https://learningnetwork.cisco.com/s/question/0D53i00000Kt7P2/encapsulation-dot1q-vlan-id
有时候我们会看到一些路由器的子接口下面配置了encapsulation dot1q vlan-id, 比如:
Router#sh run int GigabitEthernet0/1.633
Building configuration...
Current configuration : 209 bytes
!
interface GigabitEthernet0/1.633
bandwidth 2048
encapsulation dot1Q 633
ip address X.X.X.X X.X.X.X
no ip redirects
no ip unreachables
no ip proxy-arp
no cdp enable
crypto map XYZ
end
这里的网络拓扑是客户的CGW设备直连到ISP的设备上,然后客户在自己的CGW的子接口封装了vlan id,也就是会给从这个子接口发出去的所有帧打上633的标签并且这个接口也只会接收有633标签的帧,其他的帧会被丢弃。这就保证了ISP设备可以区分不同的客户的帧。
I’m assuming that this router’s GigabitEthernet0/1 port is connected either directly to the SP’s router or (more likely) to a intermediary switch which sits between your device and the SP’s router, right? Your router will simply tag any frame coming off that sub-interface on the way to the SP’s router, using 633, and it will expect all incoming fr