Every time I think I’ve got my head round VLANs something else crops up and I feel like I’m right back to square one
Can anyone help to explain this please!
I have a Netgear FS726T switch at the core of my network. I’m confused about the behaviour of 2 ports;
VLAN 10 is my main LAN, 1001 is my “dud” VLAN (so I don’t have the default of 1 left everywhere). This is the initial setup
Port 11 (live server attached) - PVID 10, tagged 1001, untagged 10
Port 12 (no system) - PVID 1001, Tagged 1001
I need to add a system to port 12, so set that to untagged in 10 but didn’t update the PVID (forgot), so what I had was;
Port 11 - PVID 10, tagged 1001, untagged 10
Port 12 - PVID 1001 , tagged 1001, untagged 10
What I see now is that the new system can ping the server on port 12, but nothing else. Once I set the PVID to 10 on port 12 then every thing works fine and it can access the rest of the network.
What I don’t understand is how when the PVID is set to 1001 the system on port 12 can ping the system on port 11.
Surely the packet is entering port 12 and the PVID adds 1001 to the packet, but then because port 11 is tagged as 1001 it should send the packet out with 1001 still attached, and the server shouldn’t recognise it as there is no VLAN configured on the NIC?
I’ve added a laptop to port 13 and set port to - PVID 10, tagged 1001, untagged 10 and I see the same, I can ping ports 11 and 13, but nothing else unless I change the PVID on port 11 to be 10. So that rules out the server responding to all VLANs.
Any ideas guys?
Thanks in advance!!
Jason