The HP really allows you to have more than one untagged VLAN on a port? Doesn't 
that essentially 
wire them all together and give you one big broadcast domain? 

----- Original Message -----

> We are having problems with DHCP addresses "leaking" to other networks in our
> WAN. Each Windows domain serves up IP addresses for the LAN on which it
> sits.

> We have three networks that VLAN through a central web filter and firewall.
> Frequently, we see that an IP address on Network A has been assigned to a
> desktop on Network B. We are using HP Procurve switches.

> The config is as follows-

> Incoming from the three networks into a switch- -

> Network A- VLAN 10, port 1,10 tagged
> Network B- VLAN 11, port 2,10 tagged
> Network C- VLAN 12, port 3,10 tagged
> Out to the web filter- port 10 untagged for all three and default VLAN

> <web filter sits here>

> In from webfilter- port 10 untagged for all three and default VLAN
> Network A- VLAN 10, port 1,10 tagged to firewall port
> Network B- VLAN 11, port 2,10 tagged to firewall port
> Network C- VLAN 12, port 3,10 tagged to firewall port

> Can anyone help us figure out why the DHCP bleeding is occurring?

> Thanks!

-- 
Thanks, 

Joe Matuscak | Director of Technology 
Rohrer Corporation | Office: 330-335-1541 
717 Seville Road | Wadsworth, Ohio 44281 
www.rohrer.com | A Better Package 

Reply via email to