> Where is 192.168.1.1? Is VLAN 102 carried into site 3 on the trunk?
192.168.1.1 belongs to the inferface for vlan 102 on the switch 3560G
on site 3.
> Where is 192.168.2.1? Is VLAN 103 carried into site 3 on the trunk?
192.168.2.1 belongs to the inferface for vlan 103 on the switch 3560G
on site 3.
> Is there any equipment on 192.168.3.x on the ISP's network? If not,
> what is VLAN 104 used for? If so, at what IP address[es]?
No. Vlan 104 is for site 3 solely. 192.168.3.1 belongs to the
inferface for vlan 104 on the switch 3560G.
> Is there any equipment in VLAN 101 on the ISP's network? Any associated
> IP address? If not, what is VLAN 101 used for?
>
No equipment nor IP address for vlan 101. The ISP claimed vlan 101 as
native vlan and would use it for our Internet access.
> Is the ISP doing IP routing for you or just handing off layer 2
> connectivity? Are they handing you an Internet circuit as well?
The ISP handles layer 2 connectivity on their switch. They offer us
Internet connection as well. What the ISP pre-configured on their
layer 2 switch were: vlan 102 for site1, vlan 103 for site 2, vlan 104
for site 3, and vlan 101 for NATIVE vlan which they claimed to let our
network traffic go to the Internet.
On the ISP switch the port connecting to site 3 has been configured as
a trunk port. Therefore, on our catalyst 3560G layer 3 switch, we need
build a trunk port too. The 3560G will do inter-vlan routing by
assigning 192.168.1.1to interface vlan 102; 192.168.2.1 to the
interface vlan 103; and 192.168.3.1 to interface vlan 104.
> > We also have a PIX 506E available in site 3 to control the Internet
> > traffic.
We only have one PIX. Previously it controlled Internet traffic only.
What puzzles me is where I should connect the PIX once the switch
3560G is brought in our network. I was told by the ISP that i don't
need to configure vlan-related change on the PIX. Then how does the
pix carry vlan tagging packets in and out?
Regarding site 1 and site2, currently we don't have cisco switches to
be configured vlan information. I want to try out if the two sites can
handle network traffic without L2 switches to be configured on site.
Please kindly give me your suggestion if you think my design has
shortcomings or faults. Anything unclear I'll be happy to offer more
informaiton.
Thanks!
|