Vlan 實驗 配置手冊_第1頁
Vlan 實驗 配置手冊_第2頁
Vlan 實驗 配置手冊_第3頁
Vlan 實驗 配置手冊_第4頁
Vlan 實驗 配置手冊_第5頁
已閱讀5頁,還剩22頁未讀, 繼續(xù)免費閱讀

下載本文檔

版權說明:本文檔由用戶提供并上傳,收益歸屬內容提供方,若內容存在侵權,請進行舉報或認領

文檔簡介

Vlan實驗配置手冊錄1.1.Vlan基礎配置 21.1.1.拓撲和需求 21.1.2.命令介紹 21.1.3.詳細配置 21.1.4.調試 31.2.Trunk配置 51.2.1.拓撲和需求 51.2.2.關鍵命令介紹 51.2.3.SW1配置 51.2.4.sw2配置 61.2.5.sw3配置 61.2.6.調試 71.3.500人企業(yè)網配置 81.3.1.拓撲和需求 81.3.2.關鍵命令介紹 81.3.3.核心Sw1配置 91.3.4.匯聚Sw2配置 91.3.5.接入Sw4配置 101.3.6.管理vlan和telnet配置 101.4.Muxvlan配置 111.5.Supervlan配置 121.1.Vlan基礎配置1.1.1.拓撲和需求需求:按照拓撲,將各接口配置為access接口并劃入相應vlan。確保相同vlan的PC可以互訪。不同vlan的PC互相隔離。1.1.2.命令介紹vlan配置命令:vlanbatch1020創(chuàng)建vlan1020interfaceGi0/0/1進入接口0/0/1portlink-typeaccess接口類型配置為accessportdefaultvlan10將接口劃入vlan10調試命令:displayvlan查看vlan配置displayportvlan查看接口類型以及pvidport-groupgroup-membergi0/0/1togi0/0/2同時對多個接口進行配置1.1.3.詳細配置vlanbatch1020interfaceGigabitEthernet0/0/1portlink-typeaccessportdefaultvlan10#interfaceGigabitEthernet0/0/2portlink-typeaccessportdefaultvlan10#interfaceGigabitEthernet0/0/3portlink-typeaccessportdefaultvlan20#interfaceGigabitEthernet0/0/4portlink-typeaccessportdefaultvlan201.1.4.調試[sw1]displayvlanThetotalnumberofvlansis:3--------------------------------------------------------------------------------U:Up;D:Down;TG:Tagged;UT:Untagged;MP:Vlan-mapping;ST:Vlan-stacking;#:ProtocolTransparent-vlan;*:Management-vlan;--------------------------------------------------------------------------------VIDTypePorts--------------------------------------------------------------------------------1commonUT:GE0/0/5(D)GE0/0/6(D)GE0/0/7(D)GE0/0/8(D)GE0/0/9(D)GE0(D)GE0/0/21(D)GE0/0/22(D)GE0/0/23(D)GE4(D)commonUTGEU)GE0/0/2(U)20commonUT:GE0/0/3(U)GE0/0/4(U)[sw1]displayportvlanPortLinkTypePVIDTrunkVLANList-------------------------------------------------------------------------------GigabitEthernetGigabitEthernet0/0/1access10-GigabitEthernet0/0/2access10-GigabitEthernet0/0/3access20-GigabitEthernet0/0/4access20-GigabitEthernet0/0/5hybrid1-GigabitEthernet0/0/6GigabitEthernet0/0/7PC:PC>ping192.168.10.2hybridhybrid11--Ping192.168.10.2:32databytes,PressCtrl_CtobreakFrom192.168.10.2:bytes=32seq=1ttl=128time=47msFrom192.168.10.2:bytes=32seq=2ttl=128time=47msFrom192.168.10.2:bytes=32seq=3ttl=128time=47msFrom192.168.10.2:bytes=32seq=4ttl=128time=47msFrom192.168.10.2:bytes=32seq=5ttl=128time=47ms---192.168.10.2pingstatistics---5packet(s)transmitted5packet(s)received0.00%packetlossround-tripmin/avg/max=47/47/47msPC>ping192.168.10.3Ping192.168.10.3:32databytes,PressCtrl_CtobreakFrom192.168.10.1:DestinationhostunreachableFrom192.168.10.1:DestinationhostunreachableFrom192.168.10.1:DestinationhostunreachableFrom192.168.10.1:DestinationhostunreachableFrom192.168.10.1:Destinationhostunreachable---192.168.10.3pingstatistics---5packet(s)transmitted0packet(s)received100.00%packetloss1.2.Trunk配置1.2.1.拓撲和需求需求:按照拓撲配置vlan和trunk,確保相同vlan的用戶可以互訪。不同vlan的用戶互相隔離。1.2.2.關鍵命令介紹vlan配置命令:vlanbatch1020創(chuàng)建vlan1020interfaceGi0/0/1進入接口0/0/1portlink-typetrunkporttrunkallow-passvlanall允許所有的vlan通過(默認只允許vlan1通過)調試命令:displayvlan查看vlan配置displayportvlan查看接口類型以及pvidport-groupgroup-membergi0/0/1togi0/0/2同時對多個接口進行配置注意:sw2也需要配置相應vlan。Sw1:vlanbatch1020interfaceGigabitEthernet0/0/1portlink-typeaccessportdefaultvlan10#interfaceGigabitEthernet0/0/2portlink-typeaccessportdefaultvlan10#interfaceGigabitEthernet0/0/3portlink-typeaccessportdefaultvlan20#interfaceGigabitEthernet0/0/4portlink-typeaccessportdefaultvlan20interfaceGigabitEthernet0/0/5portlink-typetrunkporttrunkallow-passvlanallvlanbatch1020port-groupgroup-membergi0/0/1togi0/0/2Portlink-typetrunkPorttrunkallow-passvlanallVlanbatch1020interfaceGigabitEthernet0/0/1portlink-typetrunkporttrunkallow-passvlan2to4094#interfaceGigabitEthernet0/0/2portlink-typeaccessportdefaultvlan10#interfaceGigabitEthernet0/0/3portlink-typeaccessportdefaultvlan10#interfaceGigabitEthernet0/0/4portlink-typeaccessportdefaultvlan20#interfaceGigabitEthernet0/0/5portlink-typeaccessportdefaultvlan201.2.6.調試[sw2]disvlanThetotalnumberofvlansis:3--------------------------------------------------------------------------------U:Up;D:Down;TG:Tagged;UT:Untagged;MP:Vlan-mapping;ST:Vlan-stacking;#:ProtocolTransparent-vlan;*:Management-vlan;--------------------------------------------------------------------------------VIDTypePorts--------------------------------------------------------------------------------commonUTGE0/1(U)GE0/0/2(U)GE0/0/3(D)GE0/0/4(D)GE0/0/5(D)GE0/0/6(D)GE0/0/7(D)GE0/0/8(D)GE0/0/9(D)GE0(D)GE0/0/21(D)GE0/0/22(D)GE0/0/23(D)GE4(D)1010commonTG:GE0/0/1(U)GE0/0/2(U)commonTGGE1(U)GE0/0/2(U)[sw3]disportvlanPortLinkTypePVIDTrunkVLANList-------------------------------------------------------------------------------GigabitEthernet0/0/1trunk11-4094GigabitEthernet0/0/2access-GigabitEthernet0/0/3access-GigabitEthernet0/0/4access-GigabitEthernet0/0/5PC:access-PC>ping192.168.10.6Ping192.168.10.6:32databytes,PressCtrl_CtobreakFrom192.168.10.6:bytes=32seq=1ttl=128time=94msFrom192.168.10.6:bytes=32seq=2ttl=128time=94msFrom192.168.10.6:bytes=32seq=3ttl=128time=109msFrom192.168.10.6:bytes=32seq=4ttl=128time=125msFrom192.168.10.6:bytes=32seq=5ttl=128time=109msPC:PC>ping192.168.10.8Ping192.168.10.8:32databytes,PressCtrl_CtobreakFrom192.168.10.8:bytes=32seq=1ttl=128time=94msFrom192.168.10.8:bytes=32seq=2ttl=128time=94msFrom192.168.10.8:bytes=32seq=3ttl=128time=94msFrom192.168.10.8:bytes=32seq=4ttl=128time=94msFrom192.168.10.8:bytes=32seq=5ttl=128time=94ms1.3.500人企業(yè)網配置1.3.1.拓撲和需求需求:按照拓撲配置vlan、trunk以及vlan間路由,確保所有vlan用戶可以互相訪問。1.3.2.關鍵命令介紹interfaceVlanif10創(chuàng)建三層交換機虛擬接口vlanif10ipaddress192.168.10.254255.255.255.0給接口配置IP地址iproute-static192.168.20.0255.255.255.0192.168.200.1靜態(tài)路由去往目標網段192.168.20.0/24將數(shù)據(jù)報文轉發(fā)至下一跳192.168.200.11.3.3.核心Sw1配置vlanbatch10203040200//200是互聯(lián)vlan,vlanif200對接路由R1interfaceVlanif10ipaddress192.168.10.254255.255.255.0#interfaceVlanif20ipaddress192.168.20.254255.255.255.0#interfaceVlanif30ipaddress192.168.30.254255.255.255.0#interfaceVlanif40ipaddress192.168.40.254255.255.255.0#interfaceVlanif200ipaddress192.168.200.1255.255.255.252interfaceGigabitEthernet0/0/1portlink-typetrunkporttrunkallow-passvlan2to4094#interfaceGigabitEthernet0/0/2portlink-typetrunkporttrunkallow-passvlan2to4094#interfaceGigabitEthernet0/0/3portlink-typeaccessportdefaultvlan200iproute-static0.0.0.00.0.0.0192.168.200.2//去往外網的缺省路由1.3.4.匯聚Sw2配置vlanbatch10203040interfaceGigabitEthernet0/0/1portlink-typetrunkporttrunkallow-passvlan2to4094#interfaceGigabitEthernet0/0/2portlink-typetrunkporttrunkallow-passvlan2to4094#interfaceGigabitEthernet0/0/3portlink-typetrunkporttrunkallow-passvlan2to4094注意:其他匯聚交換機配置類似,在此不再贅述!!1.3.5.接入Sw4配置vlanbatch10203040interfaceGigabitEthernet0/0/1portlink-typeaccessportdefaultvlan10#interfaceGigabitEthernet0/0/2portlink-typeaccessportdefaultvlan10#interfaceGigabitEthernet0/0/5portlink-typetrunkporttrunkallow-passvlan2to4094注意:其他接入交換機配置類似,在此不再贅述??!1.3.6.管理vlan和telnet配置規(guī)劃:vlan255192.168.255.0/24作為管理vlan,192.168.255.0/24為管理地址段所有交換機開啟telnet:user-interfacevty04setauthenticationpasswordcipher123//設置telnet密碼為123核心sw1配置:Vlan255interfaceVlanif255ipaddress192.168.255.254255.255.255.0匯聚sw2配置:Vlan255interfaceVlanif255ipaddress192.168.255.2255.255.255.0iproute-static0.0.0.00192.168.255.254//針對管理流量的回包路由接入sw4配置:Vlan255interfaceVlanif255ipaddress192.168.255.4255.255.255.0iproute-static0.0.0.00192.168.255.254//針對管理流量的回包路由注意:其他交換機配置類似,此處略??!1.4.Muxvlan配置關鍵配置:vlan10mux-vlansubordinateseparate20subordinategroup3040 (只能設一個隔離型vlan)sw配置:vlanbatch2310vlan10mux-vlan將vlan10設置為主vlansubordinateseparate2將vlan2設置vlan隔離vlan(隔離型vlan)subordinategroup3將vlan3設置為群組vlan(互通型vlan)interfaceGigabitEthernet0/0/5interfaceGigabitEthernet0/0/5portlink-typeaccessportdefaultvlan10/接口5劃到vlan10并開啟muxvlanportmux-vlanenableinterfaceGigabitEthernet0/0/1portlink-typeaccessportdefaultvlan2/接口1劃入vlan2并開啟muxvlanportmux-vlanenable#interfaceGigabitEthernet0/0/2portlink-typeaccessportdefaultvlan2portmux-vlanenable#interfa

溫馨提示

  • 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
  • 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯(lián)系上傳者。文件的所有權益歸上傳用戶所有。
  • 3. 本站RAR壓縮包中若帶圖紙,網頁內容里面會有圖紙預覽,若沒有圖紙預覽就沒有圖紙。
  • 4. 未經權益所有人同意不得將文件中的內容挪作商業(yè)或盈利用途。
  • 5. 人人文庫網僅提供信息存儲空間,僅對用戶上傳內容的表現(xiàn)方式做保護處理,對用戶上傳分享的文檔內容本身不做任何修改或編輯,并不能對任何下載內容負責。
  • 6. 下載文件中如有侵權或不適當內容,請與我們聯(lián)系,我們立即糾正。
  • 7. 本站不保證下載資源的準確性、安全性和完整性, 同時也不承擔用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。

評論

0/150

提交評論