交换、路由与防火墙手记(6)

<Huawei>system-view

Enter system view, return user view withCtrl+Z.

[Huawei]sysname s3

[s3]vlan 20

[s3-vlan20]quit

 

 

<Huawei>system-view

Enter system view, return user view withCtrl+Z.

[Huawei]sysname s1

[s1]vlan 20

[s1-vlan20]quit

[s1]

 

<Huawei>system-view

Enter system view, return user view withCtrl+Z.

[Huawei]sysname s2

[s2]vlan 20

[s2-vlan20]quit

[s2]

 

<Huawei>system-view

Enter system view, return user view withCtrl+Z.

[Huawei]sysname s4

[s4]

 

[s1]interface GigabitEthernet 0/0/2

[s1-GigabitEthernet0/0/2]port link-typeaccess

[s1-GigabitEthernet0/0/2]port default vlan20

[s1-GigabitEthernet0/0/2]quit

[s1]interface GigabitEthernet 0/0/2

[s1-GigabitEthernet0/0/2]disp this

#

interface GigabitEthernet0/0/2

 portlink-type access

 portdefault vlan 20

#

return

 

[s1]interface GigabitEthernet 0/0/1

[s1-GigabitEthernet0/0/1]port link-typeaccess

[s1-GigabitEthernet0/0/1]port default vlan20

[s1-GigabitEthernet0/0/1]quit

 

[s1]vlan 30

[s1-vlan30]quit

[s1]interface GigabitEthernet 0/0/4

[s1-GigabitEthernet0/0/4]port link-typeaccess

[s1-GigabitEthernet0/0/4]port default vlan30

[s1-GigabitEthernet0/0/4]quit

 

[s1]interface GigabitEthernet 0/0/3

[s1-GigabitEthernet0/0/3]port link-typetrunk

[s1-GigabitEthernet0/0/3]port trunkallow-pass vlan 20 30

[s1-GigabitEthernet0/0/3]disp this

#

interface GigabitEthernet0/0/3

 portlink-type trunk

 porttrunk allow-pass vlan 20 30

#

Return

 

 

<s2>system-view

Enter system view, return user view withCtrl+Z.

[s2]vlan 30

[s2-vlan30]quit

[s2]interface GigabitEthernet 0/0/2

[s2-GigabitEthernet0/0/2]port link-typetrunk

[s2-GigabitEthernet0/0/2]port trunkallow-pass vlan 20 30

[s2-GigabitEthernet0/0/2]

#

interface GigabitEthernet0/0/2

 portlink-type trunk

 porttrunk allow-pass vlan 20 30

#

return

 

 

[s2]interface GigabitEthernet 0/0/1

[s2-GigabitEthernet0/0/1]port link-typetrunk

[s2-GigabitEthernet0/0/1]port trunkallow-pass vlan 20 30

[s2-GigabitEthernet0/0/1]disp this

#

interface GigabitEthernet0/0/1

 portlink-type trunk

 porttrunk allow-pass vlan 20 30

#

return

 

[s2]interface GigabitEthernet 0/0/3

[s2-GigabitEthernet0/0/3]port link-typeaccess

[s2-GigabitEthernet0/0/3]port default vlan30

[s2-GigabitEthernet0/0/3]disp this

#

interface GigabitEthernet0/0/3

 portlink-type access

 portdefault vlan 30

#

 

 

[s2]interface GigabitEthernet 0/0/4

[s2-GigabitEthernet0/0/4]port link-typeaccess

[s2-GigabitEthernet0/0/4]port default vlan20

[s2-GigabitEthernet0/0/4]disp this

#

interface GigabitEthernet0/0/4

 portlink-type access

 portdefault vlan 20

#

return

 

[s2]interface GigabitEthernet 0/0/5

[s2-GigabitEthernet0/0/5]port link-typetrunk

[s2-port-group-trunk]port trunk allow-passvlan 20 30

 

 

 

<s3>system-view

Enter system view, return user view withCtrl+Z.

[s3]interface GigabitEthernet 0/0/3

[s3-GigabitEthernet0/0/3]port link-typeaccess

[s3-GigabitEthernet0/0/3]port default vlan30

[s3-GigabitEthernet0/0/3]disp this

#

interface GigabitEthernet0/0/3

 portlink-type access

#

return

 

 

[s3]interface GigabitEthernet 0/0/1

[s3-GigabitEthernet0/0/1]port link-typeaccess

[s3-GigabitEthernet0/0/1]port default vlan20

[s3-GigabitEthernet0/0/1]disp this

#

interface GigabitEthernet0/0/1

 portlink-type access

 portdefault vlan 20

#

Return

 

 

[s3]interface GigabitEthernet 0/0/2

[s3-GigabitEthernet0/0/2]port link-typeaccess

[s3-GigabitEthernet0/0/2]port default vlan20

[s3-GigabitEthernet0/0/2]disp this

#

interface GigabitEthernet0/0/2

 portlink-type access

 portdefault vlan 20

#

return

 

 

 

 

[s4]interface GigabitEthernet 0/0/1

[s4-GigabitEthernet0/0/1]port link-typehybrid

[s4-GigabitEthernet0/0/1]port hybrid taggedvlan 30

[s4-GigabitEthernet0/0/1]port hybriduntagged vlan 20

 

[s4-GigabitEthernet0/0/1]inter gig 0/0/2

[s4-GigabitEthernet0/0/2]port hybriduntagged vlan 20

 





本博客所有内容是原创,如果转载请注明来源

http://blog.csdn.net/myhaspl/


Hybrid端口收到一个报文,判断是否有VLAN tag:如果没有则打上端口的PVID,再直接进行转发;如果有VLANtag,检查vlan允许列表(tag或untag),如果可以则转发,否则丢弃。

 

Hybrid端口发报文将先检查该VLAN是否在本端口vlantag和vlan untag列表中,如果在untag列表则剥离VLAN tag转发,如果在tag列表则直接转发。

 

关键配置如下:

 

#

interface GigabitEthernet0/0/1

port hybrid tagged vlan 20 30

#

interface GigabitEthernet0/0/2

 porthybrid pvid vlan 20

 porthybrid untagged vlan 20

#

 

再来看S2交换机的接口GigabitEthernet0/0/5

#

interface GigabitEthernet0/0/5

 portlink-type trunk

 porttrunk allow-pass vlan 20 30

#

 

 

client7发送数据给client10,带有vlan20的数据帧从s2交换机的GigabitEthernet0/0/5接口出来(在其trunk端口的允许vlan列表中),从s4交接机的GigabitEthernet0/0/1接口进入后,在其tagged列表中,则直接转发,如果此时mac地址表中没有client10,将数据帧进行泛洪,s4交换机将该数据帧向GigabitEthernet0/0/1接口外的其他端口进行广播,最终client10会回应,s4交接机将GigabitEthernet0/0/2与client10的mac地址关联起来,形成s4的mac地址表中的一行,client7的数据帧顺利地发给client10。


评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值