Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Switched Ethernet

    Scheduled Pinned Locked Moved Official Netgate® Hardware
    3 Posts 3 Posters 861 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      Gerry26500
      last edited by Gerry26500

      Hi,
      Here is the situation on a SG-3100 with the switched ethernet ports.
      The LAN interface itself is active but doesn't have an IP
      I have vlans 100,140,160 and 500 created and assigned to the physical LAN interface
      My Goal is to have LAN1 as access for 500 and LAN4 as trunk for all other vlans
      Under Interfaces/Switch/ Vlans I have created :
      vlan 500 members 1,5t name1
      vlan 100 members 4t name2
      vlan 140 members 4t name3
      vlan 160 members 4t name3

      under Interfaces/Switch/Ports I have
      LAN1 500
      LAN2 1
      LAN3 1
      LAN4 1

      As of right now , LAN 1 does not give me access to MGMT and LAN 4 does not give me anything as trunk.

      Any idea what i did wrong ?

      JKnottJ 1 Reply Last reply Reply Quote 0
      • JKnottJ
        JKnott @Gerry26500
        last edited by

        @gerald26500 said in Switched Ethernet:

        The LAN interface itself is active but doesn’t have an IP (which makes it a trunk )
        My Goal is to have LAN1 as access for 500 and LAN4 as trunk for all other vlans

        A trunk has nothing to do with an IP address. While the switch will have an IP address, a trunk port doesn't. A trunk port is simply one that can carry multiple VLANs, compared to an access port, which is connected to 1 VLAN and does not normally pass VLAN tags.

        PfSense running on Qotom mini PC
        i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
        UniFi AC-Lite access point

        I haven't lost my mind. It's around here...somewhere...

        1 Reply Last reply Reply Quote 0
        • DerelictD
          Derelict LAYER 8 Netgate
          last edited by

          In order for pfSense to see the VLANs on its VLAN interfaces on mvneta1, the VLANs must also be tagged on switch port 5, which is the "trunk" link to pfSense on the SoC.

          0_1528682167723_SG-3100-Switch.png

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.