I have one physical trusted interface GE1/2 feeding a switch in our datacenter with one trusted VLAN running on that port. Its IP is 172.17.2.1 All my other VLANs are untrusted and configured for RAPs and their respective subnets.
All our servers hang off that trusted GE1/2 port and are in the 172.17.2.0/24 subnet. The best way to describe you what is happening is to show you a condensed output of netstat on one of our exchange servers.
Active Connections
Proto Local Address Foreign Address State
TCP 172.17.2.65:56819 172.17.2.1:49244 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49248 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49254 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49257 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49284 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49351 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49353 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49457 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49458 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49483 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49487 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49583 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49588 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49717 ESTABLISHED
TCP 172.17.2.65:56819 172.17.2.1:49718 ESTABLISHED
Those foriegn addresses are all different clients on different VLANs hung of RAPs on different subnets. Basically any thing on any other VLAN that communicates back to any thing on this 172.17.2.0/24 network has its source address translated and appears as if it is coming from the default gateway address of that subnet. It has to be some sort of address translation between VLANs as everything still communicates properly, I just can't see the actual IP of the internal clients on different VLANs talking to it. This translation is not occuring between any of the the other RAP VLANs to eachother. I can plainly see their source IPs from one to the other.
This issue wreaks havoc on quite a lot of things especially with System Center and trying to watch any type of log. All I ever see is 2.1. :manmad:
I'm happy to provide extra info and settings and what not but I'm hoping someone immediatley understands and knows whats going on.
Thanks!!