LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 09-13-2006, 09:16 AM   #1
tbcpp
LQ Newbie
 
Registered: Aug 2005
Posts: 2

Rep: Reputation: 0
HTTPS+VLAN+LINUX=Problems?


Okay, here is the problem. This past week we re-designed our network here at work to look like the following:


Internet
|
|
Router/Firewall (Using Static IP)
|
Vlan 6
|
DMZ
|
Main Routers (actually two)
|
Client VLAN, Server VLAN, Misc VLANs


Our main routers have 5 ethernet ports on them. All the systems mentioned above (the routers and the firewall) are running Ubuntu Dapper Server. Since we wanted to be able to expand later, we tried to use vlans as much as possible. Hence we defined the vlans via vconfig in Linux. So the router would use ethernet port eth0.6 to talk to the main routers.

After installation we started noticing some really odd problems. First of all, our 98 clients joined the network fine, got their logon scripts and ran them. However, our XP machines did not. After a bit of head banging my co-worker and I modified it so that the routers used eth1, eth2, eth3, etc. Instead of eth1.11 or eth1.21. Then we set our HP switch to do the tagging. It worked like a charm.

However, on one of our other nets all HTTPS traffic stopped working. Just a few minutes ago I set the main firewall to use eth1 instead of eth1.6 and let the switch do the tagging and it's working great.

What on earth is going on here? Is there some limitation on VLANs that I don't know about? The freaky thing is, the HTTPS traffic is still being tagged by the main routers for vlan 21! So instead of being tagged by linux, routed and tagged by linux again, they are being tagged by the hp switch the seccond time.

Any ideas? On all occations we could ping, and "see" the hosts. Its just some traffic wouldn't work. And it's not an iptables issue because when we changed the ethernet devices it worked without modification to the iptables.

I'm stumped.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
VLAN configuration - native VLAN and setting PVID kumarwaiting Linux - Networking 0 07-24-2006 02:51 AM
linux instead of router(VLAN ,IRB and etc) ye_adam Linux - Networking 0 01-26-2006 02:13 PM
Linux VLAN Trunk? teamchachi Linux - Networking 1 07-28-2005 11:50 AM
Linux for VLAN ? newbieA Linux - Networking 1 09-13-2003 11:34 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 08:33 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration