chap2_交换机VLAN设置v2

上传人:xia****ai 文档编号:243139528 上传时间:2024-09-16 格式:PPT 页数:46 大小:473.50KB
返回 下载 相关 举报
chap2_交换机VLAN设置v2_第1页
第1页 / 共46页
chap2_交换机VLAN设置v2_第2页
第2页 / 共46页
chap2_交换机VLAN设置v2_第3页
第3页 / 共46页
点击查看更多>>
资源描述
单击此处编辑母版标题样式,单击此处编辑母版文本样式,第二级,第三级,第四级,第五级,*,第,2,章 交换机,VLAN,配置,2.1,交换机,VLAN,的端口划分和配置,2.1.1,操作内容和环境,操作内容,本节主要介绍在思科交换机上创建,/,删除,VLAN,、进行,VLAN,接口配置,组网环境 一台思科,Catalyst2950,二层交换机:,Switch1,,,IOS (C2950-I6Q4L2-M),版本,12.1(20)EA1a,,,PC,机,4,台,直通网线,4,根,,console,配置电缆一根,,PC,机与交换机快速以太口通过网线相连,网络拓扑图,1,2.1.2 VLAN,的划分,以太网交换技术的一个主要方面是,VLAN,(,Virtual Local Area Network,,虚拟局域网),它使用交换机将工作站和服务器聚集在逻辑概念的组中,即是一种通过将局域网内的设备逻辑地而不是物理地划分成一个个网段,从而实现虚拟工作组的技术,.,VLAN,的主要目的就是划分广播域,,VLAN,的划分方法有以下几种,:,基于端口的,VLAN,划分,基于,MAC,地址的,VLAN,划分,基于协议的,VLAN,划分,基于子网的,VLAN,划分,2.1.3,操作步骤,在配置前,请先使用”,erase startup-,config,”,、“,no,vlan,2-1001”,等命令清除以前的配置信息,并重启交换机,创建超级终端,通过,Console,口进入,Switch1,交换机,VLAN,配置,在进行配置前,先将以前配置的,VLAN,从数据库中清除,以保证配置的正确性。其命令如下:,2,Switch1#vlan database #,进入,VLAN,设置界面,Switch1(vlan)#no,vlan,vlan_id,name #,清除,VLAN,名称,Switch1(vlan)#no,vlan,vlan_id,#,清除,VLAN,清除,VLAN,的另一种方法是:在特权,EXEC,模式下,用命令“,delete,vlan.dat,”,删除,vlan.dat,文件,在交换机上创建,VLAN,Switchenable #,进入特权会话模式,Switch#config,terminal #,进入配置状态,Enter configuration commands, one per line. End with CNTL/Z.,Switch(config)#hostname,Switch1 #,修改交换机主机名,Switch1(config)# exit,Switch1#vlan database #,进入,VLAN,设置界面,Switch1(vlan)#vlan 2 name work1 #,创建,VLAN2,其名称为,work1,VLAN 2 modified:,Name: work1,Switch1(vlan)#vlan 3 name work2,VLAN 3 modified:,Name: work2,3,Switch1(vlan)#exit,APPLY completed.,Exiting.,配置,VLAN,端口,Switch1#,config,terminal,Switch1(config)# interface range fa0/9 11,fa0/17 20 #,进入组配置界面,Switch1(Config-if-range)#,switchport,mode access #,设置组中各端口的端口模式,Switch1(Config-if-range)#interface range fa0/9 11,Switch1(config-if-range)#switchport access,vlan,2 #,将,fa0/9,到,fa0/11,三个端口加入到,VLAN 2,Switch1(config-if-range)# interface range fa0/17 20,Switch1(config-if-range)#switchport access,vlan,3 #,将,fa0/17,到,fa0/20,四个端口加入到,VLAN 3,Switch1(config-if-range)#end,Switch1#,4,设置,PC,机地址,测试其连通性,设置四台,PC,机的,IP,地址都在同一个网段上:,PC-A,:,IP,地址为:,192.168.20.2,,子网掩码:,255.255.255.0,,默认网关:空;,PC-B,:,IP,地址为:,192.168.20.4,,子网掩码:,255.255.255.0,,默认网关:空;,PC-C,:,IP,地址为:,192.168.20.6,,子网掩码:,255.255.255.0,,默认网关:空;,PC-D,:,IP,地址为:,192.168.20.8,,子网掩码:,255.255.255.0,,默认网关:空;,在,PC-A,上执行:,C:ping 192.168.20.4 #,测试结果连通,C:ping 192.168.20.6 #,测试结果不通,C:ping 192.168.20.8 #,测试结果不通,在,PC-C,上执行:,C:ping 192.168.20.2 #,测试结果不通,C:ping 192.168.20.4 #,测试结果不通,C:ping 192.168.20.8 #,测试结果连通,小结,5,2.2 VLAN,之间的路由协议配置,2.2.1,操作内容和环境,操作内容,:,本节主要介绍三层交换机的路由功能,组网环境:两台思科,Catalyst3550,三层交换机:,Switch1,和,Switch2,,,IOS (C3550-I5Q3L2-M),版本,12.2(25)SEA,,,PC,机,3,台,交叉网线,1,根,直通网线,3,根,,console,配置电缆,2,根,网络拓扑图,:,6,2.2.2,操作步骤,在配置前,请先使用”,erase startup-,config,”,、“,no,vlan,2-1001”,等命令清除以前的配置信息,并重启交换机,创建超级终端,通过,Console,口进入交换机,设置交换机,VLAN 1,端口地址,测试交换机之间的连通性,交换机,Switch1,的相关配置命令,Switchenable #,进入特权会话模式,Switch#config,terminal #,进入配置状态,Enter configuration commands, one per line. End with CNTL/Z.,Switch(config)#hostname,Switch1 #,修改交换机主机名,Switch1(config)#interface,vlan,1 #,进入,VLAN,端口配置界面,Switch1(config-if)#ip address 192.168.1.1 255.255.255.0,Switch1(config-if)#no shutdown #,启动虚端口,Switch1(config-if)#end,Switch1#,7,交换机,Switch2,的相关配置命,Switchenable,Switch#config,terminal,Enter configuration commands, one per line. End with CNTL/Z.,Switch(config)#hostname,Switch2,Switch2(config)#interface,vlan,1,Switch2(config-if)#ip address 192.168.1.2 255.255.255.0,Switch2(config-if)#no shutdown,Switch2(config-if)#end,Switch2#,测试端口连通性,Switch2#ping 192.168.1.1,#,测试交换机的连通性,Type escape sequence to abort.,Sending 5, 100-byte ICMP,Echos,to 192.168.1.1, timeout is 2 seconds:,!,Success rate is 100 percent (5/5), round-trip min/,avg,/max = 1/1/4 ms,说明两台交换机是连通的,8,创建交换机多个,VLAN,虚接口,并配置地址,交换机,Switch1,的相关配置命令,Switch1#vlan database #,进入,VLAN,设置界面,Switch1(vlan)#vlan 2 #,创建,VLAN2,VLAN 2 added:,Name: VLAN0002,Switch1(vlan)#vlan 3,VLAN 3 added:,Name: VLAN0003,Switch1(vlan)#exit,APPLY completed.,Exiting.,Switch1#config terminal,Switch1(config)#interface range fa0/9 10,fa0/17 18 #,进入组配置界面,Switch1(Config-if-range)#switchport mode access #,设置组中各端口的端口模式,Switch1(Config-if-range)#interface range fa0/9 10,9,Switch1(config-if-range)#switchport access,vlan,2 #,将,fa0/9,和,fa0/10,两个端口加入到,VLAN 2,Switch1(config-if-range)#interface range fa0/17 18,Switch1(config-if-range)#switchport access,vlan,3,Switch1(config-if-range)#exit,Switch1(config)#interface,vlan,2 #,进入,VLAN,端口配置界面,Switch1(config-if)#ip address 192.168.20.1 255.255.255.0,Switch1(config-if)#no shutdown #,对,VLAN1,之外的其它,VLAN,,不用本命令也可以,#VLAN,接口自动变为,up,状态,Switch1(config)#interface,vlan,3 #,进入,VLAN,端口配置界面,Switch1(config-if)#ip address 192.168.30.1 255.255.255.0,Switch1(config-if)#end,Switch1#,交换机,Switch2,的相关配置命令,Switch2#vlan database,Switch2(vlan)#vlan 2 #,创建,VLAN10,其名称为,work1,VLAN 2 added:,Name: VLAN0002,Switch2(vlan)#exit,APPLY completed.,Exiting.,10,Switch2#config terminal,Switch2(config)#interface range fa0/9 10,Switch2(Config-if-range)#switchport mode access,Switch2(config-if-range)#switchport access,vlan,2,Switch2(config-if-range)#exit,Switch2(config)#interface,vlan,2,Switch2(config-if)#ip address 192.168.40.1 255.255.255.0,Switch2(config-if)#no shutdown,Switch2(config-if)#end,Switch2#,VLAN,间静态路由设置,交换机,Switch1,:,Switch1#config terminal,Switch1(config)#ip routing #,启动路由协议,Switch1(config)#ip route 192.168.40.0 255.255.255.0 192.168.1.2,Switch1(config)#exit,Switch1#,交换机,Switch2,11,Switch2#config terminal,Switch2(config)#ip routing #,启动路由协议,Switch2(config)#ip route 192.168.20.0 255.255.255.0 192.168.1.1,Switch2(config)#ip route 192.168.30.0 255.255.255.0 192.168.1.1,Switch2(config)#exit,Switch2#,VLAN,间静态路由设置,设置,PC,机地址:,PC-A,:,IP,地址:,192.168.20.2,,子网掩码是:,255.255.255.0,,默认网关:,192.168.20.1,;,PC-B,:,IP,地址:,192.168.30.2,,子网掩码是:,255.255.255.0,,默认网关:,192.168.30.1,;,PC-C,:,IP,地址:,192.168.40.2,,子网掩码是:,255.255.255.0,,默认网关:,192.168.40.1,;,然后进行测试,Switch1#ping 192.168.40.2,Type escape sequence to abort.,Sending 5, 100-byte ICMP,Echos,to 192.168.40.2, timeout is 2 seconds:,!,12,Switch2#ping 192.168.20.2,Type escape sequence to abort.,Sending 5, 100-byte ICMP,Echos,to 192.168.20.2, timeout is 2 seconds:,!,Success rate is 100 percent (5/5), round-trip min/,avg,/max = 1/1/4 ms,这说明,Switch2,与,PC-A,机器是连通的。,Switch2#ping 192.168.30.2,Type escape sequence to abort.,Sending 5, 100-byte ICMP,Echos,to 192.168.30.2, timeout is 2 seconds:,!,Success rate is 100 percent (5/5), round-trip min/,avg,/max = 1/1/4 ms,这说明,Switch2,与,PC-B,机器是连通的,查看路由表信息,显示三层交换机,Switch1,上的路由表,Switch1#show,ip,route,Codes: C - connected,S - static, I - IGRP, R - RIP, M - mobile, B - BGP,D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area,13,N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2,E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP,i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2,ia,- IS-IS inter area,* - candidate default, U - per-user static route, o - ODR,P - periodic downloaded static route,Gateway of last resort is not set,C 192.168.30.0/24 is directly connected, Vlan3,S 192.168.40.0/24 1/0 via 192.168.1.2,C 192.168.20.0/24 is directly connected, Vlan2,C 192.168.1.0/24 is directly connected, Vlan1,显示三层交换机,Switch2,上的路由表,Switch2#show,ip,route,Codes: C - connected,S - static, I - IGRP, R - RIP, M - mobile, B BGP,D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area,N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2,E1 - OSPF external type 1, E2 - OSPF external type 2, E EGP,i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2,ia,- IS-IS inter area,* - candidate default, U - per-user static route, o - ODR,P - periodic downloaded static route,14,Gateway of last resort is not set,S 192.168.30.0/24 1/0 via 192.168.1.1,C 192.168.40.0/24 is directly connected, Vlan2,S 192.168.20.0/24 1/0 via 192.168.1.1,C 192.168.1.0/24 is directly connected, Vlan1,VLAN,间动态路由,删除以前设置的静态路由,在交换机,1,上删除静态路由:,Switch1#config terminal,Switch1(config)#no,ip,route 192.168.40.0 255.255.255.0 192.168.1.2,在交换机,2,上删除静态路由,Switch2#,config,terminal,Switch2(config)#no,ip,route 192.168.20.0 255.255.255.0 192.168.1.1,Switch2(config)#no,ip,route 192.168.30.0 255.255.255.0 192.168.1.1,利用,rip,协议,设置动态路由,在交换机,1,上设置动态路由:,Switch1(config)#router rip #,启动,rip,协议,Switch1(config-router)#network 192.168.1.0#,设置启用,RIP,协议的网络,15,Switch1(config-router)#network 192.168.20.0,Switch1(config-router)#network 192.168.30.0,Switch1(config-router)#end,在交换机,2,上设置动态路由:,Switch1(config)#router rip,Switch2(config-router)#network 192.168.40.0,Switch2(config-router)#network 192.168.1.0,Switch2(config-router)#end,测试连通性,Switch1#ping 192.168.40.2,Type escape sequence to abort.,Sending 5, 100-byte ICMP,Echos,to 192.168.40.2, timeout is 2 seconds:,!,Success rate is 100 percent (5/5), round-trip min/,avg,/max = 1/1/4 ms,Switch2#ping 192.168.20.2,Type escape sequence to abort.,Sending 5, 100-byte ICMP,Echos,to 192.168.20.2, timeout is 2 seconds:,!,16,Success rate is 100 percent (5/5), round-trip min/,avg,/max = 1/1/4 ms,Switch2#ping 192.168.30.2,Type escape sequence to abort.,Sending 5, 100-byte ICMP,Echos,to 192.168.30.2, timeout is 2 seconds:,!,Success rate is 100 percent (5/5), round-trip min/,avg,/max = 1/1/4 ms,查看路由表,Switch1#show,ip,route,Codes: C - connected, S - static, I - IGRP,R - RIP, M - mobile, B BGP,D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area,N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2,E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP,i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2,ia,- IS-IS inter area,* - candidate default, U - per-user static route, o - ODR,P - periodic downloaded static route,Gateway of last resort is not set,17,C 192.168.30.0/24 is directly connected, Vlan3,R 192.168.40.0/24 120/1 via 192.168.1.2, 00:00:18, Vlan1,C 192.168.20.0/24 is directly connected, Vlan2,C 192.168.1.0/24 is directly connected, Vlan1,Switch2#show,ip,route,Codes: C - connected, S - static, I - IGRP,R - RIP, M - mobile, B BGP,D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area,N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2,E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP,i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2,ia,- IS-IS inter area,* - candidate default, U - per-user static route, o - ODR,P - periodic downloaded static route,Gateway of last resort is not set,R 192.168.30.0/24 120/1 via 192.168.1.1, 00:00:08, Vlan1,C 192.168.40.0/24 is directly connected, Vlan2,R 192.168.20.0/24 120/1 via 192.168.1.1, 00:00:08, Vlan1,C 192.168.1.0/24 is directly connected, Vlan1,查看,RIP,配置信息,18,Switch1#show,ip,protocols,* IP Routing is NSF aware *,Routing Protocol is rip,Sending updates every 30 seconds, next due in 22 seconds,Invalid after 180 seconds, hold down 180, flushed after 240,Outgoing update filter list for all interfaces is not set,Incoming update filter list for all interfaces is not set,Redistributing: rip,Default version control: send version 1, receive any version,Interface Send,Recv,Triggered RIP Key-chain,Vlan1 1 1 2,Vlan2 1 1 2,Vlan3 1 1 2,Automatic network summarization is in effect,Maximum path: 4,Routing for Networks:,192.168.1.0,19,192.168.20.0,192.168.30.0,Routing Information Sources:,Gateway Distance Last Update,192.168.1.2 120 00:00:21,Distance: (default is 120),Switch2#show,ip,protocols,Routing Protocol is “rip”,Sending updates every 30 seconds, next due in 3 seconds,Invalid after 180 seconds, hold down 180, flushed after 240,Outgoing update filter list for all interfaces is not set,Incoming update filter list for all interfaces is not set,Redistributing: rip,Default version control: send version 1, receive any version,Interface Send,Recv,Triggered RIP Key-chain,Vlan1 1 1 2,Vlan2 1 1 2,Automatic network summarization is in effect,20,Maximum path: 4,Routing for Networks:,192.168.1.0,192.168.40.0,Routing Information Sources:,Gateway Distance Last Update,192.168.1.1 120 00:00:26,Distance: (default is 120),利用,debug,ip,rip,命令对,RIP,报文进行分析,查看报文,分析,RIP,进程,Switch1# debug,ip,rip #,启动,debug,命令,查看,rip,报文,RIP protocol debugging is on,Switch1#,04:37:45:,RIP: received v1 update from 192.168.1.2 on Vlan1,04:37:45: 192.168.40.0 in 1 hops,04:37:45: RIP:,ignored v1 update from bad source 192.168.40.1 on Vlan2,04:37:53: RIP:,sending v1 update to 255.255.255.255 via Vlan1 (192.168.1.1),04:37:53: RIP:,build update entries,21,Maximum path: 4,04:37:53: network 192.168.20.0 metric 1,04:37:53: network 192.168.30.0 metric 1,04:37:53: RIP:,sending v1 update to 255.255.255.255 via Vlan2 (192.168.20.1),04:37:53: RIP:,build update entries,04:37:53: network 192.168.1.0 metric 1,04:37:53: network 192.168.30.0 metric 1,04:37:53: network 192.168.40.0 metric 2,04:37:53: RIP:,sending v1 update to 255.255.255.255 via Vlan3 (192.168.30.1),04:37:53: RIP:,build update entries,04:37:53: network 192.168.1.0 metric 1,04:37:53: network 192.168.20.0 metric 1,04:37:53: network 192.168.40.0 metric 2,22,查看配置,RIP,的版本,查看报文收发情况,Switch1#undebug all #,关闭,debug,调试,All possible debugging has been turned off,Switch1#config terminal,Switch1(config)#router rip,Switch1(config-router)#version 2 #,设置为,RIPv2,组播方式,Switch1(config-router)#end,switch1#show,ip,protocol,* IP Routing is NSF aware *,Routing Protocol is rip,Sending updates every 30 seconds, next due in 24 seconds,Invalid after 180 seconds, hold down 180, flushed after 240,Outgoing update filter list for all interfaces is not set,Incoming update filter list for all interfaces is not set,Redistributing: rip,Default version control: send version 2, receive version 2,Interface Send,Recv,Triggered RIP Key-chain,23,Vlan1 2 2,Vlan2 2 2,Vlan3 2 2,Automatic network summarization is in effect,Maximum path: 4,Routing for Networks:,192.168.1.0,192.168.20.0,192.168.30.0,Routing Information Sources:,Gateway Distance Last Update,192.168.1.2 120 00:01:41,Distance: (default is 120),switch1#,从上面的显示信息可以看出,,switch1,只能接收,RIP V2,的更新消息,Switch1# debug,ip,rip,RIP protocol debugging is on,Switch1#,24,05:27:23: RIP: ignored v1 packet from 192.168.1.2 (illegal version),05:27:23: RIP: ignored v1 packet from 192.168.40.1 (illegal version),05:27:24: RIP: sending v2 update to 224.0.0.9 via Vlan1 (192.168.1.1),05:27:24: RIP: build update entries,05:27:24:,192.168.20.0/24 via 0.0.0.0, metric 1, tag 0,05:27:24:,192.168.30.0/24 via 0.0.0.0, metric 1, tag 0,05:27:24: RIP: sending v2 update to 224.0.0.9 via Vlan2 (192.168.20.1),05:27:24: RIP: build update entries,05:27:24: 192.168.1.0/24 via 0.0.0.0, metric 1, tag 0,05:27:24: 192.168.30.0/24 via 0.0.0.0, metric 1, tag 0,05:27:24: 192.168.40.0/24 via 0.0.0.0, metric 2, tag 0,05:27:24: RIP: sending v2 update to 224.0.0.9 via Vlan3 (192.168.30.1),05:27:24: RIP: build update entries,05:27:24: 192.168.1.0/24 via 0.0.0.0, metric 1, tag 0,05:27:24: 192.168.20.0/24 via 0.0.0.0, metric 1, tag 0,05:27:24: 192.168.40.0/24 via 0.0.0.0, metric 2, tag 0,Switch2# debug,ip,rip,RIP protocol debugging is on,Switch2#,25,switch1#,15:59:42: RIP: ignored v2 update from bad source 192.168.20.1 on Vlan2,15:59:49: RIP:,sending v1 update to 255.255.255.255 via Vlan1 (192.168.1.2),15:59:49: RIP: build update entries,15:59:49: network 192.168.40.0 metric 1,15:59:49: RIP:,sending v1 update to 255.255.255.255 via Vlan2 (192.168.40.1),15:59:49: RIP: build update entries,15:59:49: network 192.168.1.0 metric 1,15:59:49: network 192.168.20.0 metric 2,15:59:49: network 192.168.30.0 metric 2,15:59:55: RIP:,received v2 update from 192.168.1.1 on Vlan1,15:59:55: 192.168.20.0/24 via 0.0.0.0 in 1 hops,15:59:55: 192.168.30.0/24 via 0.0.0.0 in 1 hops,16:00:09: RIP: ignored v2 update from bad source 192.168.20.1 on Vlan2,16:00:17: RIP:,sending v1 update to 255.255.255.255 via Vlan1 (192.168.1.2),26,16:00:17: RIP: build update entries,16:00:17: network 192.168.40.0 metric 1,16:00:17: RIP:,sending v1 update to 255.255.255.255 via Vlan2 (192.168.40.1),16:00:17: RIP: build update entries,16:00:17: network 192.168.1.0 metric 1,16:00:17: network 192.168.20.0 metric 2,16:00:17: network 192.168.30.0 metric 2,16:00:21: RIP: received v2 update from 192.168.1.1 on Vlan1,16:00:21: 192.168.20.0/24 via 0.0.0.0 in 1 hops,16:00:21: 192.168.30.0/24 via 0.0.0.0 in 1 hops,16:00:35: RIP: ignored v2 update from bad source 192.168.20.1 on Vlan2,16:00:47: RIP:,sending v1 update to 255.255.255.255 via Vlan1 (192.168.1.2),16:00:47: RIP: build update entries,16:00:47: network 192.168.40.0 metric 1,关闭,debug,调试,undebug,all,27,2.3,交换机端口中继(,Trunk,)属性配置,2.3.1,操作内容和环境,操作内容,:,本节主要介绍交换机端口中继(,trunk,)属性的配置,组网环境:一台思科,Catalyst3550,三层交换机:,Switch1,,,IOS (C3550-I5Q3L2-M),版本,12.2(25)SEA,;一台思科,Catalyst2950,二层交换机:,Switch2,,,IOS (C2950-I6Q4L2-M),版本,12.1(20)EA1a,,,PC,机四台,交叉网线,1,根,直通网线,4,根,配置电缆二根,网络拓扑图,:,28,2.3.2,端口,Trunk,属性相关知识介绍,三种类型的端口介绍,以太网端口有两种链路类型:,Access,和,Trunk,此外还有一种动态类型,dynamic,把端口设置为动态端口时又有两种选择,:dynamic auto, dynamic desirable,交换机端口,Trunk,属性适用情况,交换机端口,Trunk,属性通常使用在三种情况下,:,在一个公司内部,相同的部门之间实现二层互通,不同的部门之间隔离,而这些部门是分散到不同的交换机上,这个时候就可以在各台交换机上将属于一个部门的端口划分到相同的,VLAN,里,交换机之间互连的端口使用,Trunk,属性,这样就可以实现同一,VLAN,的多台主机在交换机间互通;,在一个组网环境中,用户接入使用二层交换机,如果要实现这个二层交换机上的,VLAN,之间第三层互通,一般需要将这些,VLAN,透传到一个三层设备上,可以是三层交换机或者路由器,由这些三层设备实现用户第三层的互通,这时就需要将二层交换机与三层设备互连的端口设置成,Trunk,属性;,在一个组网环境中,需要对用户实现详细的认证和计费策略,如到,BAS,设备认证后,再获取,IP,地址,才能访问其它一些资源,这个时候也需要将交换机的外联端口设置成,Trunk,属性,29,配置操作中的命令介绍,设置交换机端口的中继(,trunk,)链路封装类型,switchport,trunk encapsulation negotiate|isl|dot1q,no,switchport,trunk encapsulation negotiate|isl|dot1q,设置交换机端口为中继(,trunk,)链路类型,switchport,mode trunk,手工从,Trunk,链路中删除不必要的,VLAN,switchport,trunk allowed,vlan,remove,vlanlist,将,Trunk,端口加入到指定的,VLAN,的命令格式,switchport,trunk allowed,vlan,add,vlanlist,2.3.3,配置步骤,在配置前,请先使用”,erase startup-,config,”,、“,no,vlan,2-1001”,等命令清除以前的配置信息,并重启交换机,创建交换机的,VLAN,,并对端口进行设置,设置交换机,1,的多个,VLAN,,并设置端口,trunk,属性,30,Switchenable #,进入特权会话模式,Switch#config,terminal #,进入配置状态,Enter configuration commands, one per line. End with CNTL/Z.,Switch(config)#hostname,Switch1 #,修改交换机主机名,Switch1(config)# exit,Switch1#vlan database #,进入,VLAN,设置界面,Switch1(vlan)#vlan 10 name work1 #,创建,VLAN10,其名称为,work1,VLAN 10 modified:,Name: work1,Switch1(vlan)#vlan 20 name work2,VLAN 20 modified:,Name: work2,Switch1(vlan)#exit,APPLY completed.,Exiting.,Switch1#,config,terminal,Switch1(config)# interface range fa0/1 2 #,进入组配置界面,Switch1(Config-if-range)#,switchport,mode access #,设置组中各端口的端口模式,31,Switch1(Config-if-range)#interface fa0/1,Switch1(config-if)#switchport access,vlan,10 #,将一个端口加入到,VLAN 10,Switch1(config-if)#interface fa0/2,Switch1(config-if)#switchport access,vlan,20,Switch1(config-if)#interface fa0/3,Switch1(config-if)#switchport trunk encapsulation dot1q,#,启用,802.1Q Trunk,封装协议,即在该端口创建,Trunk,Switch1(config-if)#switchport mode trunk #,将端口设置为,Trunk,Switch1(config-
展开阅读全文
相关资源
正为您匹配相似的精品文档
相关搜索

最新文档


当前位置:首页 > 图纸专区 > 小学资料


copyright@ 2023-2025  zhuangpeitu.com 装配图网版权所有   联系电话:18123376007

备案号:ICP2024067431-1 川公网安备51140202000466号


本站为文档C2C交易模式,即用户上传的文档直接被用户下载,本站只是中间服务平台,本站所有文档下载所得的收益归上传人(含作者)所有。装配图网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。若文档所含内容侵犯了您的版权或隐私,请立即通知装配图网,我们立即给予删除!