Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Ngaphambi kokuthi singene ezintweni eziyisisekelo zamaVLAN, bengizonicela nonke ukuthi niyimise kancane le vidiyo, nichofoze isithonjana esisekhoneni elingezansi kwesokunxele lapho kubhalwe khona iNetworking consultant, ngena ekhasini lethu likaFacebook ulithande lapho. Bese ubuyela kuvidiyo bese uchofoza isithonjana seNkosi ekhoneni elingezansi kwesokudla ukuze ubhalisele isiteshi sethu esisemthethweni se-YouTube. Sihlala sengeza uchungechunge olusha, manje lokhu kuthinta inkambo ye-CCNA, bese sihlela ukuqala izifundo zevidiyo CCNA Security, Network+, PMP, ITIL, Prince2 futhi sishicilele lolu chungechunge oluhle esiteshini sethu.

Ngakho-ke, namuhla sizokhuluma ngezisekelo ze-VLAN futhi siphendule imibuzo emi-3: iyini i-VLAN, kungani sidinga i-VLAN nokuthi singayilungisa kanjani. Ngethemba ukuthi ngemva kokubuka lesi sifundo sevidiyo uzokwazi ukuphendula yomithathu imibuzo.

Iyini i-VLAN? I-VLAN isifinyezo senethiwekhi yendawo yendawo. Kamuva kulesi sifundo sizobheka ukuthi kungani le nethiwekhi ingokoqobo, kodwa ngaphambi kokuthi sidlulele kuma-VLAN, sidinga ukuqonda ukuthi iswishi isebenza kanjani. Sizobuyekeza eminye yemibuzo esixoxe ngayo ezifundweni ezedlule.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Okokuqala, ake sixoxe ngokuthi iyini i-Multiple Collision Domain. Siyazi ukuthi le swishi ye-48-port inezizinda zokushayisana ezingama-48. Lokhu kusho ukuthi ngayinye yalezi zimbobo, noma idivayisi exhunywe kulezi zimbobo, ingaxhumana nenye idivayisi endaweni ehlukile ngendlela ezimele ngaphandle kokuthintana.

Wonke amachweba angu-48 alolu shintsho ayingxenye Yesizinda Sokusakaza esisodwa. Lokhu kusho ukuthi uma amadivayisi amaningi axhunywe kuzimbobo eziningi futhi eyodwa yazo isakaza, izovela kuzo zonke izimbobo lapho amadivayisi asele axhumeke khona. Yile ndlela kanye iswishi esebenza ngayo.

Kube sengathi abantu bahlezi ekamelweni elilodwa besondelene, futhi lapho omunye wabo ekhulumela phezulu, wonke umuntu wayezwa. Nokho, lokhu kungasebenzi ngokuphelele - uma abantu bevela abaningi ekamelweni, kuzoba nomsindo futhi abakhona ngeke besazwana. Isimo esifanayo siphakama ngamakhompiyutha - uma amadivaysi engeziwe exhunywe kunethiwekhi eyodwa, "umsindo omkhulu" wokusakaza uba mkhulu, ongavumeli ukuxhumana okuphumelelayo ukuthi kusungulwe.

Siyazi ukuthi uma enye yalezi zisetshenziswa ixhunywe kunethiwekhi ye-192.168.1.0/24, wonke amanye amadivayisi ayingxenye yenethiwekhi efanayo. Iswishi kufanele futhi ixhunywe kunethiwekhi enekheli le-IP elifanayo. Kodwa lapha ukushintshwa, njengedivayisi ye-OSI layer 2, kungase kube nenkinga. Uma amadivaysi amabili exhunywe kunethiwekhi efanayo, angakwazi ukuxhumana kalula namakhompyutha womunye nomunye. Ake sicabange ukuthi inkampani yethu “inomuntu omubi”, isigebengu, engizomdweba ngenhla. Ngezansi kukhona ikhompuyutha yami. Ngakho-ke, kulula kakhulu ukuthi lesi sigebengu singene kukhompyutha yami ngoba amakhompyutha ethu ayingxenye yenethiwekhi efanayo. Inkinga ke leyo.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Uma ngingowokuphatha futhi lo mfana omusha angakwazi ukufinyelela amafayela kukhompuyutha yami, ngeke kulunge nhlobo. Kunjalo, ikhompuyutha yami ine-firewall evikela ezinsongweni eziningi, kodwa ngeke kube nzima ku-hacker ukuyidlula.

Ingozi yesibili ekhona kuwo wonke umuntu oyilungu lalesi sizinda sokusakaza ukuthi uma othile enenkinga ngokusakaza, lokho kuphazamiseka kuzothinta amanye amadivayisi akunethiwekhi. Nakuba wonke amachweba angama-48 angaxhunywa kubabungazi abahlukene, ukwehluleka komsingathi oyedwa kuzothinta enye i-47, okungeyona into esiyidingayo.
Ukuxazulula le nkinga sisebenzisa umqondo we-VLAN, noma inethiwekhi yendawo ebonakalayo. Isebenza kalula kakhulu, ihlukanisa le switch eyodwa enkulu enembobo engama-48 ibe amaswishi ambalwa amancane.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Siyazi ukuthi ama-subnet ahlukanisa inethiwekhi eyodwa enkulu ibe amanethiwekhi amancane ambalwa, futhi ama-VLAN asebenza ngendlela efanayo. Ihlukanisa i-switch ye-48-port, isibonelo, ibe yizishintshi ezi-4 zamachweba angu-12, ngayinye eyingxenye yenethiwekhi entsha exhunyiwe. Ngesikhathi esifanayo, singasebenzisa amachweba angu-12 wokuphatha, amachweba angu-12 we-IP telephony, nokunye, okungukuthi, ukuhlukanisa ukushintshwa hhayi ngokomzimba, kodwa ngokunengqondo, cishe.

Ngabele izimbobo ezintathu eziluhlaza okwesibhakabhaka kuswishi ephezulu yenethiwekhi ye-VLAN10 eluhlaza okwesibhakabhaka, futhi ngabela amachweba amathathu awolintshi e-VLAN20. Ngakho, noma iyiphi ithrafikhi esuka kwenye yalezi zimbobo eziluhlaza izoya kuphela kwezinye izimbobo eziluhlaza okwesibhakabhaka, ngaphandle kokuthikameze ezinye izimbobo zale swishi. Ithrafikhi evela ezimbotsheni eziwolintshi izosatshalaliswa ngokufanayo, okungukuthi, kufana nokuthi sisebenzisa amaswishi amabili ahlukene angokwenyama. Ngakho-ke, i-VLAN iyindlela yokuhlukanisa ukushintshwa kube ukushintsha okuningana kwamanethiwekhi ahlukene.

Ngidwebe amaswishi amabili phezulu, lapha sinesimo lapho kwesokunxele sishintsha amachweba aluhlaza okwesibhakabhaka kuphela kunethiwekhi eyodwa axhunyiwe, futhi ngakwesokudla - amachweba awolintshi kuphela kwenye inethiwekhi, futhi lezi zinguquko azixhunyiwe komunye nomunye nganoma iyiphi indlela. .

Ake sithi ufuna ukusebenzisa izimbobo eziningi. Ake sicabange ukuthi sinezakhiwo ezi-2, ngasinye sinezisebenzi zaso zokuphatha, futhi amachweba amabili awolintshi weswishi ephansi asetshenziselwa ukuphatha. Ngakho-ke, sidinga lezi zimbobo ukuthi zixhunywe kuzo zonke izimbobo eziwolintshi zamanye amaswishi. Isimo siyefana ngezimbobo eziluhlaza okwesibhakabhaka - zonke izimbobo eziluhlaza okwesibhakabhaka zeswishi ephezulu kufanele zixhunywe kwezinye izimbobo zombala ofanayo. Ukuze senze lokhu, sidinga ukuxhuma ngokomzimba lezi zinguquko ezimbili ezakhiweni ezihlukene ngomugqa wokuxhumana ohlukile; emfanekisweni, lona umugqa phakathi kwamachweba amabili aluhlaza. Njengoba sazi, uma ukushintsha okubili kuxhumene ngokomzimba, sakha umgogodla, noma i-trunk.

Uyini umehluko phakathi kweswishi evamile neye-VLAN? Akuwona umehluko omkhulu. Uma uthenga iswishi entsha, ngokuzenzakalelayo zonke izimbobo zilungiswa ngemodi ye-VLAN futhi ziyingxenye yenethiwekhi efanayo, eqokiwe i-VLAN1. Yingakho uma sixhuma noma iyiphi idivayisi embotsheni eyodwa, igcina ixhumeke kuzo zonke ezinye izimbobo ngoba zonke izimbobo ezingama-48 zingeze-VLAN1 efanayo. Kodwa uma silungiselela amachweba aluhlaza ukuze asebenze kunethiwekhi ye-VLAN10, izimbobo eziwolintshi kunethiwekhi ye-VLAN20, kanye nezimbobo eziluhlaza ku-VLAN1, sizothola ukushintsha oku-3 okuhlukile. Ngakho, ukusebenzisa imodi yenethiwekhi ebonakalayo kusivumela ukuthi siqoqe ngokunengqondo izimbobo zibe amanethiwekhi athile, sihlukanise ukusakazwa sibe izingxenye, futhi sakhe ama-subnet. Kulokhu, imbobo ngayinye yombala othile ingeyenethiwekhi ehlukile. Uma izimbobo eziluhlaza zisebenza kunethiwekhi ye-192.168.1.0 kanye nezimbobo eziwolintshi zisebenza kunethiwekhi ye-192.168.1.0, khona-ke naphezu kwekheli le-IP elifanayo, ngeke zixhumeke kwenye, ngoba ngokunengqondo zizoba ngezokushintsha okuhlukile. Futhi njengoba sazi, ukushintsha okuhlukile komzimba akuxhumani ngaphandle uma kuxhunywe ngomugqa wokuxhumana ovamile. Ngakho sakha ama-subnet ahlukene ama-VLAN ahlukene.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Ngingathanda ukudonsela ukunaka kwakho eqinisweni lokuthi umqondo we-VLAN usebenza kuphela kumaswishi. Noma ubani ojwayelene namaphrothokholi e-encapsulation afana ne-.1Q noma i-ISL uyazi ukuthi awekho amarutha noma amakhompyutha anama-VLAN. Uma uxhuma ikhompyutha yakho, isibonelo, kwelinye lamachweba aluhlaza okwesibhakabhaka, awushintshi lutho kukhompuyutha, zonke izinguquko zenzeka kuphela ezingeni le-OSI yesibili, izinga lokushintsha. Uma silungiselela izimbobo ukuthi zisebenze nenethiwekhi ethile ye-VLAN10 noma i-VLAN20, iswishi idala isizindalwazi se-VLAN. "Ibhala" enkumbulweni yayo ukuthi izimbobo 1,3 kanye ne-5 zingeze-VLAN10, izimbobo 14,15 kanye ne-18 ziyingxenye ye-VLAN20, futhi izimbobo ezisele ezihilelekile ziyingxenye ye-VLAN1. Ngakho-ke, uma ithrafikhi ethile isuka kumbobo 1 eluhlaza okwesibhakabhaka, iya kumachweba 3 no-5 we-VLAN10 efanayo. Iswishi ibheka isizindalwazi sayo futhi ibona ukuthi uma ithrafikhi ivela kwelinye lamachweba awolintshi, kufanele iye kuphela emachwebeni awolintshi e-VLAN20.

Nokho, ikhompuyutha ayazi lutho ngalawa ma-VLAN. Uma sixhuma amaswishi angu-2, kwakheka isiqu phakathi kwamachweba aluhlaza. Igama elithi "trunk" lisebenza kuphela kumadivayisi e-Cisco; abanye abakhiqizi bedivayisi yenethiwekhi, njengeJuniper, basebenzisa igama elithi Imbobo ye-Tag, noma "imbobo emakiwe". Ngicabanga ukuthi igama lembobo ye-Tag lifaneleka kakhulu. Uma ithrafikhi isuka kule nethiwekhi, i-trunk iyidlulisela kuwo wonke amachweba we-switch elandelayo, okungukuthi, sixhuma ama-switch amabili angama-48 futhi sithole inkinobho eyodwa ye-96-port. Ngaso leso sikhathi, lapho sithumela ithrafikhi isuka ku-VLAN10, iba imakwa, okungukuthi, inikezwa ilebula ebonisa ukuthi ihloselwe kuphela amachweba wenethiwekhi ye-VLAN10. Iswishi yesibili, ngemva kokuthola le thrafikhi, ifunda ithegi futhi iyaqonda ukuthi lena ithrafikhi eqondene ngqo nenethiwekhi ye-VLAN10 futhi kufanele iye kumachweba aluhlaza kuphela. Ngokufanayo, ithrafikhi "yewolintshi" ye-VLAN20 imakwe ukukhombisa ukuthi iqondiswe kumachweba we-VLAN20 ekushintsheni kwesibili.

Siphinde sakhuluma nge-encapsulation futhi lapha kunezindlela ezimbili ze-encapsulation. Eyokuqala ithi .1Q, okungukuthi, lapho sihlela i-trunk, kufanele sinikeze i-encapsulation. Iphrothokholi ye-.1Q encapsulation iyindinganiso evulekile echaza inqubo yokumaka ithrafikhi. Kukhona enye iphrothokholi ebizwa nge-ISL, Inter-Switch link, eyakhiwe ngabakwaCisco, ekhombisa ukuthi ithrafikhi ingeye-VLAN ethile. Wonke amaswishi esimanje asebenza nephrothokholi ethi .1Q, ngakho-ke uma ukhipha iswishi entsha ebhokisini, awudingi ukusebenzisa noma yimiphi imiyalo ye-encapsulation, ngoba ngokuzenzakalelayo yenziwa umthetho olandelwayo othi .1Q. Ngakho, ngemva kokudala i-trunk, i-traffic encapsulation iyenzeka ngokuzenzakalelayo, okuvumela ukuthi amathegi afundwe.

Manje ake siqale ukusetha i-VLAN. Masidale inethiwekhi lapho kuzoba khona ukushintshwa oku-2 kanye namadivayisi amabili wokugcina - amakhompiyutha i-PC1 ne-PC2, esizoyixhuma ngezintambo ukuze sishintshe #0. Ake siqale ngezilungiselelo eziyisisekelo zeswishi Yokucushwa Okuyisisekelo.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Ukuze wenze lokhu, chofoza inkinobho bese uya kusixhumi esibonakalayo somugqa womyalo, bese usetha igama lomsingathi, ubiza le switch sw1. Manje ake sidlulele kuzilungiselelo zekhompuyutha yokuqala futhi simise ikheli le-IP elimile 192.168.1.1 kanye ne-subnet mask 255.255. 255.0. Asikho isidingo sekheli elizenzakalelayo lesango ngoba wonke amadivaysi ethu akunethiwekhi efanayo. Okulandelayo, sizokwenza okufanayo kukhompuyutha yesibili, siyinikeze ikheli le-IP 192.168.1.2.

Manje ake sibuyele kukhompuyutha yokuqala uku-ping ikhompuyutha yesibili. Njengoba sibona, i-ping ibe yimpumelelo ngoba womabili la makhompyutha axhunywe kuswishi efanayo futhi ayingxenye yenethiwekhi efanayo ngokuzenzakalelayo i-VLAN1. Uma manje sibheka i-switch interfaces, sizobona ukuthi wonke amachweba we-FastEthernet kusuka ku-1 kuya ku-24 kanye namachweba amabili e-GigabitEthernet alungiselelwe ku-VLAN #1. Kodwa-ke, ukutholakala okweqile okunjalo akudingekile, ngakho-ke singena kuzilungiselelo zokushintsha bese sifaka umyalo we-vlan wokubonisa ukuze sibheke ku-database yenethiwekhi ebonakalayo.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Uyabona lapha igama lenethiwekhi ye-VLAN1 kanye neqiniso lokuthi zonke izimbobo zokushintshwa ngezale nethiwekhi. Lokhu kusho ukuthi ungakwazi ukuxhuma kunoma iyiphi ichweba futhi bonke bazokwazi “ukukhuluma” bodwa ngoba bayingxenye yenethiwekhi efanayo.

Sizoshintsha lesi simo; ukwenza lokhu, sizoqale sakhe amanethiwekhi amabili abonakalayo, okungukuthi, engeza i-VLAN10. Ukuze udale inethiwekhi ebonakalayo, sebenzisa umyalo njengokuthi "inombolo yenethiwekhi ye-vlan".
Njengoba ubona, lapho uzama ukwakha inethiwekhi, uhlelo lubonise umlayezo onohlu lwemiyalo yokumisa ye-VLAN okudingeka isetshenziselwe lesi senzo:

phuma - sebenzisa izinguquko kanye nezilungiselelo zokuphuma;
igama - faka igama le-VLAN langokwezifiso;
cha - khansela umyalo noma uwubeke njengedifolthi.

Lokhu kusho ukuthi ngaphambi kokufaka umyalo wokudala we-VLAN, kufanele ufake umyalo wegama, ovula imodi yokuphatha igama, bese uqhubeka nokwakha inethiwekhi entsha. Kulokhu, isistimu iphakamisa ukuthi inombolo ye-VLAN inganikezwa ebangeni ukusuka ku-1 kuye ku-1005.
Ngakho manje sifaka umyalo wokudala inombolo ye-VLAN 20 - vlan 20, bese uyinikeza igama lomsebenzisi, elibonisa ukuthi hlobo luni lwenethiwekhi. Esimweni sethu, sisebenzisa igama elithi Employees command, noma inethiwekhi yabasebenzi benkampani.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Manje sidinga ukwabela imbobo ethile kule VLAN. Sifaka imodi yezilungiselelo zokushintsha int f0/1, bese sishintsha mathupha imbobo iye kumodi yokufinyelela sisebenzisa umyalo wokufinyelela wemodi yokushintsha bese sikhomba ukuthi iyiphi imbobo okufanele ishintshelwe kule modi - lena imbobo yenethiwekhi ye-VLAN10.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Siyabona ukuthi ngemva kwalokhu umbala wephoyinti lokuxhuma phakathi kwe-PC0 kanye nokushintsha, umbala wechweba, ushintshile kusuka eluhlaza kuya ku-orange. Izophenduka ibe luhlaza futhi ngokushesha nje lapho izinguquko zezilungiselelo seziqala ukusebenza. Ake sizame uku-ping ikhompuyutha yesibili. Asenzanga izinguquko kuzilungiselelo zenethiwekhi zamakhompuyutha, asenawo amakheli e-IP 192.168.1.1 kanye no-192.168.1.2. Kodwa uma sizama ukucofa i-PC0 kwikhompyutha kusuka ku-PC1, akukho okuzosebenza, ngoba manje la makhompyutha angawamanethiwekhi ahlukene: eyokuqala iye ku-VLAN10, eyesibili kuya ku-VLAN1 yomdabu.

Masibuyele kusixhumi esibonakalayo sokushintshwa futhi silungiselele imbobo yesibili. Ukwenza lokhu, ngizokhipha umyalo int f0/2 bese ngiphinda izinyathelo ezifanayo ze-VLAN 20 njengoba ngenza lapho ngilungiselela inethiwekhi yangaphambilini ebonakalayo.
Siyabona ukuthi manje ichweba eliphansi le-switch, lapho ikhompyutha yesibili ixhunywe khona, iphinde yashintsha umbala wayo kusukela eluhlaza kuya ku-orange - imizuzwana embalwa kufanele idlule ngaphambi kokuba izinguquko kuzilungiselelo zisebenze futhi iphinde ibe luhlaza. Uma siqala ukufaka i-pinging ikhompuyutha yesibili futhi, akukho lutho oluzosebenza, ngoba amakhompyutha asengamanethiwekhi ahlukene, i-PC1 kuphela manje eyingxenye ye-VLAN1, hhayi i-VLAN20.
Ngakho-ke, uhlukanise ukushintshwa okukodwa komzimba kumaswishi amabili anengqondo ahlukene. Uyabona ukuthi umbala wechweba usushintshile manje ekubeni owolintshi waba luhlaza, ichweba liyasebenza, kodwa namanje aliphenduli ngoba lingelenethiwekhi ehlukile.

Masenze izinguquko kumjikelezo wethu - nqamula i-PC1 yekhompiyutha kusuka kuswishi yokuqala bese uyixhuma kusishintshi sesibili, bese uxhuma izishintshi ngokwazo ngentambo.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Ukuze ngisungule uxhumano phakathi kwabo, ngizongena kuzilungiselelo zokushintshwa kwesibili bese ngidala i-VLAN10, ngiyinike igama elithi Management, okungukuthi, inethiwekhi yokuphatha. Bese ngizonika amandla imodi yokufinyelela futhi ngicacise ukuthi le modi eye-VLAN10. Manje umbala wezimbobo lapho amaswishi axhumeke khona usushintshile ukusuka kokuwolintshi ukuya kokuluhlaza ngenxa yokuthi womabili amiswe ku-VLAN10. Manje sidinga ukudala i-trunk phakathi kokubili kokushintsha. Zombili lezi zimbobo ziyi-Fa0/2, ngakho-ke udinga ukudala i-trunk yembobo ye-Fa0/2 yeswishi yokuqala usebenzisa umyalo we-trunk yemodi yokushintsha. Okufanayo kufanele kwenziwe ekushintsheni kwesibili, emva kwalokho kwakhiwa i-trunk phakathi kwalawa machweba amabili.

Manje, uma ngifuna ukufaka i-PC1 kukhompyutha yokuqala, konke kuzohamba kahle, ngoba ukuxhumana phakathi kwe-PC0 nokushintsha #0 kuyinethiwekhi ye-VLAN10, phakathi kwe-switch #1 ne-PC1 nayo i-VLAN10, futhi kokubili ukushintsha kuxhunywe nge-trunk. .

Ngakho-ke, uma amadivaysi atholakala kuma-VLAN ahlukene, awaxhumekile komunye nomunye, kodwa uma enethiwekhi efanayo, ithrafikhi ingashintshwa ngokukhululekile phakathi kwabo. Ake sizame ukwengeza idivayisi eyodwa kuswishi ngayinye.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Kuzilungiselelo zenethiwekhi ye-PC2 yekhompyutha eyengeziwe, ngizomisa ikheli le-IP ku-192.168.2.1, futhi kuzilungiselelo ze-PC3, ikheli lizoba 192.168.2.2. Kulokhu, izimbobo lapho lawa ma-PC womabili axhumeke kuzo azoqokwa ngokuthi Fa0/3. Kuzilungiselelo zokushintsha #0 sizosetha imodi yokufinyelela futhi sibonise ukuthi lesi simboli senzelwe i-VLAN20, futhi sizokwenza okufanayo ekushintsheni #1.

Uma ngisebenzisa umyalo we-switchport access vlan 20, futhi i-VLAN20 ayikadalwa, isistimu izobonisa iphutha elifana nokuthi “Finyelela i-VLAN ayikho” ngoba amaswishi alungiselelwe ukuthi asebenze kuphela nge-VLAN10.

Masidale i-VLAN20. Ngisebenzisa umyalo othi "bonisa i-VLAN" ukuze ngibuke isizindalwazi senethiwekhi ebonakalayo.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Ungabona ukuthi inethiwekhi ezenzakalelayo yi-VLAN1, lapho kuxhunywe khona izimbobo ze-Fa0/4 kuya ku-Fa0/24 kanye ne-Gig0/1, Gig0/2. Inombolo ye-VLAN engu-10, ebizwa ngokuthi Ukuphathwa, ixhunywe ku-port Fa0/1, futhi inombolo ye-VLAN engu-20, ebizwa ngokuthi i-VLAN0020 ngokuzenzakalelayo, ixhunywe ku-port Fa0/3.

Eqinisweni, igama lenethiwekhi alinandaba, into eyinhloko ukuthi ayiphindaphindiwe kumanethiwekhi ahlukene. Uma ngifuna ukushintsha igama lenethiwekhi elinikezwa uhlelo ngokuzenzakalelayo, ngisebenzisa umyalo vlan 20 kanye negama elithi Abasebenzi. Ngingakwazi ukushintsha leli gama libe enye into, njengama-IPphone, futhi uma sibhala ikheli le-IP 192.168.2.2, singabona ukuthi igama le-VLAN alinancazelo.
Into yokugcina engifuna ukuyisho inhloso ye-Management IP, esikhulume ngayo esifundweni esidlule. Ukwenza lokhu sisebenzisa umyalo we-int vlan1 bese ufaka ikheli le-IP 10.1.1.1 kanye ne-subnet mask 255.255.255.0 bese wengeza umyalo othi akukho ukuvala shaqa. Sabela i-Management IP hhayi yoshintsho lonke, kodwa kumachweba we-VLAN1 kuphela, okungukuthi, sinikeze ikheli le-IP lapho inethiwekhi ye-VLAN1 iphethwe khona. Uma sifuna ukuphatha i-VLAN2, sidinga ukudala isixhumi esibonakalayo esihambisanayo se-VLAN2. Esimweni sethu, kukhona izimbobo eziluhlaza ze-VLAN10 kanye nezimbobo eziwolintshi ze-VLAN20, ezihambisana namakheli 192.168.1.0 kanye ne-192.168.2.0.
I-VLAN10 kufanele ibe namakheli abekwe ebangeni elifanayo ukuze amadivayisi afanele akwazi ukuxhuma kuyo. Ukulungiselelwa okufanayo kufanele kwenziwe ku-VLAN20.

Leli windi lomugqa womyalo wokushintsha libonisa izilungiselelo zokusebenzelana kwe-VLAN1, okungukuthi, i-VLAN yomdabu.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Ukuze ulungiselele i-IP yokuphatha ye-VLAN10, kufanele sakhe i-interface int vlan 10, bese sengeza ikheli le-IP 192.168.1.10 kanye nemaski ye-subnet 255.255.255.0.

Ukuze ulungiselele i-VLAN20, kufanele sakhe i-interface int vlan 20, bese sengeza ikheli le-IP 192.168.2.10 kanye nemaski ye-subnet 255.255.255.0.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku 11: I-VLAN Basics

Kungani lokhu kudingekile? Uma i-PC0 yekhompyutha kanye nembobo yeswishi #0 engenhla kwesokunxele kungokwenethiwekhi ye-192.168.1.0, i-PC2 ingeyenethiwekhi ye-192.168.2.0 futhi ixhunywe kwimbobo yomdabu ye-VLAN1, okungeyenethiwekhi ye-10.1.1.1, i-PC0 ayikwazi ukusungula. ukuxhumana nale swishi ngephrothokholi ye-SSH ngoba ingawamanethiwekhi ahlukene. Ngakho-ke, ukuze i-PC0 ixhumane neswishi nge-SSH noma i-Telnet, kufanele siyinikeze ukufinyelela kokufinyelela. Yingakho sidinga ukuphathwa kwenethiwekhi.

Kufanele sikwazi ukubopha i-PC0 sisebenzisa i-SSH noma i-Telnet ekhelini le-IP lesixhumi esibonakalayo se-VLAN20 futhi senze noma yiziphi izinguquko esizidingayo nge-SSH. Ngakho-ke, i-IP yokuphatha iyadingeka ngokukhethekile ekulungiseni ama-VLAN, ngoba inethiwekhi ngayinye ebonakalayo kufanele ibe nokulawula kwayo kokufinyelela.

Kuvidiyo yanamuhla, sixoxe ngezinkinga eziningi: izilungiselelo eziyisisekelo zokushintsha, ukudala ama-VLAN, ukwabela izimbobo ze-VLAN, ukwabela i-IP yokuphatha yama-VLAN, nokumisa iziqu. Ungabi namahloni uma ungaqondi okuthile, lokhu kungokwemvelo, ngoba i-VLAN iyisihloko esiyinkimbinkimbi kakhulu futhi esibanzi esizobuyela kuso ezifundweni ezizayo. Ngiyaqinisekisa ukuthi ngosizo lwami ungaba inkosi ye-VLAN, kodwa iphuzu lalesi sifundo bekuwukukucacisela imibuzo emi-3: ayini ama-VLAN, kungani siwadinga nokuthi singawamisa kanjani.


Siyabonga ngokuhlala nathi. Uyazithanda izindatshana zethu? Ufuna ukubona okuqukethwe okuthakaselayo okwengeziwe? Sisekele ngokufaka i-oda noma ngokuncoma kubangani, Isaphulelo sika-30% sabasebenzisi be-Habr ku-analogue ehlukile yamaseva eleveli yokungena, esungulwe yithi ngenxa yakho: Lonke iqiniso nge-VPS (KVM) E5-2650 v4 (6 Cores) 10GB DDR4 240GB SSD 1Gbps kusuka ku-$20 noma ukwabelana ngeseva? (itholakala nge-RAID1 kanye ne-RAID10, kufika kuma-cores angu-24 kuze kufike ku-40GB DDR4).

I-Dell R730xd ishibhile izikhathi ezi-2? Lapha kuphela 2 x Intel TetraDeca-Core Xeon 2x E5-2697v3 2.6GHz 14C 64GB DDR4 4x960GB SSD 1Gbps 100 TV kusukela ku-$199 eNetherlands! I-Dell R420 - 2x E5-2430 2.2Ghz 6C 128GB DDR3 2x960GB SSD 1Gbps 100TB - isuka ku-$99! Funda mayelana Indlela yokwakha ingqalasizinda corp. ikilasi ngokusetshenziswa kwe-Dell R730xd E5-2650 v4 amaseva abiza u-9000 euros ngepeni?

Source: www.habr.com

Engeza amazwana