I'm trying to figure out a detail for a VLAN scenário that is rendering me unable to access one of the switchs.
In the diagram attached, I have a switch (named "Switch" in the diagram) and two CRS317 (named "CRS #1" and "CRS #2" in the diagram). I have a network on my office, where the PC in the diagram is connected and used to access the devices for configuration.
The CRS #2 is on a remote site, and then I created a VLAN for management.
On CRS #1, port 14 is configured with PVID 1000, and all used SFP ports are on a bridge (ether1 is not).
Code: Select all
[user@CRS_#1] > /interface bridge port pr
Flags: X - disabled, I - inactive, D - dynamic, H - hw-offload
# INTERFACE BRIDGE HW PVID PRIORITY PATH-COST INTERNAL-PATH-COST HORIZON
0 H sfp-sfpplus1 bridge-uplink yes 1 0x80 10 10 none
1 H sfp-sfpplus5 bridge-uplink yes 1 0x80 10 10 none
2 H sfp-sfpplus6 bridge-uplink yes 1 0x80 10 10 none
3 H sfp-sfpplus2 bridge-uplink yes 1 0x80 10 10 none
4 H sfp-sfpplus15 bridge-uplink yes 1 0x80 10 10 none
5 H sfp-sfpplus16 bridge-uplink yes 1 0x80 10 10 none
6 H sfp-sfpplus14 bridge-uplink yes 1000 0x80 10 10 none
Code: Select all
2 bridge=bridge-uplink vlan-ids=1000 tagged=sfp-sfpplus15 untagged=sfp-sfpplus14
current-tagged=sfp-sfpplus15 current-untagged=sfp-sfpplus14
Code: Select all
[user@CRS_#2] > /interface bridge port pr
Flags: X - disabled, I - inactive, D - dynamic, H - hw-offload
# INTERFACE BRIDGE HW PVID PR PATH-COST INTERNA... HORIZON
0 H ether1 bridge yes 1000 0x 10 10 none
1 H sfp-sfpplus1 bridge yes 1 0x 10 10 none
2 H sfp-sfpplus2 bridge yes 1 0x 10 10 none
3 H sfp-sfpplus3 bridge yes 1 0x 10 10 none
4 H sfp-sfpplus4 bridge yes 1 0x 10 10 none
5 I H sfp-sfpplus5 bridge yes 1 0x 10 10 none
6 I H sfp-sfpplus6 bridge yes 1 0x 10 10 none
7 I H sfp-sfpplus7 bridge yes 1 0x 10 10 none
8 I H sfp-sfpplus8 bridge yes 1 0x 10 10 none
9 I H sfp-sfpplus9 bridge yes 1 0x 10 10 none
10 I H sfp-sfpplus10 bridge yes 1 0x 10 10 none
11 I H sfp-sfpplus11 bridge yes 1 0x 10 10 none
12 I H sfp-sfpplus12 bridge yes 1 0x 10 10 none
13 I H sfp-sfpplus13 bridge yes 1 0x 10 10 none
14 I H sfp-sfpplus14 bridge yes 1 0x 10 10 none
15 H sfp-sfpplus15 bridge yes 1000 0x 10 10 none
16 H sfp-sfpplus16 bridge yes 1000 0x 10 10 none
Code: Select all
2 bridge=bridge vlan-ids=3902 tagged=sfp-sfpplus1,bridge untagged=ether1,sfp-sfpplus16,sfp-sfpplus15
current-tagged=bridge,sfp-sfpplus1 current-untagged=ether1,sfp-sfpplus15,sfp-sfpplus16
Code: Select all
[user@CRS_#2] /interface vlan> pr det
Flags: X - disabled, R - running
0 R name="vlan1000" mtu=1500 l2mtu=1588 mac-address=CC:2D:E0:57:F2:08 arp=enabled arp-timeout=auto loop-protect=default
loop-protect-status=off loop-protect-send-interval=5s loop-protect-disable-time=5m vlan-id=1000 interface=bridge
use-service-tag=no
I'm trying to figure out the right way to do that, and I couldn't yet. From CRS #1 I can use MAC Telnet to access CRS #2 and configure it, but I can't yet ping it directly to access it via winbox.
Thanks for anyone who have the patience to read it through to try to help me.