/0/1
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/2
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/3
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/4

interface GigabitEthernet1/0/5
 port link-type hybrid
 port hybrid vlan 10 tagged
 port hybrid vlan 1 untagged
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/6
 port access vlan 10
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/7
 port link-type hybrid
 port hybrid vlan 10 tagged
 port hybrid vlan 1 untagged
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/8
 port auto-power-down
 poe enable
 stp edged-port enable

interface GigabitEthernet1/0/9
 stp edged-port enable

interface GigabitEthernet1/0/10
 stp edged-port enable

 ip route-static 0.0.0.0 0.0.0.0 Vlan-interface1 172.31.70.1

 dhcp enable

 load xml-configuration

user-interface aux 0
 authentication-mode scheme
user-interface vty 0 15
 authentication-mode scheme

return

 

 

HP1920-48G: impossible to modify Port configuration

$
0
0

Hello,

I have two HP1920-48G configured with some VLANs and today I have an odd problem.

 

If I try to change a port configuration (for example to move from acces to hybrid port) the web gui log me out.

 

I've tried to restore the configuration backup, to reboot, to delete and recreate the VLANs nothing work.

 

Some suggestions?

 

Thank you.

How to lock down SSH on a 1910?

$
0
0

Locking down HTTP, HTTPS, and Telnet are pretty straight forard... Not really seeing how one can lock down SSH though - can anyone help?

 

 

Right now i have 2 vlans on the switch - one  (VLAN1) is for management and the other (VLAN2) is for our wireless network. Both VLANs have an IP on them, but i'd like to prevent IPS from VLAN to to be able to hit the VLAN 2 IP with an SSH connection.

 

The ACL i created for HTTP/HTTPS/Telnet seems to be doing the trick - how can i apply it to SSH too?

 

Thanks,

Chris

HP 1810-24G v2 Web Management UI unavailable

$
0
0

Hello,

 

I have been having a consistent issue for quite some time now with my 1810-24G V2. After a short perios of time (a few hours to a couple of days), the Web Management UI becomes unavailable. The only solution is to go to the rack, pull the power on the unit and have it reboot. At that time, the switch's Web Management comes back up. Lately, this has been causing a huge issue.

 

The switch is running firmware PL.2.04 on both images. Here is the system description line:

 

HP 1810-24G, PL.2.04, eCos-3.0, 1_12_8-customized-h

 

Any ideas on how to resolve this issue? From researching it, it looked like it was supposed to be resolved in code 1.17. Clearly, for my model, this is not the case.

 

Any help is GREATLY appreciated!

 

HP V1920 PoE (370W) - Weird Issues

$
0
0

Good afternoon everyone,

 

I'm new to the deeper side of networking as I've never had the opportunity before to delve into the dark side of networking, so please bear this in mind...

I look after our organization's I.T. infrastructure, so at the moment, quite the jack of all trades, and recently we began getting funny issues on our network which started with our executive's office Wi-Fi AP losing connectivity as well as their Colour printer losing connectivity, I then after some head scratching pin pointed it to a faulty/tempramental el'cheapo Netgear switch and proceeded to look into replacing these old nasty switches with some of better quality/reputation, so our organization got 4x HP V1920 48 Port PoE (370W) switches and 4x new x121 GBIC SPF cards as we have our old offices linked to our new office via 2x fiber links.

Anyhow, long story short, I replaced the switches this past Friday and all seemed great, until yesterday evening and today the whole day.

We run two VLANs (VLAN1 = DATA and VLAN2 = VOIP) - so basically on my side (new building) I have a Mikrotik RB750 doing the routing between the 2x VLANs (192.168.1.xxx and 20.30.40.xxx) - there are certain ports on my switch configured to be untagged from VLAN 2, not a member of VLAN 1 and PVID 2, which connects to our Mitel 3300 PABX, MBG, etc, in essence anything that has a 20.30.40.xxx IP only, then all other ports are Untagged on VLAN 1, tagged VLAN2 and PVID 1 in Hybrid mode - as stated before, all ran fine for most of the weekend up until yesterday and today I was running up and down with weird issues on the network, and this is how it was set up on our old switches.

Basically what would happen is the phone network would start timing out or destination host not found, high latency 2000+ms on LAN, etc. and the switches would stop seeing each other, e.g. I can't see 192.168.1.50, 52, 54 or 55, but I can still ping devices attached to either of them.

I then disabled RSTP and it came right again for a few hours, then the same would occur, I then re-enabled RSTP and it came right for a while, then it would do the same, and then I finally changed from RSTP to plain STP (almost 2 hours ago and everything is still going fine).

I also played around with disconnecting a single fiber link, then the patch cable link, to see if it starts responding again if I remove either, but it's been inconclusive.

My network basically goes from the switches to SNOM 300 VOIP phones with VLAN ID set to 2, and then the PC receiving an IP on VLAN ID 1.

My network is currently set up as follows:

[url]http://s20.postimg.org/72i840n2l/Network_HP.png[/url]

The orange cable represents the fiber links linking the switches on Ports 52 on all 4 switches, and then the green cable represents the bridge between the 2 links on the other side (connecting to ports 48 on both switches).

My suspicion is there is a loop somewhere, I am still trying to find it, but my question, won't STP prevent these types of anomalies from occurring?

Also, why does it seem to come right when I enable/disable STP on all switches, but then after a while it starts again?

I sincerely hope it stays as stable as it has been now for the past almost 2 hours after I changed from RSTP to STP, but like I mentioned before, my knowledge of advanced networking is minimal so I don't understand fully where the problem might be.

Any feedback/input/questions would be greatly appreciated.

Error : This scheme is referenced in a Domain

$
0
0

Hello

 

HP switch 1920

want to remove RADIUS servers (that are defined), getting this error

This scheme is referenced in a Domain

 

 

I want to remove the defined RADIUS and create new again.

 

Because facing Authentication problems , after implementing port security, AAA, when connecting client to the switch port.

PC gets connected on the DOMAIN / NETWORK, gets correct VLAN subnet IP (As defined in NPS/NAP server)

but it is in "Attempting to Authenticate" state.

And after 2 minutes PC disconnects from the network, and re authentication occurs this cycle goes on again and again.

 

Thanks

Regards

 

"Login Failed" on telnet / console 1920 switch

$
0
0

Hi

 

Need some help I configured MAC based 802.1X on 1920 switch, alsong with RADIUS, AAA. Problem is that after closing the browser window, I am unable to login through the web not even through the console. "Login Failed" message appears.

Configured the 802.1X following the user guide "802.1X configuration examples"

 


HP V1810-48G VLAN Name Default ändern

$
0
0

Hallo,

 

ich möchte an einem HP V1810-48G den VLAN Name Default ändern, die Optionen Set Name und Delete Name sind inaktiv.

 

Gibt es (k)eine verborgene Möglichkeit an der GUI oder eine an der Console? Falls an der Console, wie wird es gemacht?

 

Habt Dank

HP 1820-24G Switch J9980A - No gigabit ports

$
0
0

Hi, im hoping im doing something stupid here. I have two new 1820-24G switches but all ports only come up as 100Mbps when plugging in laptop with a gigabit port. When I look in port configuration there is also no option for 1000Mbps

 

I've added a screenshot as an attachment

 

Any help or guidance would be greatly appreciated

 

 

HP 1910 24G and VLAN confusion..need a little help please

$
0
0

Hello and thank you in advance for the help.

 

My 1910 switch has the default VLAN 0001 in which I have my inter office network on (Server and Workstations). I obviously want to keep this network to itself (192.168.1.x)

 

I have a multi use conference room that I want to setup a seperate VLAN for... So I created a VLAN of 192.168.5.x

 

We have 6 Access Points connected to my switch on ports 19, 20 ,21, 22, 23,24

Router is on port 17

Conference Room audio / visual equipment is plugged into port 13.

 

All of the other ports are used by Server, Workstations and printers on the network.

 

I have VLAN5 (192.168.5.x) for my conference room with the folling tagged ports: 19, 20, 21, 22, 23, 24 so people in the conference room have access to wireless AP

 

I have VLAN5 port 17 tagged for conference room people have access to internet

 

I have port 13 (A/V equipment) as untagged as the device does not work well with VLANs.

 

All other ports on switch under VLAN5 configuration are set to "Not a Member"

 

However, when connected to VLAN5 with a DHCP address that is assigned (192.168.5.x) I can still ping with response my server IP address of 192.168.1.10

 

Can someone give me a little insight to where I may have gone wrong? I thought that by setting up VLAN5 with only the ports listed above as being members of VLAN5 that I should not be able to ping anything on my other network of 192.168.1.x

 

Thank you

Sincerely

Kell

1920-24G: ACL for unidirectional access between two VLANs

$
0
0

Hello everybody,

 

I want to achieve a configuration like this:

http://howdoesinternetwork.com/2012/allow-vlan-access-but-no-back

respectively

http://vmfocus.com/2012/10/14/how-to-configure-access-lists-route-between-vlans-on-hp-v1910-24g/

 

I tried everything with no success.

 

10.100.3.0/24 should be allowed to access 10.100.4.0/24; but not vice versa.

Here is my config:

 

3001
rule 0 permit tcp established
rule 10 deny ip source 10.100.4.0 0.0.0.255 destination 10.100.3.0 0.0.0.255
rule 15 permit ip

 

classifier for 3001
behavior deny
respective policy applied to ports of 10.100.4.0 inbound

 

Thank you in advance!

 

Best regards

HP v1910 and 2620 - Setting up VLAN between switches with link aggregation

$
0
0

[switch 1 HP v1910] ====lag vlan trunk========[switch 2HP 2620]
|| ||
|| ===lag vlan trunk========[switch 3 HP 2620]
||
||===lag vlan trunk========[switch 4 HP 2620]

can someone help with configuration on
HP - is straight forward - i am doing this
 
trunk 47-48 Trk1 Trunk ; uplink to v1910
 
ip default-gateway 10.16.40.2

vlan 1
name "DEFAULT_VLAN"
untagged 2,4,12,16-19,24,32-33,35-38,Trk1-Trk2
ip address 10.16.40.3 255.255.255.0
no untagged 1,3,5-11,13-15,20-23,25-31,34,39-44
exit
 
but
 
how do i do equivalent on v1910? and so that vlan traffic is pased from 2620 to v1910?
 
Regards,
 
Michael

Viewing all 1308 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>