× NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Orbi WiFi 7 RBE973
Reply

Can ping everything on the internet but cannot access any webpage. Timing out

davmerc1
Aspirant

Can ping everything on the internet but cannot access any webpage. Timing out

Hi.
I`m new to Netgear switches. Got a bunch of ProSafe GS728TPv2  that I have configured to be like this.

User PC (VLAN 10)-- VoIP Phone(VLAN20)--Firewall--Internet.

 

The Users which is in VLAN 10 has to connect to the LAN port of the VoIP phone (VLAN 20) to get IP address & have access to the internet which the 1st part is working fine. They are getting access to the Internet but all webpages are not loading & are timing out. Can ping 8.8.8.8 but cannot load any webpages. (Not DNS issue as webpage appears to load & takes a long time before timing out eventually). I`ve check on the firewall by connecting directly & everything is working fine there. No web filtering is configured yet. My guess is because of COS/DiffServ of the VLAN VoIP ? Hope you guys can help me !
Please find below the startup config file for the switch:

 

SYSTEM CONFIG FILE ::= BEGIN
! Model: GS728TPPv2
! System Description: NETGEAR 24-Port Gigabit PoE+ Smart Managed Pro Switch with 4 SFP Ports (GS728TPPv2)
! Firmware Version: 6.0.9.3 [Oct 28 2021 - 21:54:58]
! Loader Version: 1.0.0.5 [2017-12-28 09:35:22 UTC]
! Config Version: 0
! Hardware Version: 2
! System Name: 1st Floor Switch
! MAC Address: 80:CC:9C:E5:45:51
! Serial Number: 5WX716DE5084F
! System Up Time: 0 days, 0 hours, 12 mins, 48 secs
!
!
!
system name "1st Floor Switch"
system location "1st Floor"
system contact
web hidePopup lanOnly,
ip address 192.168.15.5 mask 255.255.255.0
ip default-gateway 192.168.15.254
no ip domain lookup
ip name-server 8.8.8.8
!
username "admin" secret encrypted tI46q63n0pWHFwAdxRcCzePOZsENg5+PjcNdqbZCOqY=
!
!
!
vlan 10
name "User_VLAN"
vlan 15
name "Management_VLAN"
vlan 20
name "VoIP_VLAN"
vlan 99
name "Native_VLAN"
vlan 4088
name "Auto-VoIP"
vlan 4089
name "Auto-Video"
management-vlan vlan 15
voice-vlan oui 0 0:1:0 SIEMENS
voice-vlan oui 1 0:3:0 CISCO1
voice-vlan oui 2 0:12:0 CISCO2
voice-vlan oui 3 0:60:0 NITSUKO
voice-vlan oui 4 0:d0:0 PINTEL
voice-vlan oui 5 0:e0:0 VERILINK
voice-vlan oui 6 0:e0:0 3COM
voice-vlan oui 7 0:4:0 AVAYA1
voice-vlan oui 8 0:1b:0 AVAYA2
!
!
!
!
!
!
!
spanning-tree mst configuration
name "80-CC-9C-E5-45-45"
!
!
!
!
lldp med network-policy 1 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 2 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 3 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 4 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 5 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 6 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 7 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 8 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 9 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 10 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 11 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 12 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 13 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 14 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 15 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 16 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 17 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 18 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 19 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 20 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 21 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 23 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy 24 app voice mode vlan-id val 20 cos disable auth enable dscp 0
lldp med network-policy enable voice
snmp user "admin" "AUTH" auth md5 encrypted tI46q63n0pWHFwAdxRcCzePOZsENg5+PjcNdqbZCOqY=
!
!
!
!
ip https
!
!
class-map "ClassVOIPVLAN" ipv4
match vlan 20
policy-map "PolicyVoIPVLAN"
class "ClassVOIPVLAN"
set queue 3
!
!
!
!
!
!
!
interface lag1
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag2
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag3
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag4
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag5
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag6
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag7
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag8
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag9
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag11
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag12
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag13
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag14
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag15
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface lag16
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan remove 1
!
interface g1
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g2
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g3
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g4
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g5
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g6
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g7
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g8
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g9
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g10
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g11
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g12
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g13
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g14
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g15
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g16
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g17
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g18
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g19
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g20
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g21
switchport hybrid pvid 10
switchport hybrid allowed vlan add 20 tagged
switchport hybrid allowed vlan add 10 untagged
switchport hybrid allowed vlan remove 1
service-policy input PolicyVoIPVLAN
!
interface g22
switchport hybrid pvid 15
switchport hybrid allowed vlan add 15 untagged
switchport hybrid allowed vlan remove 1
description "Management Port"
!
interface g23
switchport hybrid pvid 99
switchport hybrid allowed vlan add 10,15,20 tagged
switchport hybrid allowed vlan add 99 untagged
switchport hybrid allowed vlan remove 1
description "Trunk Link to Core Switch01"
service-policy input PolicyVoIPVLAN
!
interface g24
switchport hybrid pvid 99
switchport hybrid allowed vlan add 10,15,20 tagged
switchport hybrid allowed vlan add 99 untagged
switchport hybrid allowed vlan remove 1
description "Trunk Link to Core Switch02"
service-policy input PolicyVoIPVLAN
!
interface g25
switchport hybrid allowed vlan remove 1
!
interface g26
switchport hybrid allowed vlan remove 1
!
interface g27
switchport hybrid allowed vlan remove 1
!
interface g28
switchport hybrid allowed vlan remove 1
!
!
!
!
!

 

 

 

Model: GS728TPv2|24-Port Gigabit Ethernet PoE+ Smart Managed Pro Switch with 4 SFP Ports (190W)
Message 1 of 4
JeraldM
NETGEAR Employee Retired

Re: Can ping everything on the internet but cannot access any webpage. Timing out

@davmerc1,

 

Welcome to the community! 

 

Try enabling domain lookup by typing "ip domain-lookup" on the CLI.

For further assistance, you can open a support case here.

 


Regards, 

 

JeraldM

NETGEAR Community Team

Message 2 of 4
davmerc1
Aspirant

Re: Can ping everything on the internet but cannot access any webpage. Timing out

Hi @JeraldM 

 

Thanks for the reply.

Apologies the model is GS728TPP. I believe there is no CLI on that model?

Message 3 of 4
schumaku
Guru

Re: Can ping everything on the internet but cannot access any webpage. Timing out


@davmerc1 wrote:

Apologies the model is GS728TPP. I believe there is no CLI on that model?


According to the config posted it's a v2 

 

SYSTEM CONFIG FILE ::= BEGIN
! Model: GS728TPPv2
...

 

Since a recent firmware update, the Light CLI was added - consult the https://www.netgear.com/support/product/GS728TPPv2 FMI.

 

However, the command @JeraldM proposed (available typically on managed switches only) is to enable the DNS resolver on the switch management, allowing to use FQDNs e.g. for NTP servers, SNMP trap receivers, ... and has absolute no impact on the switch data traffic. On your current startup FWIW it's disabled by the "no ip domain lookup" - the control is on the DNS Configuration -> DNS Status [x] Disable Enable.

 

From wally brain, there is no such control on the Light CLI.

 

Connecting the PC direct to port 1..21, does it allow the Internet access as expected?

 

Suspect there is some VLAN config inconsistency on your devices and network. 

Message 4 of 4
Discussion stats
  • 3 replies
  • 1155 views
  • 0 kudos
  • 3 in conversation
Announcements