VLAN

*斜、

题目要求

体样式*
在这里插入图片描述在这里插入图片描述代码部分交换机

在这里插入图片描述[router1]dhcp en
[router1]dhcp enable
Info: The operation may take a few seconds. Please wait for a moment.done.
[router1]ip pool
[router1]ip pool v2
Info: It’s successful to create an IP address pool.
[router1-ip-pool-v2]natw
[router1-ip-pool-v2]natw
[router1-ip-pool-v2]natw
^
Error: Unrecognized command found at ‘^’ position.
[router1-ip-pool-v2]
[router1-ip-pool-v2]netw
[router1-ip-pool-v2]network 192.168.2.0 ma
[router1-ip-pool-v2]network 192.168.2.0 mask 24
[router1-ip-pool-v2]gat
[router1-ip-pool-v2]gateway-list 192.168.2.1
[router1-ip-pool-v2]dns
^
Error:Incomplete command found at ‘^’ position.
[router1-ip-pool-v2]dns
[router1-ip-pool-v2]dns-list 114.114.114.114
[router1-ip-pool-v2]q
[router1]ip poo
[router1]ip pool v2345
Info: It’s successful to create an IP address pool.
[router1-ip-pool-v2345]netw
[router1-ip-pool-v2345]network 192.169.1.o ma
[router1-ip-pool-v2345]network 192.169.1.0 ma
[router1-ip-pool-v2345]network 192.169.1.0 mask 24
[router1-ip-pool-v2345]gat
[router1-ip-pool-v2345]gateway-list 192.168.1.1
Error:The network section should be within the subnet of the pool.
[router1-ip-pool-v2345]gateway-list 192.168.1.1
Error:The network section should be within the subnet of the pool.
[router1-ip-pool-v2345]dns
[router1-ip-pool-v2345]dns-list 114.114.114.114
[router1-ip-pool-v2345]q
[router1]interf
[router1]interface 0/0/0
^
Error: Wrong parameter found at ‘^’ position.
[router1]interface0/0/0
^
Error: Unrecognized command found at ‘^’ position.
[router1]inter
[router1]interface g
[router1]interface GigabitEthernet0/0/0
[router1-GigabitEthernet0/0/0]dhcp e
[router1-GigabitEthernet0/0/0]dhcp s
[router1-GigabitEthernet0/0/0]dhcp select e
[router1-GigabitEthernet0/0/0]dhcp select b
[router1-GigabitEthernet0/0/0]dhcp select en
[router1-GigabitEthernet0/0/0]dhcp select g
[router1-GigabitEthernet0/0/0]dhcp select global
[router1-GigabitEthernet0/0/0]q
[router1]inter
[router1]interface g
[router1]interface GigabitEthernet0/0/0.1
[router1-GigabitEthernet0/0/0.1]dhcp s
[router1-GigabitEthernet0/0/0.1]dhcp select g
[router1-GigabitEthernet0/0/0.1]dhcp select global
[router1-GigabitEthernet0/0/0.1]

Please check whether system data has been changed, and save data in time

Configuration console time out, please press any key to log on

interf
sys
Enter system view, return user view with Ctrl+Z.
[router1]interf
[router1]interface g
[router1]interface GigabitEthernet0/0/0
[router1-GigabitEthernet0/0/0]disp
[router1-GigabitEthernet0/0/0]display ip int
[router1-GigabitEthernet0/0/0]display ip interface b
[router1-GigabitEthernet0/0/0]display ip interface brief
*down: administratively down
^down: standby
(l): loopback
(s): spoofing
The number of interface that is UP in Physical is 3
The number of interface that is DOWN in Physical is 2
The number of interface that is UP in Protocol is 3
The number of interface that is DOWN in Protocol is 2

Interface IP Address/Mask Physical Protocol
GigabitEthernet0/0/0 192.168.1.1/24 up up
GigabitEthernet0/0/0.1 192.168.2.1/24 up up
GigabitEthernet0/0/1 unassigned down down
GigabitEthernet0/0/2 unassigned down down
NULL0 unassigned up up(s)
[router1-GigabitEthernet0/0/0]disp
[router1-GigabitEthernet0/0/0]display ip p
[router1-GigabitEthernet0/0/0]display ip
^
Error:Incomplete command found at ‘^’ position.
[router1-GigabitEthernet0/0/0]display ip pool

Pool-name : v2
Pool-No : 0
Position : Local Status : Unlocked
Gateway-0 : 192.168.2.1
Mask : 255.255.255.0
VPN instance : –


Pool-name : v2345
Pool-No : 1
Position : Local Status : Unlocked
Gateway-0 : -
Mask : 255.255.255.0
VPN instance : –

IP address Statistic
Total :507
Used :1 Idle :506
Expired :0 Conflict :0 Disable :0
[router1-GigabitEthernet0/0/0]uod
[router1-GigabitEthernet0/0/0]uu
[router1-GigabitEthernet0/0/0]und
[router1-GigabitEthernet0/0/0]undo ip pool v2345
^
Error: Unrecognized command found at ‘^’ position.
[router1-GigabitEthernet0/0/0]undo pool v2345
^
Error: Unrecognized command found at ‘^’ position.
[router1-GigabitEthernet0/0/0]undo po
[router1-GigabitEthernet0/0/0]undo i
[router1-GigabitEthernet0/0/0]undo ip
[router1-GigabitEthernet0/0/0]undo ip pool v2345
^
Error: Unrecognized command found at ‘^’ position.
[router1-GigabitEthernet0/0/0]q
[router1]undo ip pool v2345
[router1]inter
[router1]interface g
[router1]interface GigabitEthernet0/0/0
^
Error: Wrong parameter found at ‘^’ position.
[router1]interface GigabitEthernet0/0/0
[router1-GigabitEthernet0/0/0]ip add
[router1-GigabitEthernet0/0/0]ip address 192.168.1.1 24
Error: The address already exists.
[router1-GigabitEthernet0/0/0]q
[router1]interf
[router1]interface g
[router1]interface GigabitEthernet0/0/0.1
[router1-GigabitEthernet0/0/0.1]do
[router1-GigabitEthernet0/0/0.1]dot1q t
[router1-GigabitEthernet0/0/0.1]dot1q termination v
[router1-GigabitEthernet0/0/0.1]dot1q termination vid 2
[router1-GigabitEthernet0/0/0.1]ip add
[router1-GigabitEthernet0/0/0.1]ip address 192.168.2.1 24
Error: The address already exists.
[router1-GigabitEthernet0/0/0.1]arp
[router1-GigabitEthernet0/0/0.1]arp b
[router1-GigabitEthernet0/0/0.1]arp broadcast e
[router1-GigabitEthernet0/0/0.1]arp broadcast enable
Info: This interface has already been configured with ARP broadcast.
[router1-GigabitEthernet0/0/0.1]q
[router1]dg
[router1]dc
[router1]dhcp
[router1]dhcp e
[router1]dhcp enable
[router1]netw
[router1]ip ppo
[router1]ip poo
[router1]ip pool 345
Info: It’s successful to create an IP address pool.
[router1-ip-pool-345]netw
[router1-ip-pool-345]network 192.168.1.0 ma
[router1-ip-pool-345]network 192.168.1.0 mask 24
[router1-ip-pool-345]gatw
[router1-ip-pool-345]gat
[router1-ip-pool-345]gateway-list 192.168.1.1
[router1-ip-pool-345]dns
[router1-ip-pool-345]dns-list 114.114.114.114
[router1-ip-pool-345]

Please check whether system data has been changed, and save data in time

Configuration console time out, please press any key to log on

sa The current configuration will be written to the device. Are you sure to continue? (y/n)[n]:y It will take several minutes to save configuration file, please wait....... Configuration file had been saved successfully Note: The configuration file will take effect after being activated # 笔记部分 自己整理的部分![在这里插入图片描述](https://img-blog.csdnimg.cn/20210414212732736.jpg?x-oss-![在这里插入图片描述](https://img-blog.csdnimg.cn/2021041421274894.jpg?x-oss-process=image/watermark,type_ZmFuZ3poZW5naGVpdGk,shadow_10,text_aHR0cHM6Ly9ibG9nLmNzZG4ubmV0L20wXzU2MjI5NzE3,size_16,color_FFFFFF,t_70#pic_center) ![process=ima](https://img-blog.csdnimg.cn/20210414212805247.jpg?x-oss-process=image/watermark,type_ZmFuZ3poZW5naGVpdGk,shadow_10,text_aHR0cHM6Ly9ibG9nLmNzZG4ubmV0L20wXzU2MjI5NzE3,size_16,color_FFFFFF,t_70#pic_center) ge/watermark,type_ZmFuZ3poZW5naGVpdGk,shadow_10,text_aHR0cHM6Ly9ibG9nLmNzZG4ubmV0L20wXzU2MjI5NzE3,size_16,color_FFFFFF,t_70#pic_center) ![在这里插入图片描述](https://img-blog.csdnimg.cn/20210414212821145.jpg?x-oss-process=image/watermark,type_ZmFuZ3poZW5naGVpdGk,shadow_10,text_aHR0cHM6Ly9ibG9nLmNzZG4ubmV0L20wXzU2MjI5NzE3,size_16,color_FFFFFF,t_70#pic_center) 文档部分 交换部分: 企业网三层架构: 接入层-提供端口密度,用于用户的就近接入 汇聚层(分布层)--- 流量的聚合 -- VLAN STP SVI HSRP VRRP CHENNL… 核心层 高速转发—路由-NAT

冗余—备份 设备冗余 线路冗余 网关冗余 UPS电源冗余

交换机的作用:
1、和HUB一样,提供端口密度,用于多用户的同时连接
升级:工作在数据链路层
2、冲突 – 电信号转换为数据,之后基于MAC地址进行转发,避免电流的相遇
实现各个接口可以独立收发各种的数据
3、理论上无限延长传输距离
4、二层单播—交换机可以基于数据帧中的MAC地址来实现一对一转发

二层交换机工作过程:
当数据帧进入交换机后,交换机先识别帧中的源mac地址,之后将其与进入接口映射记录到本地的MAC表中;再查看数据帧中的目标mac地址,之后查看本地MAC表,若表中存在目标mac对应接口,将单播复制流量到该接口转出;若没有记录将对该流量进行洪泛;
洪泛(泛洪):除流量进入的接口外,其他所有接口复制转出;

VLAN :虚拟局域网 逻辑的将一个广播域切分为多个;
配置思路:
1、交换机上创建vlan
编号0-4095 4096个 其中1-4094可用 12位二进制构成
默认存在VLAN1,且默认的所有接口属于vlan1
[Huawei]vlan batch 5 to 10 15 to 20 批量创建

2、交换机上的各个接口划分到对应的vlan中
[Huawei]interface Ethernet0/0/1
[Huawei-Ethernet0/0/1]port link-type access 先将该接口定义为接入模式
[Huawei-Ethernet0/0/1]port default vlan 2 再降该接口划分到对于的vlan中

批量进入接口,进行批量的划分
[Huawei]port-group group-member Ethernet 0/0/3 to Ethernet 0/0/4 Ethernet 0/0/10 to Ethernet 0/0/20

3、trunk干道—中继干道 不属于任何一个vlan;承载所有vlan的流量转发;具有标记(封装VLANID)和识别(读取,解封装VLANID)的能力;
[sw1]interface GigabitEthernet 0/0/1
[sw1-GigabitEthernet0/0/1]port link-type trunk 定义接口为trunk模式;
华为设备,默认trunk干道仅允许VLAN1通过;需要手工添加通过列表
[sw1-GigabitEthernet0/0/1]port trunk allow-pass vlan 2 to 3
[sw1-GigabitEthernet0/0/1]port trunk allow-pass vlan all
Vlan ID标记协议—802.1Q DOT1.Q

4、VLAN间路由 — 路由器子接口(单臂路由) 多层交换机(SVI)

二、关于华为设备vlan接口的类型问题
1、华为交换机内部转发的流量必须存在VLAN 封装;
2、PC接收到数据包不能存在VLAN封装,否则丢弃流量;
3、若交换机的接口,接收到一个带VLAN封装的数据包时,将先查看该接口的允许列表;
若表中允许,即可进入;若表中没有记录将拒绝该流量;
[sw1]display port vlan active 关注接口的vlan允许列表

4、当一个数据包进入交换机接口时;交换机先关注该数据包是否携带VLAN 封装;
若带,参照第三条;若没有携带vlan封装;将封装该接口的PVID;
5、当一个数据包从交换机接口转出时;先关注该接口的允许列表,不存在记录不能转出;
存在记录可以转出,但转出时还需要关注允许列表中的字母T=携带封装转出,U=不携带封装转发

6、定义允许列表
[sw1]interface Eth0/0/1
[sw1-Ethernet0/0/1]port link-type ? 选择不同的接口类型,管理员将具备不同的配置权限
access Access port
hybrid Hybrid port
trunk Trunk port

access:只能允许一个vlan进或出;修改该接口的默认vlan;及修改了允许列表和PVID;
[sw1-Ethernet0/0/1]port default vlan 2 在一个ACCESS接口配置该指令
导致该接口的允许列表仅允许vlan2的流量进或出;同时该接口的pvid修改为vlan2;
另外没有定义转出时是否携带封装的权限—access接口转出时只能是U;不携带
注:可以理解为cisco的access,就是将一个接口固定的工作在一个vlan中;

trunk :可以允许多个vlan进或出;也可以修改PVID;但不能修改字母,除PVID外的vlan,均字母为T;
[sw1-Ethernet0/0/9]port trunk allow-pass vlan 5 to 10 修改允许列表,默认仅允许vlan1;
[sw1-Ethernet0/0/9]port trunk pvid 2 修改PVID,默认为vlan 1;
注:可以理解为cisco的trunk,所有vlan通过时正常均携带vlan封装,pvid类似native vlan,不携带vlan封装;但注意,修改pvid时,接口默认允许还是仅允许vlan1,故需要同时去修改允许列表;

Hybrid:默认所有接口属于该类型
可以修改允许列表,可以修改PVID,可以修改字母;
[sw1]interface Eth0/0/21
[sw1-Ethernet0/0/21]port link-type hybrid

[sw1-Ethernet0/0/21]port hybrid tagged vlan 2 to 3
[sw1-Ethernet0/0/21]port hybrid untagged vlan 4 to 5
允许vlan2、3、4、5进或出;但2/3在出时携带vlan封装,4/5在出时不携带vlan封装;
[sw1-Ethernet0/0/21]port hybrid pvid vlan 2
修改PVID
切记:华为设备中,若路由器上配置了子接口,每个子接口均回定义管理的VID;
若存在子接口的物理接口,接收到数据包中不存在vlan封装,将由物理接口管理;

  • 1
    点赞
  • 2
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值