二層環路保護,SEP多實例的配置


  作者:鄧聰聰

  智能以太保護SEP(Smart Ethernet Protection)是一種專用於以太網鏈路層的環網協議。SEP是一種以太環路保護機制,它通過有選擇性地阻塞網絡環路冗余鏈路,來達到消除網絡二層環路的目的,避免報文在環路網絡中增生和無限循環,有效防止形成網絡風暴。本人剛接手了一套網絡,布局也不是太復雜,基本全是2層網絡,所以就利用了sep這個小技術。

  實例1:

 

sysname sw1
#
vlan batch 11 to 12 4008 4094
#
stp disable
#
sep segment 5
 control-vlan 4008
 block port optimal
 preempt delay 30
 protected-instance 0 to 48
sep segment 10
 control-vlan 4094
 block port optimal
 preempt delay 30
 tc-notify segment 5
 protected-instance 0 to 48
#
interface Vlanif12
 ip address 10.1.1.1 255.255.255.224
#
interface GigabitEthernet0/0/1
 port link-type trunk
 port trunk allow-pass vlan 11 4008
 stp disable
 sep segment 5
#
interface GigabitEthernet0/0/2
 port link-type access
 port default vlan 11
#
interface GigabitEthernet0/0/3
 shutdown
 port link-type trunk
 undo port trunk allow-pass vlan 1
 port trunk allow-pass vlan 11 to 12 4008
 stp disable
 sep segment 5 edge primary
#
interface GigabitEthernet0/0/5
 shutdown
 port link-type trunk
 port trunk allow-pass vlan 11 4094
 stp disable
 sep segment 10 edge primary
#
sysname sw2
#
stp disable
#
sep segment 5
 control-vlan 4008
 protected-instance 0 to 48
#

  sep segment 11
  control-vlan 100
  block port optimal
  preempt delay 30
  tc-notify segment 5
  protected-instance 0 to 48

interface GigabitEthernet0/0/1
 port link-type trunk
 undo port trunk allow-pass vlan 1
 port trunk allow-pass vlan 11 4008
 stp disable
 sep segment 5
#
interface GigabitEthernet0/0/2
 port link-type trunk
 undo port trunk allow-pass vlan 1
 port trunk allow-pass vlan 11 4008
 stp disable
 sep segment 5

  interface GigabitEthernet0/0/4
  port link-type trunk
  port trunk allow-pass vlan 11 100
  stp disable
  sep segment 11 edge primary

sysname sw3
#
stp disable
#
sep segment 5
 control-vlan 4008
 protected-instance 0 to 48
sep segment 10
 control-vlan 4094
 tc-notify segment 5
 protected-instance 0 to 48
#
interface Vlanif11
 ip address 1.1.1.30 255.255.255.224
#
interface Vlanif12
 ip address 10.1.1.2 255.255.255.224
#
interface MEth0/0/1
#
interface GigabitEthernet0/0/1
 port link-type access
 port default vlan 11
#
interface GigabitEthernet0/0/2
 port link-type trunk
 undo port trunk allow-pass vlan 1
 port trunk allow-pass vlan 11 4008
 stp disable
 sep segment 5
#
interface GigabitEthernet0/0/3
 port link-type trunk
 undo port trunk allow-pass vlan 1
 port trunk allow-pass vlan 11 to 12 4008
 stp disable
 sep segment 5
 sep segment 5 priority 128
#
interface GigabitEthernet0/0/4
 port link-type trunk
 undo port trunk allow-pass vlan 1
 port trunk allow-pass vlan 11 4094
 stp disable
 sep segment 10
 sep segment 10 priority 128
#
sysname sw4
#
vlan batch 11 4094
#
stp disable
#
sep segment 10
 control-vlan 4094
 protected-instance 0 to 48
#

  sep segment 11
  control-vlan 100
  tc-notify segment 10
  protected-instance 0 to 48

interface Vlanif11
 ip address 1.1.1.4 255.255.255.224
#

 interface GigabitEthernet0/0/3
 port link-type trunk
 port trunk allow-pass vlan 11 100
 stp disable
 sep segment 11
 sep segment 11 priority 128

interface GigabitEthernet0/0/4
 port link-type trunk
 undo port trunk allow-pass vlan 1
 port trunk allow-pass vlan 11 4094
 stp disable
 sep segment 10
#
interface GigabitEthernet0/0/5
 port link-type trunk
 port trunk allow-pass vlan 11 4094
 stp disable
 sep segment 10
sysname sw5
#
sep segment 11
 control-vlan 100
 protected-instance 0 to 48
#
interface GigabitEthernet0/0/3
 port link-type trunk
 port trunk allow-pass vlan 11 100
 stp disable
 sep segment 11
#
interface GigabitEthernet0/0/4
 port link-type trunk
 port trunk allow-pass vlan 11 100
 stp disable
 sep segment 11
#

 

 

  實例2:

9306配置:

sep segment 1
control-vlan 4094
block port optimal
preempt delay 30
tc-notify segment 2
protected-instance 0 to 48
sep segment 2
control-vlan 4094
block port optimal
preempt delay 15
tc-notify segment 1
protected-instance 0 to 48
sep segment 3
control-vlan 4090
block port optimal
preempt delay 15
protected-instance 0 to 48
#
interface Vlanif1
ip address 1.1.1.1 255.255.255.0
#
interface MEth0/0/1
#
interface GigabitEthernet0/0/1
shutdown
port hybrid tagged vlan 4094
stp disable
sep segment 1 edge secondary
#
interface GigabitEthernet0/0/2
port link-type trunk
port trunk allow-pass vlan 4094
stp disable
sep segment 2 edge primary
#
interface GigabitEthernet0/0/3
port hybrid tagged vlan 4094
stp disable
sep segment 1 edge primary
#
interface GigabitEthernet0/0/4
port hybrid tagged vlan 4090
stp disable
sep segment 3 edge primary
#
interface GigabitEthernet0/0/5
port hybrid tagged vlan 4090
stp disable
sep segment 3 edge secondary
#

 

分支1-5700配置:

sep segment 1
 control-vlan 4094
 block port optimal
 protected-instance 0 to 48

#
interface Vlanif1
 ip address 1.1.1.254 255.255.255.0
#
interface MEth0/0/1
#
interface GigabitEthernet0/0/1
 port hybrid tagged vlan 4094
 stp disable
 sep segment 1
#
interface GigabitEthernet0/0/2
 port hybrid tagged vlan 4094
 stp disable
 sep segment 1
#

分支3-5700配置:

sep segment 1
control-vlan 4094
tc-notify segment 2
protected-instance 0 to 48
sep segment 2
control-vlan 4094
tc-notify segment 1
protected-instance 0 to 48
#
interface Vlanif1
ip address 1.1.1.2 255.255.255.0
#
interface MEth0/0/1
#
interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 4094
stp disable
sep segment 2 edge secondary
#
interface GigabitEthernet0/0/2
port hybrid tagged vlan 4094
stp disable
sep segment 1
sep segment 1 priority 128
#
interface GigabitEthernet0/0/3
port hybrid tagged vlan 4094
stp disable
sep segment 1
#

分支2-5700配置:

sep segment 2
control-vlan 4094
protected-instance 0 to 48
#
interface Vlanif1
ip address 1.1.1.3 255.255.255.0
#
interface MEth0/0/1
#
interface GigabitEthernet0/0/1
port hybrid tagged vlan 4094
stp disable
sep segment 2
sep segment 2 priority 128
#
interface GigabitEthernet0/0/2
shutdown
port hybrid tagged vlan 4094
stp disable
sep segment 2

分支1配置:

sep segment 3
 control-vlan 4090
 protected-instance 0 to 48
#
interface Vlanif1
#
interface MEth0/0/1
#
interface GigabitEthernet0/0/1
 port hybrid tagged vlan 4090
 stp disable
 sep segment 3
#
interface GigabitEthernet0/0/4
 port hybrid tagged vlan 4090
 stp disable
 sep segment 3
#

分支2配置:

sep segment 3
 control-vlan 4090
 protected-instance 0 to 48
#
interface Vlanif1
 ip address 1.1.1.6 255.255.255.0
#
interface MEth0/0/1
#
interface GigabitEthernet0/0/1
 port hybrid tagged vlan 4090
 stp disable
 sep segment 3
 sep segment 3 priority 128
#
interface GigabitEthernet0/0/5
 port hybrid tagged vlan 4090
 stp disable
 sep segment 3

 


免責聲明!

本站轉載的文章為個人學習借鑒使用,本站對版權不負任何法律責任。如果侵犯了您的隱私權益,請聯系本站郵箱yoyou2525@163.com刪除。



 
粵ICP備18138465號   © 2018-2025 CODEPRJ.COM