Start a Conversation

Solved!

Go to Solution

1 Rookie

 • 

4 Posts

734

February 15th, 2023 22:00

Can't Access Local Web Server on ports that is on General Mode

Good day! I have this issue that we can't access our web service even locally if while connected to an AP that has multiple VLAN implemented on it.

The port is gi 1/0/44 is configured as general port where device VLAN 20 is added as untagged ports, this gives IP to all ubiquiti AP we have. Then employee VLAN 10 is added as tagged ports. When mobile devices connects, it can browse the internet, access network shared storage, do remote desktop. However, when trying to access our local webserver through a domain name or through ip address, it gives an error of "This site can't be reached".

May I humbly ask anybody to enlighten me with regards to my configuration.  

 

Moderator

 • 

3.8K Posts

February 21st, 2023 07:00

We need to better analyse the issue, can you contact the networking support and check if they can find a solution as the problem seems weird?

Thanks

Moderator

 • 

3.8K Posts

February 16th, 2023 05:00

Hello,

what is the switch are you using?

Please can you show the config of the switch in order to better investigate?

Thanks

1 Rookie

 • 

4 Posts

February 17th, 2023 15:00

=~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2023.02.18 07:51:24 =~=~=~=~=~=~=~=~=~=~=~=
show running-config

!Current Configuration:
!System Description "Dell Networking N3248P-ON, 6.8.1.0, Linux 4.15.18-2e794c6e"
!System Software Version 6.8.1.0
!
configure
vlan 20,22,24-25,28,32,35-38,72,101,103-105,107-108,200,210
exit
vlan 20
name "Device"
exit
vlan 22
name "HR"
exit
vlan 24
name "Finance"
exit
vlan 25
name "Registrar"
exit
vlan 28
name "Logistic"
exit
--More-- or (q)uit vlan 32
name "OSDS"
exit
vlan 35
name "VPA"
exit
vlan 36
name "VPAA"
exit
vlan 37
name "VP_REEA"
exit
vlan 38
name "OP"
exit
vlan 72
name "COMEd-Staff"
exit
vlan 101
name "Temp_COTE"
exit
vlan 103
name "Hotel"
--More-- or (q)uit exit
vlan 104
name "FEC-Wireless"
exit
vlan 105
name "Student-Wireless"
exit
vlan 107
name "Voice"
exit
vlan 108
name "Video"
exit
vlan 200
name "PFSense_Network"
exit
vlan 210
name "Management"
exit
ip telnet server disable
hostname "sw_ict_bldg"
slot 1/0 1 ! Dell Networking N3248P-ON
ntp server time.google.com
--More-- or (q)uit ntp server time1.google.com
clock timezone 8 minutes 0
stack
member 1 1 ! N3248P-ON
exit
interface out-of-band
shutdown
exit
no ip http server
ip http secure-server
boot auto-copy-sw
interface vlan 1
exit
interface vlan 210
ip address 192.168.210.101 255.255.255.0
exit
username "admin" password 15c5413d917af08a5186fbe913261866 privilege 15 encrypted
ip ssh server
no spanning-tree
no iscsi enable
application install SupportAssist auto-restart start-on-boot
!
interface Gi1/0/1
--More-- or (q)uit shutdown
switchport mode trunk
switchport access vlan 200
switchport trunk allowed vlan 200
exit
!
interface Gi1/0/2
shutdown
switchport access vlan 200
exit
!
interface Gi1/0/3
shutdown
exit
!
interface Gi1/0/4
shutdown
switchport access vlan 210
exit
!
interface Gi1/0/5
shutdown
exit
--More-- or (q)uit !
interface Gi1/0/6
shutdown
exit
!
interface Gi1/0/7
shutdown
exit
!
interface Gi1/0/8
shutdown
switchport access vlan 20
exit
!
interface Gi1/0/9
shutdown
exit
!
interface Gi1/0/10
shutdown
exit
!
interface Gi1/0/11
--More-- or (q)uit shutdown
exit
!
interface Gi1/0/12
shutdown
switchport access vlan 20
exit
!
interface Gi1/0/13
shutdown
exit
!
interface Gi1/0/14
shutdown
switchport access vlan 101
exit
!
interface Gi1/0/15
shutdown
exit
!
interface Gi1/0/16
shutdown
--More-- or (q)uit switchport mode trunk
switchport general allowed vlan add 20 tagged
switchport trunk allowed vlan 20,104-105,107,210
exit
!
interface Gi1/0/17
shutdown
exit
!
interface Gi1/0/18
shutdown
exit
!
interface Gi1/0/19
shutdown
exit
!
interface Gi1/0/20
shutdown
exit
!
interface Gi1/0/21
shutdown
--More-- or (q)uit exit
!
interface Gi1/0/22
shutdown
exit
!
interface Gi1/0/23
shutdown
exit
!
interface Gi1/0/24
shutdown
exit
!
interface Gi1/0/25
shutdown
exit
!
interface Gi1/0/26
shutdown
exit
!
interface Gi1/0/27
--More-- or (q)uit shutdown
exit
!
interface Gi1/0/28
shutdown
exit
!
interface Gi1/0/29
shutdown
exit
!
interface Gi1/0/30
shutdown
exit
!
interface Gi1/0/31
shutdown
exit
!
interface Gi1/0/32
shutdown
exit
!
--More-- or (q)uit interface Gi1/0/33
shutdown
exit
!
interface Gi1/0/34
shutdown
exit
!
interface Gi1/0/35
shutdown
exit
!
interface Gi1/0/36
shutdown
exit
!
interface Gi1/0/37
shutdown
exit
!
interface Gi1/0/38
switchport access vlan 32
power inline never
--More-- or (q)uit exit
!
interface Gi1/0/39
switchport general pvid 20
switchport general allowed vlan add 20
switchport general allowed vlan add 104-105 tagged
switchport general allowed vlan remove 1
switchport access vlan 32
power inline never
exit
!
interface Gi1/0/40
switchport access vlan 32
power inline never
exit
!
interface Gi1/0/41
switchport mode general
switchport general pvid 20
switchport general allowed vlan add 20
switchport general allowed vlan add 104-105 tagged
switchport general allowed vlan remove 1
switchport access vlan 32
--More-- or (q)uit power inline never
exit
!
interface Gi1/0/42
switchport general pvid 210
switchport general allowed vlan add 210
switchport general allowed vlan add 32 tagged
switchport general allowed vlan remove 1
switchport access vlan 32
switchport trunk allowed vlan 32,210
power inline never
exit
!
interface Gi1/0/43
switchport access vlan 32
power inline never
exit
!
interface Gi1/0/44
switchport mode general
switchport general pvid 210
switchport general ingress-filtering disable
switchport general allowed vlan add 210
--More-- or (q)uit switchport general allowed vlan add 32 tagged
switchport general allowed vlan remove 1
switchport access vlan 32
power inline never
exit
!
interface Gi1/0/45
switchport mode trunk
switchport trunk allowed vlan 20,103-105,107,210
power inline never
exit
!
interface Gi1/0/46
switchport mode trunk
switchport trunk allowed vlan 1,20,36-37,104-105,107,210
exit
!
interface Gi1/0/47
switchport mode trunk
switchport trunk allowed vlan 20,22,24-25,28,35,210
exit
!
interface Gi1/0/48
--More-- or (q)uit switchport mode general
switchport general pvid 20
switchport general ingress-filtering disable
switchport general allowed vlan add 20
switchport general allowed vlan add 104-105,107,210 tagged
switchport general allowed vlan remove 1
switchport trunk allowed vlan 20,38,72,104-105,210
exit
!
interface Te1/0/1
channel-group 10 mode active
description "MDF-Main-Eth-1/1/14"
exit
!
interface Te1/0/2
channel-group 10 mode active
description "MDF-Main-Eth-1/1/16"
exit
!
interface Te1/0/3
shutdown
exit
!
--More-- or (q)uit interface Te1/0/4
switchport mode trunk
switchport trunk allowed vlan 20,22,24-25,28,32,35-38,72,101,103-105,107-108,200,210
exit
!
interface port-channel 10
shutdown
switchport mode trunk
switchport trunk allowed vlan 20,22,24-25,28,32,35-38,101,103-105,107-108,210
exit
snmp-server engineid local 800002a203e8b5d0c6e3cb
enable password 15c5413d917af08a5186fbe913261866 encrypted
banner motd "
**********************************************************
* *
* WARNING *
* *
* This is a private device and can only be accessed by *
* authorized personnel. Use of this resource can be *
* monitored and unauthorized use is strictly prohibited. *
* *
**********************************************************
"
--More-- or (q)uit exit

sw_ict_bldg#

Moderator

 • 

5.1K Posts

February 19th, 2023 19:00

interface Gi1/0/44
switchport mode general
switchport general pvid 210
switchport general ingress-filtering disable    >> remove this line and try it.
switchport general allowed vlan add 210
switchport general allowed vlan add 32 tagged
switchport general allowed vlan remove 1
switchport access vlan 32
power inline never
exit

https://dell.to/416h2jM

 

1 Rookie

 • 

4 Posts

February 20th, 2023 02:00

Thank you for that input. I will try this tomorrow when I get back to the office.

1 Rookie

 • 

4 Posts

February 21st, 2023 02:00

Hi, once again thank you for your input. I tried what was suggested but to no avail. What I did, we still had a Powerswitch N3248P-On that is on version 6.6.3 and simulate the following setup:

interface Gi1/0/44
switchport mode general
switchport general pvid 210
switchport general allowed vlan add 210
switchport general allowed vlan add 32 tagged
switchport general allowed vlan remove 1
exit

After that, I connect the AP to port Gi1/0/44 and connect to SSID with VLAN 32. I got IP address intended for VLAN 32 and internet was working including local webserver through hostname and/or ip address. However, with the same configuration above on version 6.8.1, there was problem running speedtest and the local webserver can't be accessed either through ip address or hostname. All it could do is access the internet and file server.

Could this be a firmware problem? any inputs would much be appreciated. Thank you very much. 

No Events found!

Top