NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

billycee's avatar
billycee
Aspirant
Feb 09, 2019
Solved

VLAN Configuration

Hi everyone, this is my first time I've encountered Netgear switches in enterprise setups and I'm finding the vlan configuration slightly confusing to say the least. I'm hoping that I'll be put on the right path after this post :-)

 

Here's my setup:

 

Cisco Meraki MX64 firewall is connected to Internet. It is configured with 2 vlans:

  • vlan 1 - plant network 10.99.14.0 /24 (gateway 10.99.14.254)
  • vlan 22 - client network 192.168.14.0 /24 (gateway 192.168.14.10)

All devices on vlan 1 are statically addressed. DHCP is running on vlan 22.

 

MX LAN port 1 is configured as a trunk port, native vlan 1 but vlan 22 is also allowed.

MX LAN port 2 is configured as a trunk port, native vlan 22 but vlan 1 is also allowed.

 

MX LAN 1 port connects to Netgear GS724T port 1

 

I also have a Meraki MX42 Access Point with a statically assigned address of 192.168.14.9. This is connected to GS724T port 12. This is what I have configured on the GS724T VLAN page:

 

  • I have created vlan 22
  • I have set port 12 in vlan 22 untagged
  • In PVID config for port 12, I have set Configured PVID, Current PVID and VLAN member to 22. VLAN Tag is set to none.

 

The Access Point advertises the SSID's but fails to come online. Is my Netgear vlan configuration correct?

 

Many thanks in advance.

  • Tag the switch port 1 (uplink port to firewall router) VLAN 22. 

     

    MX firewall connected to port 1 of NETGEAR switch as uplink port.

     

    Access point is VLAN unaware device since you set the PVID to 22 and untag the port 12 VLAN membership. 

     

     

     

     

4 Replies

  • Tag the switch port 1 (uplink port to firewall router) VLAN 22. 

     

    MX firewall connected to port 1 of NETGEAR switch as uplink port.

     

    Access point is VLAN unaware device since you set the PVID to 22 and untag the port 12 VLAN membership. 

     

     

     

     

    • billycee's avatar
      billycee
      Aspirant

      Thanks so much, that worked. The AP is now online


      There is also another Netgear switch connected to the first one via fibre.

       

      • Netgear switch 1 fibre port 25 connected to Netgear switch 2 fibre port 25
      • Meraki Access Point connected to port 20 of switch 2

       

       Is this configuration for Netgear switch 2 correct?

      • Port 20 tagged in vlan 22
      • Port 25 untagged in vlan 22

       

      Thanks in advance.

       

    • billycee's avatar
      billycee
      Aspirant

      Nodism1125 wrote:

      Tag the switch port 1 (uplink port to firewall router) VLAN 22. 

       

      MX firewall connected to port 1 of NETGEAR switch as uplink port.

       

      Access point is VLAN unaware device since you set the PVID to 22 and untag the port 12 VLAN membership. 

       

       

       

       



      Thanks so much, that worked. The AP is now online


      There is also another Netgear switch connected to the first one via fibre.

       

      • Netgear switch 1 fibre port 25 connected to Netgear switch 2 fibre port 25
      • Meraki Access Point connected to port 20 of switch 2

       

       Is this configuration for Netgear switch 2 correct?

      • Port 20 tagged in vlan 22
      • Port 25 untagged in vlan 22

       

      Thanks in advance.

       

      • Nodism1125's avatar
        Nodism1125
        NETGEAR Expert

        Hi billycee, 

         

        Switch 1 is connected to Switch 2 via fiber tag the uplink port 25. 

        Create the same VLAN 22 to Switch 2 and member 20 as untag port

         If the Meraki AP is VLAN unaware, untag the port 20

         

        How do I setup a VLAN trunk link between two NETGEAR switches?link

         

         

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More