Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Managed switch not distributing other VLAN addresses

    Scheduled Pinned Locked Moved L2/Switching/VLANs
    36 Posts 5 Posters 2.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      MannenOR
      last edited by

      I am trying to make my switch "TL-SG108E" route my pfsense vlans. For some reason they keep going on my main OPT1 VLAN.

      I have attached screenshots of how I set up my VLANs and other settings. I probably am almost there but I can't figure the rest out sadly..
      Screenshot 2022-07-24 at 14.46.15.png Screenshot 2022-07-24 at 14.46.27.png Screenshot 2022-07-24 at 14.46.41.png Screenshot 2022-07-24 at 14.47.00.png Screenshot 2022-07-24 at 14.47.05.png Screenshot 2022-07-24 at 14.47.10.png Screenshot 2022-07-24 at 14.47.27.png

      In the TP-Link software I have the following data:

      802. 1Q VLAN Settings:
      1 DEFAULT 1-8 untagged
      45 - 2 Tagged, 8 untagged (Where my lan cable goes in from OPT)
      46 - 3-4 Tagged, 8 untagged.

      802.1Q PVID Settings:
      port 2 - PVID 45
      port 3-4 - PVID 46
      port 8- PVID

      M 1 Reply Last reply Reply Quote 0
      • M
        MannenOR @MannenOR
        last edited by

        Edit:

        @mannenor said in Managed switch not distributing other VLAN addresses:

        802.1Q PVID Settings:
        port 2 - PVID 45
        port 3-4 - PVID 46
        port 8- PVID

        802.1Q PVID Settings:
        port 2 - PVID 45
        port 3-4 - PVID 46
        port 8- PVID 1

        My cable from OTP1 goes into port 8

        J 1 Reply Last reply Reply Quote 0
        • J
          Jarhead @MannenOR
          last edited by

          @mannenor Post a screen shot of your switch settings. Both 802.1q vlan and 802.1q pvid settings pages.

          M 1 Reply Last reply Reply Quote 0
          • JKnottJ
            JKnott
            last edited by

            Some models of TP-Link switches do not handle VLANs properly. I had a similar problem with a TP-Link access point.

            PfSense running on Qotom mini PC
            i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
            UniFi AC-Lite access point

            I haven't lost my mind. It's around here...somewhere...

            M 1 Reply Last reply Reply Quote 0
            • M
              MannenOR @Jarhead
              last edited by

              @jarhead IMG-0800.jpeg IMG-0799.jpeg

              1 Reply Last reply Reply Quote 0
              • M
                MannenOR @JKnott
                last edited by

                @jknott said in Managed switch not distributing other VLAN addresses:

                switches do not handle

                Weird because I can set them up correctly without problem. The switch is the TP-Link -> TLSG108E btw.

                J JKnottJ 2 Replies Last reply Reply Quote 0
                • J
                  Jarhead @MannenOR
                  last edited by

                  @mannenor Those switches handle vlans just fine. The problem is setting them up is very "weird".

                  You posted pics of the same page.

                  M 1 Reply Last reply Reply Quote 0
                  • M
                    MannenOR @Jarhead
                    last edited by

                    @jarhead I guess you mean these settings?

                    IMG-0802.jpg IMG-0801.jpg

                    J 1 Reply Last reply Reply Quote 0
                    • J
                      Jarhead @MannenOR
                      last edited by

                      @mannenor nope.
                      Go back to your other picture. See where it says "802.1q vlans"?
                      That.

                      M 1 Reply Last reply Reply Quote 0
                      • M
                        MannenOR @Jarhead
                        last edited by

                        @jarhead said in Managed switch not distributing other VLAN addresses:

                        picture. See w

                        Ah my bad.. I see I send the same pic twice instead of a different one this is the other one

                        IMG-0803.jpeg

                        johnpozJ 1 Reply Last reply Reply Quote 0
                        • johnpozJ
                          johnpoz LAYER 8 Global Moderator @MannenOR
                          last edited by johnpoz

                          @mannenor You can not have more than 1 vlan untagged on any port.

                          You have vlan 1 on all 8 ports - now you also have 45 and 46 untagged on port 8.. You can only have 1 untagged on any port..

                          Your port 8 has 1, 45 and 46 all untagged... This is borked!!

                          An intelligent man is sometimes forced to be drunk to spend time with his fools
                          If you get confused: Listen to the Music Play
                          Please don't Chat/PM me for help, unless mod related
                          SG-4860 24.11 | Lab VMs 2.8, 24.11

                          M 1 Reply Last reply Reply Quote 0
                          • M
                            MannenOR @johnpoz
                            last edited by

                            @johnpoz Ah, so like this it should be fine I guess? But I'm getting the wrong lease and not the correct subnet when I change it like this. it Places me on a 169.254.. network and not the 192.100.. that I want.

                            What issue could it be the reason why it's not doing what I want in this case? I have copied the lan rules from my other VLAN's which do work.

                            Thanks in advance!

                            IMG-0804.jpeg

                            johnpozJ J 2 Replies Last reply Reply Quote 0
                            • johnpozJ
                              johnpoz LAYER 8 Global Moderator @MannenOR
                              last edited by johnpoz

                              What is not giving you the IP you want?

                              169.254 is indication that a dhcp client could not talk to a dhcp server.

                              So you removed vlan 1 from port 8, but your previous post showed the pvid on port 8 as 1, etc..

                              And you have port 7 in vlan 46 as the pvid, even though its set for vlan 5 as untagged..

                              An intelligent man is sometimes forced to be drunk to spend time with his fools
                              If you get confused: Listen to the Music Play
                              Please don't Chat/PM me for help, unless mod related
                              SG-4860 24.11 | Lab VMs 2.8, 24.11

                              1 Reply Last reply Reply Quote 0
                              • J
                                Jarhead @MannenOR
                                last edited by

                                @mannenor You have all kinds of issues here.
                                What port is going to your pfSense?
                                You said 8 I thought? But that port isn't tagged anywhere. You need to tag all vlans going to pfSense on that port.
                                Then you have ports tagged that should be untagged.
                                Don't tag a port connected to an end device (ie PC's etc.)

                                Next, port 7 is untagged in vlan 45, but you have the pvid set to 46. Change it to 45.

                                Judging by what you said you want, you should have port 8 as the only tagged port, carrying all 3 vlans.

                                Fix that stuff and test.

                                M 1 Reply Last reply Reply Quote 0
                                • M
                                  MannenOR @Jarhead
                                  last edited by

                                  @jarhead said in Managed switch not distributing other VLAN addresses:

                                  Don't tag a port connected to an end device (ie PC's etc.)

                                  This is what I have now and I was actually testing the ports on my windows pc where I am also setting up the routing on my VLAN's with the TP Interface.

                                  So I need to have a switch between the VLAN or it won't work? I guess that might be the problem than. I do have internet now again but it's still going through the OPT exit.

                                  The OTP port from my firewall netgate goes to port 8 on my TPLink Switch. And now currently I am testing on port 3 to reach the .46 interface aka VLAN 46.

                                  vlan-interface.jpg

                                  johnpozJ 1 Reply Last reply Reply Quote 0
                                  • JKnottJ
                                    JKnott @MannenOR
                                    last edited by

                                    @mannenor

                                    That depends on how old the switch is. Some with the problem can be updated. Some, such as my AP, are too old. So, first thing is check for an update and see if the problem continues.

                                    PfSense running on Qotom mini PC
                                    i5 CPU, 4 GB memory, 32 GB SSD & 4 Intel Gb Ethernet ports.
                                    UniFi AC-Lite access point

                                    I haven't lost my mind. It's around here...somewhere...

                                    M 1 Reply Last reply Reply Quote 0
                                    • M
                                      MannenOR @JKnott
                                      last edited by

                                      @jknott TL-SG108E is a new switch I recently bought last week..

                                      1 Reply Last reply Reply Quote 0
                                      • johnpozJ
                                        johnpoz LAYER 8 Global Moderator @MannenOR
                                        last edited by johnpoz

                                        @mannenor what a cluster you have..

                                        You have all your ports pvid set to 45 and 46, yet the only ports you have in 45 and 46 untagged is ports 7 and 8.

                                        Clearly you do not understand what a PVID is..

                                        This is the vlan the switch will put traffic coming into that port that has no tag.. So from what you posted untagged traffic coming into port 1, 5-6 are going to be in vlan 46

                                        From your last posting 1,5 and 6 would have a pvid of 1. 7 would have 45 and 8 46.

                                        Not exactly sure what your doing with port 4, you have 46 tagged it..

                                        What exactly do you have plugged into what on this switch?

                                        An intelligent man is sometimes forced to be drunk to spend time with his fools
                                        If you get confused: Listen to the Music Play
                                        Please don't Chat/PM me for help, unless mod related
                                        SG-4860 24.11 | Lab VMs 2.8, 24.11

                                        J 1 Reply Last reply Reply Quote 0
                                        • J
                                          Jarhead @johnpoz
                                          last edited by

                                          @johnpoz

                                          What exactly do you have plugged into what on this switch?

                                          Agreed.

                                          @MannenOR
                                          Post a drawing of what you actually want, topology"wise", and we can help you.
                                          As is, you're making a mess as we go.

                                          You need a trunk port going to pfSense. Tagged with all vlans.
                                          All other ports will be untagged with the vlan that you want the device plugged into that port on.

                                          See if you can do that.

                                          M 1 Reply Last reply Reply Quote 0
                                          • M
                                            MannenOR @Jarhead
                                            last edited by

                                            @jarhead So What I am trying to setup I have drawn over here. The NetGate Firewall goes to the managed switch, from there it goes from PORT 8. And I want my VLAN to work on outgoing Port 3 so that for the unmanaged switch, all devices will be on the VLAN45.

                                            Thanks for your time anyway guys I appreciate the help!

                                            WhatsApp Image 2022-07-24 at 7.20.00 PM.jpeg

                                            J 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.