The underlining problem I have is that I cannot get my webserver to communicate properly outside of our LAN and i'm starting to believe its a VLAN issue. Actually 3com dosent have an issue with VLAN's, it's me
I have been tring to get our companies web server up since middle August now, and its starting make me look really bad. Ill try to give as much info as possible.
What is happening is that we have 6 3com superstack II 3300 swtches. 4 of these is matrix together to form one logical switch. 1 is our server switch that is port trunked to unit 1 in the matrix stack. The other is mine.
We have 3 VLAN's set up (well 4, one I can't get rid of) VLAN 1 is default, and of course it has to be there and all ports from all switches are a member of this VLAN.
VLAN 2 is our firewall/router VLAN. Basically Our PIX is connected to unit 1 port 1 and port 1 is a member of VLAN 2.
VLAN 3 is our webserver DMZ (at least its suppose to be), where unit 1 port 23 is a member of this VLAN. Now I can give our webserver an internal address and it works fine, I can connect to it and administer it (of course its on our LAN). But when I change the IP addy to whats it suppose to be for external access as a web server, it don't work. Our PIX is prety tight as far as the config goes. It hasnt changed, the config is correct (Had a CCNA dude look at it). A few months ago we added all these switches (up from 1 switch to 6 switches) I belive that the VLAN's isnt set right. It also might have something to do with this tagging untagged crap that 3com does.
If anyone can help, please tell me what you need to know. I'm sure I'm being vague right now. Just let me know, and I appreciate any help.
I have been tring to get our companies web server up since middle August now, and its starting make me look really bad. Ill try to give as much info as possible.
What is happening is that we have 6 3com superstack II 3300 swtches. 4 of these is matrix together to form one logical switch. 1 is our server switch that is port trunked to unit 1 in the matrix stack. The other is mine.
We have 3 VLAN's set up (well 4, one I can't get rid of) VLAN 1 is default, and of course it has to be there and all ports from all switches are a member of this VLAN.
VLAN 2 is our firewall/router VLAN. Basically Our PIX is connected to unit 1 port 1 and port 1 is a member of VLAN 2.
VLAN 3 is our webserver DMZ (at least its suppose to be), where unit 1 port 23 is a member of this VLAN. Now I can give our webserver an internal address and it works fine, I can connect to it and administer it (of course its on our LAN). But when I change the IP addy to whats it suppose to be for external access as a web server, it don't work. Our PIX is prety tight as far as the config goes. It hasnt changed, the config is correct (Had a CCNA dude look at it). A few months ago we added all these switches (up from 1 switch to 6 switches) I belive that the VLAN's isnt set right. It also might have something to do with this tagging untagged crap that 3com does.
If anyone can help, please tell me what you need to know. I'm sure I'm being vague right now. Just let me know, and I appreciate any help.