Device on L2 interface trying to reach L3 interface on same subnet

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Device on L2 interface trying to reach L3 interface on same subnet

Cyber Elite
Cyber Elite

Are you able to have a device connected on a layer 2 interface be able to reach a layer 3 gateway on the same subnet? We are able to get this working with a vlan interface when its on a different subnet.

 

Scenario:

Sub interface ethernet1/1.100 with IP address 10.10.100.1/24 and tag 100

Ethernet 1/2: Layer 2 interface

Device with IP address 10.10.100.100 connected to ethernet 1/2

 

We want device 10.10.100.100 to be able to reach its gateway at 10.10.100.1. 

 

Claw4609_0-1689782300039.png

 

1 accepted solution

Accepted Solutions

L4 Transporter

Hi there,

The only way you will get this to work is to convert Eth1/1 to a Layer2 interface with sub-interfaces and create a VLAN interface for each of the VLANs carried on Eth1/1 and that you want the firewall to be gateway for.

 

cheers,

Seb.

View solution in original post

4 REPLIES 4

L4 Transporter

Hi there,

The topology you are describing isn't one I have ever seen implemented and begs the question why not use a VLAN interface and use the sub-interfaces as a trunk link?

 

Looking at your config, I notice that the two interfaces in question do not belong to any VLAN. I suggest you create one and attach it to both Eth1/1.100 and Eth1/2 and repeat your testing.

 

cheers,

Seb.

Eth1/1.100 is a layer 3 interface and it doesnt look like I can attached a vlan to that. I have created vlan 100 and attached it to just eth1/2 to see if that would work but it didnt. 

 

The reasoning for the setup is we are looking to have a dedicated mgmt interface of the device have a separate port on the firewall. So in our case eth1/1 is the LAN interface which we have multiple sub interfaces on for our L3 gateways. One of those gateways is a management subnet. We would theoretically like an access port on the firewall for a device on the same subnet as the management subnet 

L4 Transporter

Hi there,

The only way you will get this to work is to convert Eth1/1 to a Layer2 interface with sub-interfaces and create a VLAN interface for each of the VLANs carried on Eth1/1 and that you want the firewall to be gateway for.

 

cheers,

Seb.

Sounds good, thanks for the help.

  • 1 accepted solution
  • 1166 Views
  • 4 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!