配置vlan
實驗目錄
一.配置vlan、trunk
1.配置H3C1的vlan,及vlan查看命令!!
[H3C1]display vlan
[H3C1]display vlan all
[H3C1]display port trunk
[H3C1]display interface e0/4/3
2.配置H3C2的vlan
3,解決默認只允許vlan1通過trunk鏈路
[H3C1-Ethernet0/4/3]port trunk permit vlan all
4.gvrp相當與Cisco的VTP服務
二.vlan間路由
1.三層交換trunk和hybrid
2.單臂路由
一.配置vlan、trunk
|
粗略的查看有設備上有幾個vlan
[H3C1]display vlan
Total 2 VLAN exist(s).
The following VLANs exist:
1(default), 2
詳細的查看設備上vlan的情況
[H3C1]display vlan all
VLAN ID: 1 //vlan1的詳細信息
VLAN Type: static //vlan屬於靜態的,也就是說是手工創建的
Route Interface: configured
IP Address: 1.1.1.1
Subnet Mask: 255.255.255.0
Description: VLAN 0001 //對vlan的描述
Broadcast MAX-ratio: 100% //廣播包在vlan鏈路占的百分比,可改
Tagged Ports: none //標記的,如果串行接口不在此vlan中, 那個接口將會出現在此處!
Untagged Ports: //可以說是屬於本vlan的接口
Ethernet0/4/0 Ethernet0/4/1 Ethernet0/4/2
Ethernet0/4/3 Ethernet0/4/4 Ethernet0/4/5
Ethernet0/4/6 Ethernet0/4/7
VLAN ID: 2 //vlan2的詳細信息
VLAN Type: static
Route Interface: configured
IP Address: 2.2.2.2
Subnet Mask: 255.255.255.0
Description: VLAN 0002
Broadcast MAX-ratio: 100%
Tagged Ports: none
Untagged Ports: none
查看vlan接口狀態,可以看到vlan2是down的,原因是:默認trunk只為vlan1服務!!
[H3C1]display ip interface brief
*down: administratively down
(s): spoofing
Interface Physical Protocol IP Address
Ethernet0/1/0 up down unassigned
Vlan-interface1 up up 1.1.1.1
Vlan-interface2 down down 2.2.2.2
查看設備上開啟trunk的端口,PVID屬於哪個vlan,允許通過trunk的vlan!此時只有1!
[H3C1]display port trunk
Interface PVID VLAN passing
Eth0/4/3 1 1
查看trunk端口
[H3C1]display interface e0/4/3
部分顯示省略
Port link-type: trunk
VLAN passing : 1(default vlan) //默認只有vlan1通過
VLAN permitted: 1(default vlan) //默認只允許vlan1通過
Trunk port encapsulation: IEEE 802.1q //封裝類型只會是IEEE802.1q
|
3.解決默認只允許vlan1通過trunk鏈路
雖然配置完畢但是此時vlan2的接口是down的,原因上面已經看到,是默認只能vlan1通過trunk,這點是和Cisco不同的地方。
我們要在的是允許所有的vlan通過trunk鏈路
[H3C1]interface e0/4/3
[H3C1-Ethernet0/4/3]port trunk permit vlan ?
INTEGER<1-4094> VLAN ID
all All the VLANs
[H3C1-Ethernet0/4/3]port trunk permit vlan all
Please wait...
%Nov 18 19:59:07:453 2010 H3C1 IFNET/4/LINK UPDOWN:
Vlan-interface2: link status is UP
%Nov 18 19:59:07:453 2010 H3C1 IFNET/4/UPDOWN:
Line protocol on the interface Vlan-interface2 is UP ........................................ Done.
[H3C1-Ethernet0/4/3] //此時vlan2接口就開啟了
[H3C2]interface e0/4/3
[H3C2-Ethernet0/4/3]port trunk permit vlan all
Please wait...
%Nov 18 20:00:16:844 2010 H3C2 IFNET/4/LINK UPDOWN:
Vlan-interface2: link status is UP
%Nov 18 20:00:16:844 2010 H3C2 IFNET/4/UPDOWN:
Line protocol on the interface Vlan-interface2 is UP ........................................ Done.
[H3C2-Ethernet0/4/3]
[H3C1]display vlan all
VLAN ID: 1
VLAN Type: static
Route Interface: configured
IP Address: 1.1.1.1
Subnet Mask: 255.255.255.0
Description: VLAN 0001
Broadcast MAX-ratio: 100%
Tagged Ports: none
Untagged Ports:
Ethernet0/4/0 Ethernet0/4/1 Ethernet0/4/2
Ethernet0/4/3 Ethernet0/4/4 Ethernet0/4/5
Ethernet0/4/6 Ethernet0/4/7
VLAN ID: 2
VLAN Type: static
Route Interface: configured
IP Address: 2.2.2.2
Subnet Mask: 255.255.255.0
Description: VLAN 0002
Broadcast MAX-ratio: 100%
Tagged Ports:
Ethernet0/4/3 //本vlan通過哪個接口出去
Untagged Ports: none
[H3C1]display interface e0/4/3
部分顯示省略
Port link-type: trunk
VLAN passing : 1(default vlan), 2 //此時通過的vlan
VLAN permitted: 1(default vlan), 2-4094 //此時允許通過的vlan是all
Trunk port encapsulation: IEEE 802.1q
<H3C1>display gvrp statistics
GVRP statistics on port Ethernet0/4/3
GVRP Status : Enabled
GVRP Running : YES
GVRP Failed Registrations : 0
GVRP Last Pdu Origin : 0000-5602-0003
GVRP Registration Type : Normal
二.vlan間路由
1.三層交換--trunk和hybrid
首先介紹trunk
通過trunk使用三層交換實現vlan間路由是很簡單的,只需要開啟trunk鏈路並允許相應vlan通過即可!與Cisco不同,不需要開啟路由功能!!!!
然后是hybrid
Hybrid是h3c的,下面的實驗就是hybrid的應用。
實驗拓撲
|
|
實驗環境:
Pc0屬於vlan2 網關:192.168.2.254
Pc1屬於vlan3 網關:192.168.3.254
Sw1上 vlan2:192.168.2.254 sw2上 vlan3:192.168.2.252
Vlan3:192.168.3.252 vlan3:192.168.3.252
實驗步驟:
創建vlan並把相應的接口加入到vlan中
[sw1]vlan 2
[sw1-vlan2]vlan 3
[sw1-vlan3]vlan 2
[sw1-vlan2]port e1/0/6
為vlan設置ip地址
開啟hybrid的混雜鏈路類型
設置vlan2、3不打標簽!看同一台交換機上不同vlan能否通信
看不同交換機上的不同vlan能否通信
實驗環境如圖
實驗步驟:
創建vlan並把相應的接口加入到vlan中
[sw1]vlan 2
[sw1-vlan2]vlan 3
[sw1-vlan3]vlan 2
[sw1-vlan2]port e1/0/6
[sw1]int e1/0/2
[sw1-Ethernet1/0/2]port link-type trunk
[sw1-Ethernet1/0/2]port trunk permit vlan all
[sw2]vlan 2
[sw2-vlan2]vlan 3
[sw2-vlan3]port e1/0/6
[sw2-Ethernet1/0/2]port link-type trunk
[sw2-Ethernet1/0/2]port trunk p vlan all
為vlan設置ip地址(不設置應該可以)
設置路由器--開啟主接口
[H3C]int e0/0
[H3C-Ethernet0/0]un shut
創建子接口-ip-封裝類型+對應vid
[H3C]int e0/0.1
[H3C-Ethernet0/0.1]ip add 192.168.2.254 24
[H3C-Ethernet0/0.1]vlan-type dot1q vid 2
[H3C]int e0/0.2
[H3C-Ethernet0/0.2]ip add 192.168.3.254 24
[H3C-Ethernet0/0.2]vlan-type dot1q vid 3
[H3C]display ip int b
*down: administratively down
(s): spoofing
Interface Physical Protocol IP Address
Aux0 down down unassigned
Ethernet0/0 up down unassigned
Ethernet0/0.1 up up 192.168.2.254
Ethernet0/0.2 up up 192.168.3.254
Ethernet0/1 down down unassigned
Serial4/0 down down unassigned
[H3C]int e0/0
[H3C-Ethernet0/0]ip add 192.168.1.1 24
Sw1上開啟與路由器相連的trunk鏈路--允許所有
[sw1]int e1/0/12
[sw1-Ethernet1/0/12]port link-type trunk
[sw1-Ethernet1/0/12]port trunk permit vlan all