TL-SG1016PE VLAN's with Proxmox / pfSense
TL-SG1016PE VLAN's with Proxmox / pfSense
Hi, I've purchased a SG1016PE as I've run out of ports on my existing switch and am having some problems with setting up the VLAN's on it. What I'm trying to achieve is my trunk port will be coming from my Dell server NIC to the SG1016PE, this is due to my Dell running Proxmox and then pfSense as a VM with VLAN's on it.
I've got VLAN 50 for VM's associated to my Proxmox server and it provides internet via the WAN side of pfSense.
At the moment, I have two cables connected to my new switch Port 1 which is for my Desktop PC and Port 16 that is currently connected to the existing switch TL-SG2210P.
Current switch (TL-SG2210P)
New switch (SG1016PE)
This is how my new switch is configured VLAN wise, ignore VLAN 75 for the moment as I need VLAN 50 up first:
Port 1 --> Desktop PC - PVID 1 - Untagged VLAN 1 and VLAN 50
Port 3 --> Dell NIC - PVID 1 - Untagged VLAN 1, Tagged VLAN 50
My issue is when I connect Port 3, I can still ping servers internally on my VLAN but I loose internet access.Should I look to remove Port 16 when I attempt to connect Port 3, is it causing a potential loop?
Could it also be because the TL-SG2210P is a L3 switch and the routes are setup on that whereas the SG1016PE has no routing function?
Any help would be much appreciated.
Thanks
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
It looks like SG1016PE can’t route so inter-VLAN routing needs to be done on pfSense.
If you want to connect the modem to the Dell server through the switch, you need one more VLAN, say VLAN 10. So, P16 untagged in VLAN 10, PVID = 10. Same for P15 to the Dell server NIC2. Remove these ports from VLAN 1. Alternatively, you could connect the modem directly to NIC2 and then you do not need an extra VLAN on the switch.
P2 to Dell NIC1 untagged in VLAN 1, PVID = 1, and tagged in VLAN 50 and VLAN 75. For that to work, VLAN 50 and 75 traffic from Proxmox needs to be tagged.
P5-7 to the cameras untagged in VLAN 75, PVID = 75. The ports for all other devices, except for Dell iDrac, untagged in VLAN 50, PVID = 50. Also, create a LAG for your Synology NAS NICs. The LAG, too, needs to be untagged in VLAN 50, PVID = 50. Since you use Blue Iris for NVR, not Surveillance Station, there is no need for VLAN 75 on NAS. Remove those ports from VLAN 1, too.
I’m not familiar with Dell iDrac, but probably it needs to be in a separate VLAN. I would try to have it in VLAN 1. Same for the switch and Proxmox and have one spare switchport in VLAN 1 for management.
- Copy Link
- Report Inappropriate Content
Information
Helpful: 0
Views: 1940
Replies: 11
Voters 0
No one has voted for it yet.