We have a customer with Cisco IOS switches, 10Gbit backbone, and move huge data around (CAD/manufacturing files) between VLANs. Most of our technicians cannot manage the Cisco IOS switches, only 3 of us are comfortable in the CLI. We would like to swap them out to Sophos or UniFi for ease of management by the technicians. This customer has a pair of HA XGS136s so uplinking their 10Gbit network to 1Gbit uplinks to route on a stick would be a significant bottleneck. Otherwise, with their limited internet service where they are located, the 136s are great.
I have a firewall and a switch in my lab, as well as a server with a number of network interfaces and virtual machines to play with.
I have IP addresses assigned for the VLANs.
I see the subnets show up in Static route:
However, running a packet capture on the firewall shows the traffic is still being sent to the firewall to be routed, not in the switch.
*Update*, I heard back from our Sales Engineer, that Engineering says InterVLAN routing is possible, so removed earlier text. The solution was really easy. Set the default gateway in my Linux test VMs to the switches VLAN IP. One was setup static and was missed. Pretty obvious.
I don't see any documentation that tells that the switches support InterVLAN routing and I am happy to report that it works great. I see a path ahead for a switch swap and get these into our ecosystem.
Added TAGs
[edited by: Raphael Alganes at 11:51 AM (GMT -7) on 30 Sep 2024]