First, thanks to fohdeesha for the work on these units!
Have an issue that I am slamming my head against the wall trying to figure out: an icx 7250 in router mode with everything working as expected except for one vlan on which NONE of the hosts can talk to one another. They can talk outside of the VLAN, they can reach the internet, hosts on other vlans can talk to the hosts inside of this vlan. All of the devices are untagged. No vlan tagging is configured on any of the hosts. All ports are forwarding. Devices in other vlans (i.e vlan 100) have no problem communicating with each other. Disabled all firewalls to make sure this was not an issue. No ACLs enabled yet.
VRFs have not been enabled.
I know this has to be some absolutely simple oversight. Does anyone have a clue what I messed up?
Have an issue that I am slamming my head against the wall trying to figure out: an icx 7250 in router mode with everything working as expected except for one vlan on which NONE of the hosts can talk to one another. They can talk outside of the VLAN, they can reach the internet, hosts on other vlans can talk to the hosts inside of this vlan. All of the devices are untagged. No vlan tagging is configured on any of the hosts. All ports are forwarding. Devices in other vlans (i.e vlan 100) have no problem communicating with each other. Disabled all firewalls to make sure this was not an issue. No ACLs enabled yet.
Code:
Current configuration:
!
ver 08.0.95caT213
!
stack unit 1
module 1 icx7250-24p-poe-port-management-module
module 2 icx7250-sfp-plus-8port-80g-module
stack-port 1/2/1
stack disable
!
global-stp
!
default-vlan-id 1001
!
vlan 31 by port
tagged ethe 1/2/8
router-interface ve 31
spanning-tree
!
vlan 95 by port
untagged ethe 1/1/5 to 1/1/8
router-interface ve 95
spanning-tree 802-1w
!
vlan 100 by port
tagged ethe 1/2/1 to 1/2/2 ethe 1/2/4 to 1/2/5 ethe 1/2/7
untagged ethe 1/2/3
router-interface ve 100
spanning-tree 802-1w
!
vlan 250 by port
untagged ethe 1/1/1 ethe 1/1/3 ethe 1/1/17 to 1/1/24
router-interface ve 250
spanning-tree 802-1w
loop-detection
!
vlan 1001 name DEFAULT-VLAN by port
router-interface ve 1001
!
system-max ip-route-default-vrf 9000
system-max ip-route-vrf 128
!
aaa authentication web-server default local
aaa authentication enable default local
aaa authentication login default local
enable telnet authentication
enable aaa console
hostname unimatrix001
ip dhcp-client disable
ip dns server-address 192.168.100.2
ip route 0.0.0.0/0 172.21.31.1
!
no telnet server
route-only
!
clock summer-time
!
!
ntp
server 172.21.31.1
!
!
web-management https
web-management enable vlan 250
!
manager disable
!
manager port-list 987
!
interface ve 31
ip address 172.21.31.2 255.255.255.252
!
interface ve 95
ip address 192.168.95.1 255.255.255.0
ip helper-address 1 192.168.100.2
!
interface ve 100
ip address 192.168.100.1 255.255.255.0
ip helper-address 1 192.168.100.2
!
interface ve 250
ip address 192.168.250.1 255.255.255.0 dynamic
ip helper-address 1 192.168.100.2
!
interface ve 1001
ip address 192.168.148.1 255.255.255.0
ip helper-address 1 192.168.100.2
!
end
Code:
Total PORT-VLAN entries: 5
Maximum PORT-VLAN entries: 1024
Legend: [Stk=Stack-Id, S=Slot]
PORT-VLAN 31, Name [None], Priority level0, On
Untagged Ports: None
Tagged Ports: (U1/M2) 8
Mac-Vlan Ports: None
Monitoring: Disabled
PORT-VLAN 95, Name [None], Priority level0, On
Untagged Ports: (U1/M1) 5 6 7 8
Tagged Ports: None
Mac-Vlan Ports: None
Monitoring: Disabled
PORT-VLAN 100, Name [None], Priority level0, On
Untagged Ports: (U1/M2) 3
Tagged Ports: (U1/M2) 1 2 4 5 7
Mac-Vlan Ports: None
Monitoring: Disabled
PORT-VLAN 250, Name [None], Priority level0, On
Untagged Ports: (U1/M1) 1 3 17 18 19 20 21 22 23 24
Tagged Ports: None
Mac-Vlan Ports: None
Monitoring: Disabled
PORT-VLAN 1001, Name DEFAULT-VLAN, Priority level0, Off
Untagged Ports: (U1/M1) 2 4 9 10 11 12 13 14 15 16
Untagged Ports: (U1/M2) 1 2 4 5 6 7 8
Tagged Ports: None
Mac-Vlan Ports: None
Monitoring: Disabled
Code:
Total number of IP routes: 6
Type Codes - B:BGP D:Connected O:OSPF R:RIP S:Static; Cost - Dist/Metric
BGP Codes - i:iBGP e:eBGP
OSPF Codes - i:Inter Area 1:External Type 1 2:External Type 2
STATIC Codes - v:Inter-VRF
Destination Gateway Port Cost Type Uptime
1 0.0.0.0/0 172.21.31.1 ve 31 1/1 S 2h13m
2 172.21.31.0/30 DIRECT ve 31 0/0 D 2h13m
3 192.168.95.0/24 DIRECT ve 95 0/0 D 1h40m
4 192.168.100.0/24 DIRECT ve 100 0/0 D 2h14m
5 192.168.148.0/24 DIRECT ve 1001 0/0 D 2h14m
6 192.168.250.0/24 DIRECT ve 250 0/0 D 2h14m
Code:
--- VLAN 250 [ STP Instance owned by VLAN 250 ] ----------------------------
Bridge IEEE 802.1W Parameters:
Bridge Bridge Bridge Bridge Force tx
Identifier MaxAge Hello FwdDly Version Hold
hex sec sec sec cnt
800078a6e127d110 20 2 15 Default 3
RootBridge RootPath DesignatedBri- Root Max Fwd Hel
Identifier Cost dge Identifier Port Age Dly lo
hex hex sec sec sec
800078a6e127d110 0 800078a6e127d110 Root 20 15 2
Port IEEE 802.1W Parameters:
<--- Config Params --><-------------- Current state ----------------->
Port Pri PortPath P2P Edge Role State Designa- Designated
Num Cost Mac Port ted cost bridge
1/1/1 128 20000 F F DESIGNATED FORWARDING 0 800078a6e127d110
1/1/3 128 0 F F DISABLED DISABLED 0 0000000000000000
1/1/17 128 20000 F F DESIGNATED FORWARDING 0 800078a6e127d110
1/1/18 128 20000 F F DESIGNATED FORWARDING 0 800078a6e127d110
1/1/19 128 0 F F DISABLED DISABLED 0 0000000000000000
1/1/20 128 0 F F DISABLED DISABLED 0 0000000000000000
1/1/21 128 0 F F DISABLED DISABLED 0 0000000000000000
1/1/22 128 20000 F F DESIGNATED FORWARDING 0 800078a6e127d110
1/1/23 128 20000 F F DESIGNATED FORWARDING 0 800078a6e127d110
1/1/24 128 20000 F F DESIGNATED FORWARDING 0 800078a6e127d1
VRFs have not been enabled.
I know this has to be some absolutely simple oversight. Does anyone have a clue what I messed up?