NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

Josh_Manton's avatar
Nov 05, 2023

Two Active Switches With Redundant Uplink

Hi,

I am looking to connect both switches to my Firewalla each on port one. I am also looking to create a LAG between the two switches on the sfp ports. I am using the default vlan to assign ip addresses to the management port of the switches using dhcp. I also have a single vlan 20 for the remaining ports (also assigned via dhcp on different subnet from vlan 1) on the switches. My sfp lag between the two switches is a trunk for vlan 20. What I cannot figure out the correct STP (RSTP or MSTP) settings to prevent the switches from freaking out (rapid light blinking). The switches should know that all vlan 20 are routable without going through the firewalla and are acceptable via the connected LAG. Only the default vlan 1 should get routed via port 1 and any ip not on vlan 20. Also note that all of vlan 20 is on the same subnet. The firewalla also supports tree spanning which is turned on.

9 Replies

  • schumaku's avatar
    schumaku
    Guru - Experienced User

    These MS510TXM are not L3 routers. Of course, you can configure two or more VLANs. Don't know anything what should be special about your firewall and it's port 1. 

     

    Typical cause for loops could be failed attempts to configure LAGs for example. 

     

    Appears somehow you managed to create a loop on your network. Impossible to tell based on what you posted.

    • Josh_Manton's avatar
      Josh_Manton
      Guide
      No, the switches are not L3, but port 2 on the FW is connected to one switch and port 3 to the other switch. The switches are connected via SFP. The traffic from the FW is Trunk VLAN 2 & 3. The SFP link is also Trunk 2 & 3. I would think that MSTP could prevent loops?
      • Josh_Manton's avatar
        Josh_Manton
        Guide

        To answer my own question:

         

        I did not need to enable MSTP since each switch is 1 hop from the router. What I needed to do is under, Switching => STP, enable the option for "Forward BPDU while STP Disabled" and disable "Spanning Tree State". This allows the router to receive the packets that it is sending out and properly map out the network.

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More