Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Namuhla sizoqhubeka nengxoxo yethu yama-VLAN futhi sixoxe ngephrothokholi ye-VTP, kanye nemiqondo ye-VTP Pruning kanye ne-Native VLAN. Sesivele sikhulume nge-VTP kwenye yamavidiyo adlule, futhi into yokuqala okufanele ifike engqondweni yakho lapho uzwa nge-VTP ukuthi akuyona iphrothokholi ye-trunking, naphezu kokubizwa ngokuthi "i-VLAN trunking protocol."

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Njengoba wazi, kunezimiso ezimbili ezithandwayo ze-trunking - i-protocol ye-Cisco ISL, engasetshenziswa namuhla, kanye ne-protocol ye-802.q, esetshenziswa kumadivayisi enethiwekhi avela kubakhiqizi abahlukahlukene ukuze bahlanganise ithrafikhi ye-trunking. Le nqubo yomthetho isetshenziswa futhi kumaswishi e-Cisco. Sesishilo kakade ukuthi i-VTP iyiphrothokholi yokuvumelanisa ye-VLAN, okungukuthi, yakhelwe ukuvumelanisa isizindalwazi se-VLAN kuwo wonke amaswishi enethiwekhi.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Sikhulume ngezindlela ezihlukene ze-VTP - iseva, iklayenti, izinto ezibonakalayo. Uma idivayisi isebenzisa imodi yeseva, lokhu kukuvumela ukuthi wenze izinguquko, wengeze noma ususe ama-VLAN. Imodi yeklayenti ayikuvumeli ukuthi wenze izinguquko kuzilungiselelo zokushintsha, ungamisa isizindalwazi se-VLAN kuphela ngeseva ye-VTP, futhi izophindwa kuwo wonke amaklayenti e-VTP. Iswishi kumodi ebonisa ngale ayenzi izinguquko kusizindalwazi sayo se-VLAN, kodwa ivele izidlule ngokwayo bese idlulisela izinguquko kudivayisi elandelayo kwimodi yeklayenti. Le modi ifana nokukhubaza i-VTP kudivayisi ethile, ukuyiguqula ibe isithuthi solwazi loshintsho lwe-VLAN.

Ake sibuyele ohlelweni lwe-Packet Tracer kanye ne-topology yenethiwekhi okuxoxwe ngayo esifundweni esandulele. Silungiselele inethiwekhi ye-VLAN10 yomnyango wezokuthengisa kanye nenethiwekhi ye-VLAN20 yomnyango wokumaketha, sizihlanganise namaswishi amathathu.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Phakathi kwamaswishi SW0 kanye ne-SW1 ukuxhumana kwenziwa ngenethiwekhi ye-VLAN20, futhi phakathi kwe-SW0 ne-SW2 kukhona ukuxhumana ngenethiwekhi ye-VLAN10 ngenxa yokuthi sengeze i-VLAN10 kusizindalwazi se-VLAN sokushintshwa kwe-SW1.
Ukuze ucabangele ukusebenza kwephrothokholi ye-VTP, masisebenzise enye yamaswishi njengeseva ye-VTP, mayibe ngu-SW0. Uma ukhumbula, ngokuzenzakalelayo wonke amaswishi asebenza kumodi yeseva ye-VTP. Ake siye kutheminali yomugqa womyalo weswishi bese sifaka umyalo wesimo se-vtp. Uyabona inguqulo yamanje ye-VTP yephrothokholi ithi 2 futhi inombolo yokubuyekeza yokumisa ithi 4. Uma ukhumbula, ngaso sonke isikhathi uma izinguquko zenziwa kusizindalwazi se-VTP, inombolo yokubuyekeza inyuka ngokukodwa.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Inombolo enkulu yama-VLAN asekelwe ngu-255. Le nombolo incike kumkhiqizo weswishi ethile ye-Cisco, njengoba amaswishi ahlukene angasekela izinombolo ezihlukene zamanethiwekhi abonakalayo endawo. Isibalo samaVLAN akhona siyisi-7, ngomzuzu sizobheka ukuthi ayini la manethiwekhi. Imodi yokulawula ye-VTP iyiseva, igama lesizinda alisethiwe, Imodi ye-VTP Pruning ivaliwe, sizobuyela kulokhu kamuva. Izindlela ze-VTP V2 ne-VTP Traps Generation nazo zikhutshaziwe. Awudingi ukwazi ngezindlela ezimbili zokugcina ukuze uphumelele ukuhlolwa kwe-200-125 CCNA, ngakho ungakhathazeki ngazo.

Ake sibheke isizindalwazi se-VLAN sisebenzisa umyalo we-show vlan. Njengoba sesibonile kuvidiyo edlule, sinamanethiwekhi angasekelwe angu-4: 1002, 1003, 1004 kanye ne-1005.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Iphinda iklelise amanethiwekhi ama-2 esiwadalile, i-VLAN10 ne-20, kanye nenethiwekhi ezenzakalelayo, i-VLAN1. Manje ake sidlulele kwenye iswishi bese sifaka umyalo ofanayo ukuze sibuke isimo se-VTP. Uyabona ukuthi inombolo yokubuyekeza yalolu shintsho ingu-3, ​​ikwimodi yeseva ye-VTP futhi lonke olunye ulwazi lufana nokushintsha kokuqala. Uma ngifaka umyalo we-VLAN wombukiso, ngiyabona ukuthi senze izinguquko ezi-2 kuzilungiselelo, eyodwa engaphansi kokushintsha i-SW0, yingakho inombolo yokubuyekeza ye-SW1 ingu-3. Senze izinguquko ezingu-3 kuzilungiselelo ezizenzakalelayo zokuqala shintsha, ngakho-ke inombolo yayo yokubuyekeza ikhuphuke yaba ngu-4.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Manje ake sibheke isimo se-SW2. Inombolo yokubuyekeza lapha ngu-1, okuyisimanga. Kufanele sibe nesibuyekezo sesibili ngoba izinguquko zezilungiselelo ezi-1 zenziwe. Ake sibheke ku-VLAN database.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Senze ushintsho olulodwa, sakha i-VLAN10, futhi angazi ukuthi kungani lolo lwazi lungazange lubuyekezwe. Mhlawumbe lokhu kwenzeka ngoba asinayo inethiwekhi yangempela, kodwa i-simulator yenethiwekhi yesofthiwe, okungenzeka ibe namaphutha. Uma unethuba lokusebenza ngamadivayisi wangempela ngenkathi usebenza e-Cisco, kuzokusiza ngaphezu kwe-Packet Tracer simulator. Enye into ewusizo uma engekho amadivayisi wangempela kungaba i-GNC3, noma i-graphical Cisco network simulator. Lesi i-emulator esebenzisa uhlelo lwangempela lokusebenza lwedivayisi, njengerutha. Kukhona umehluko phakathi kwe-simulator kanye ne-emulator - eyokuqala uhlelo olubukeka njenge-router yangempela, kodwa akuyona eyodwa. Isofthiwe yokulingisa idala kuphela idivayisi ngokwayo, kodwa isebenzisa isofthiwe yangempela ukuyiqhuba. Kodwa uma ungenalo ikhono lokusebenzisa isofthiwe ye-Cisco IOS yangempela, i-Packet Tracer iyindlela yakho engcono kakhulu.

Ngakho-ke, sidinga ukumisa i-SW0 njengeseva ye-VTP, ngenxa yalokhu ngiya kumodi yokumisa izilungiselelo zomhlaba wonke bese ngifaka umyalo we-vtp version 2 Njengoba ngishilo, singafaka inguqulo ye-protocol esiyidingayo - 1 noma 2, kulokhu uma sidinga inguqulo yesibili. Okulandelayo, sisebenzisa umyalo wemodi ye-vtp, sibeka imodi ye-VTP yokushintsha - iseva, iklayenti noma obala. Kulesi simo, sidinga imodi yeseva, futhi ngemva kokufaka umyalo weseva yemodi ye-vtp, uhlelo lubonisa umlayezo wokuthi idivayisi isivele ikumodi yeseva. Okulandelayo, kufanele silungiselele isizinda se-VTP, lapho sisebenzisa umyalo we-vtp wesizinda esithi nwking.org. Kungani lokhu kudingekile? Uma kukhona enye idivayisi kunethiwekhi enenombolo yokubuyekeza ephezulu, wonke amanye amadivayisi anenombolo yokubuyekeza ephansi aqala ukuphindaphinda isizindalwazi se-VLAN kusukela kuleyo divayisi. Nokho, lokhu kwenzeka kuphela uma amadivayisi anegama lesizinda elifanayo. Isibonelo, uma usebenza ku-nwking.org, ukhombisa lesi sizinda, uma ku-Cisco, bese kuba yi-Cisco.com, njalonjalo. Igama lesizinda lamadivayisi enkampani yakho likuvumela ukuthi uwahlukanise kumadivayisi asuka kwenye inkampani noma kunoma imaphi amanye amadivayisi angaphandle kunethiwekhi. Uma unikeza igama lesizinda senkampani kudivayisi, uyenza ingxenye yenethiwekhi yaleyo nkampani.

Into elandelayo okufanele uyenze ukusetha iphasiwedi ye-VTP. Kudingeka ukuze isigebengu se-inthanethi, esinedivayisi enenombolo yokubuyekeza ephezulu, singakwazi ukukopisha izilungiselelo zakhe ze-VTP kusishintshi sakho. Ngifaka iphasiwedi ye-cisco ngisebenzisa umyalo we-vtp we-cisco. Ngemva kwalokhu, ukuphindaphinda kwedatha ye-VTP phakathi kwamaswishi kuzokwenzeka kuphela uma amagama ayimfihlo ehambisana. Uma iphasiwedi engalungile isetshenziswa, isizindalwazi se-VLAN ngeke sibuyekezwe.

Ake sizame ukudala amanye ama-VLAN. Ukwenza lokhu, ngisebenzisa umyalo we-config t, sebenzisa umyalo we-vlan 200 ukuze udale inombolo yenethiwekhi engu-200, uyinike igama elithi TEST futhi ulondoloze izinguquko ngomyalo wokuphuma. Bese ngidala enye i-vlan 500 futhi ngiyibize nge-TEST1. Uma manje ufaka umyalo we-vlan we-show, khona-ke kuthebula lamanethiwekhi abonakalayo we-switch ungabona lawa manethiwekhi amasha amabili, okungekho nechweba elilodwa elinikezwe.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Masiqhubekele ku-SW1 futhi sibone isimo sayo se-VTP. Siyabona ukuthi akukho okushintshile lapha ngaphandle kwegama lesizinda, inani le-VLAN lihlala lilingana no-7. Asiboni amanethiwekhi esiwadalile avela ngoba iphasiwedi ye-VTP ayifani. Masisethe iphasiwedi ye-VTP kule swishi ngokufaka ngokulandelana imiyalo conf t, vtp pass kanye ne-vtp password Cisco. Uhlelo lubike ukuthi isizindalwazi se-VLAN sedivayisi manje sisebenzisa iphasiwedi ye-Cisco. Ake sibheke futhi isimo se-VTP ukuze sihlole ukuthi ulwazi luphindiwe yini. Njengoba ubona, inani lama-VLAN akhona likhuphuke ngokuzenzakalelayo laya ku-9.

Uma ubheka i-database ye-VLAN yalolu shintsho, ungabona ukuthi amanethiwekhi we-VLAN200 ne-VLAN500 esiwadalile avele kuyo ngokuzenzakalelayo.

Okufanayo kufanele kwenziwe ngeswishi yokugcina SW2. Masifake umyalo we-show vlan - ungabona ukuthi azikho izinguquko ezenzeke kuwo. Ngokufanayo, alukho ushintsho esimweni se-VTP. Ukuze lolu shintsho lubuyekeze ulwazi, udinga futhi ukusetha iphasiwedi, okungukuthi, faka imiyalo efanayo neye-SW1. Ngemuva kwalokhu, inani lama-VLAN esimweni se-SW2 lizokhuphuka libe ngu-9.

Yilokho i-VTP eyenzelwe yona. Lokhu kuyinto enhle ebuyekeza ngokuzenzakalelayo imininingwane kuwo wonke amadivayisi enethiwekhi yeklayenti ngemuva kokwenziwa kwezinguquko kudivayisi yeseva. Awudingi ukwenza izinguquko mathupha kusizindalwazi se-VLAN sawo wonke amaswishi - ukuphindaphinda kwenzeka ngokuzenzakalelayo. Uma unamadivayisi enethiwekhi angu-200, izinguquko ozenzayo zizolondolozwa kuwo wonke amadivayisi angamakhulu amabili ngesikhathi esisodwa. Uma kwenzeka, sidinga ukwenza isiqiniseko sokuthi i-SW2 nayo iyiklayenti le-VTP, ngakho-ke masingene kuzilungiselelo ngomyalo we-config t bese sifaka umyalo weklayenti lemodi ye-vtp.

Ngakho, kunethiwekhi yethu kuphela iswishi yokuqala ekwimodi Yeseva ye-VTP, ezinye ezimbili zisebenza kumodi yeKlayenti ye-VTP. Uma manje ngiya kuzilungiselelo ze-SW2 bese ngifaka umyalo we-vlan 1000, ngizothola umlayezo: β€œukulungisa i-VTP VLAN akuvunyelwe uma idivayisi ikumodi yeklayenti.” Ngakho, angikwazi ukwenza izinguquko kusizindalwazi se-VLAN uma iswishi ikumodi yeklayenti le-VTP. Uma ngifuna ukwenza izinguquko, ngidinga ukuya kuseva yokushintsha.

Ngiya kuzilungiselelo zetheminali ye-SW0 bese ngifaka imiyalo vlan 999, igama elithi IMRAN bese ngiyaphuma. Le nethiwekhi entsha ivele ku-database ye-VLAN yalolu shintsho, futhi uma manje ngiya ku-database ye-switch yeklayenti SW2, ngizobona ukuthi ulwazi olufanayo luye lwavela lapha, okungukuthi, ukuphindaphinda kwenzeke.

Njengoba ngishilo, i-VTP iwucezu olukhulu lwesoftware, kepha uma isetshenziswe ngokungalungile, ingaphazamisa yonke inethiwekhi. Ngakho-ke, udinga ukuqaphela kakhulu lapho uphatha inethiwekhi yenkampani uma igama lesizinda nephasiwedi ye-VTP ingasethiwe. Kulokhu, konke okudinga ukwenziwa ngumduni we-inthanethi ukuxhuma ikhebula le-switch yakhe esokhethi yenethiwekhi odongeni, axhume kunoma iyiphi inkinobho yehhovisi esebenzisa umthetho olandelwayo we-DTP, bese esebenzisa isiqu esidaliwe, abuyekeze yonke imininingwane esebenzisa i-VTP protocol. . Ngale ndlela, i-hacker ingasusa wonke ama-VLAN abalulekile, isebenzise iqiniso lokuthi inombolo yokubuyekeza yedivayisi yakhe iphakeme kunenombolo yokubuyekezwa kwamanye amaswishi. Kulokhu, amaswishi enkampani azothatha indawo ngokuzenzakalelayo yonke imininingwane yesizindalwazi se-VLAN ngolwazi oluphindaphindwe kusuka kushintsho olunonya, futhi yonke inethiwekhi yakho izowa.

Lokhu kungenxa yokuthi amakhompyutha axhunywe kusetshenziswa intambo yenethiwekhi endaweni ethile yokushintsha lapho i-VLAN 10 noma i-VLAN20 yabelwe khona. Uma lawa manethiwekhi esuswa kusizindalwazi se-LAN yeswishi, izokhubaza ngokuzenzakalela imbobo yenethiwekhi engekho. Ngokuvamile, inethiwekhi yenkampani ingawa ngokunembile ngenxa yokuthi amaswishi avele akhubaze izimbobo ezihlotshaniswa nama-VLAN asuswe ngesikhathi sokubuyekezwa okulandelayo.

Ukuze uvimbele ukuthi inkinga enjalo ingenzeki, udinga ukusetha igama lesizinda se-VTP nephasiwedi noma usebenzise isici se-Cisco Port Security, esikuvumela ukuthi uphathe amakheli we-MAC wokushintshwa kwamachweba, wethula imikhawulo ehlukahlukene ekusebenziseni kwabo. Isibonelo, uma omunye umuntu ezama ukushintsha ikheli le-MAC, imbobo izokwehla ngokushesha. Sizobhekisisa lesi sici sokushintshwa kwe-Cisco maduze nje, kodwa okwamanje okudingeka ukwazi ukuthi i-Port Security ikuvumela ukuthi wenze isiqiniseko sokuthi i-VTP ivikelekile kumhlaseli.

Ake sifingqe ukuthi siyini isilungiselelo se-VTP. Lokhu ukukhetha kwenguqulo yephrothokholi - 1 noma 2, isabelo semodi ye-VTP - iseva, iklayenti noma obala. Njengoba ngishilo kakade, imodi yokugcina ayibuyekezi i-VLAN database yedivayisi ngokwayo, kodwa imane idlulisele zonke izinguquko kumadivayisi angomakhelwane. Okulandelayo imiyalo yokunikeza igama lesizinda nephasiwedi: isizinda se-vtp <igama lesizinda> kanye nephasiwedi ye-vtp <password>.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Manje ake sikhulume ngezilungiselelo ze-VTP Pruning. Uma ubheka i-topology yenethiwekhi, ungabona ukuthi womathathu amaswishi anedathabhesi efanayo ye-VLAN, okusho ukuthi i-VLAN10 ne-VLAN20 ziyingxenye yazo zonke izinguquko ezi-3. Ngokobuchwepheshe, ukushintsha i-SW2 ayidingi i-VLAN20 ngoba ayinazo izimbobo zale nethiwekhi. Nokho, kungakhathalekile lokhu, yonke ithrafikhi ethunyelwa isuka kukhompyutha ye-Laptop0 ngenethiwekhi ye-VLAN20 ifinyelela kuswishi ye-SW1 futhi isuke kuyo idlule esiqwini iye ezichwebeni ze-SW2. Umsebenzi wakho oyinhloko njengochwepheshe benethiwekhi ukuqinisekisa ukuthi idatha encane engadingekile idluliselwa ngenethiwekhi. Kufanele uqinisekise ukuthi idatha edingekayo idluliswa, kodwa ungakukhawulela kanjani ukudluliswa kolwazi olungadingeki kudivayisi?

Kufanele uqinisekise ukuthi ithrafikhi eqondiswe kumadivayisi aku-VLAN20 ayigelezi iye ezimbobeni ze-SW2 nge-trunk uma ingadingeki. Okusho ukuthi, ithrafikhi ye-Laptop0 kufanele ifinyelele ku-SW1 bese iye kumakhompyutha aku-VLAN20, kodwa akufanele idlulele ngalΓ© kwembobo elungile ye-SW1. Lokhu kungafezwa ngokusebenzisa i-VTP Pruning.

Ukuze wenze lokhu, sidinga ukuya kuzilungiselelo zeseva ye-VTP SW0, ngoba njengoba sengishilo, izilungiselelo ze-VTP zingenziwa kuphela ngeseva, iya kuzilungiselelo zokucushwa komhlaba wonke bese uthayipha umyalo we-vtp wokuthena. Njengoba i-Packet Tracer iwuhlelo lokulingisa, awukho umyalo onjalo emiyalweni yayo yomugqa womyalo. Nokho, uma ngibhala i-vtp pruning bese ngicindezela u-Enter, uhlelo lungitshela ukuthi i-vtp pruning mode ayitholakali.

Ngokusebenzisa umyalo wesimo se-vtp, sizobona ukuthi imodi ye-VTP Pruning isesimweni sokukhubazeka, ngakho-ke sidinga ukuyenza itholakale ngokuyihambisa endaweni yokuyivumela. Ngemva kokwenza lokhu, senza kusebenze imodi ye-VTP Pruning kuwo wonke amaswishi amathathu enethiwekhi yethu ngaphakathi kwesizinda senethiwekhi.
Ake ngikukhumbuze ukuthi iyini i-VTP Pruning. Uma sivumela le modi, shintsha iseva i-SW0 yazisa ukushintshwa kwe-SW2 ukuthi yi-VLAN10 kuphela elungiselelwe ezimbobeni zayo. Ngemva kwalokhu, shintsha i-SW2 itshela ukushintsha i-SW1 ukuthi ayidingi noma iyiphi ithrafikhi ngaphandle kwethrafikhi ehloselwe i-VLAN10. Manje, ngenxa ye-VTP Pruning, shintsha i-SW1 inolwazi lokuthi ayidingi ukuthumela ithrafikhi ye-VLAN20 eduze kwesiqu se-SW1-SW2.

Lokhu kukulungele kakhulu njengomphathi wenethiwekhi. Akudingeki ukuthi ufake imiyalo mathupha ngoba iswishi ihlakaniphe ngokwanele ukuthumela lokho okudingwa yidivayisi ethile yenethiwekhi. Uma kusasa ufaka omunye umnyango wezokumaketha esakhiweni esilandelayo bese uxhuma inethiwekhi yayo ye-VLAN20 ukuze ushintshe i-SW2, leyo swishi izotshela ngokushesha i-SW1 ukuthi manje isine-VLAN10 ne-VLAN20 futhi iyicela ukuthi idlulisele ithrafikhi yawo womabili amanethiwekhi. Lolu lwazi luvuselelwa njalo kuwo wonke amadivaysi, okwenza ukuxhumana kuphumelele kakhulu.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Kukhona enye indlela yokucacisa ukudluliswa kwethrafikhi - lokhu ukusebenzisa umyalo ovumela ukudluliswa kwedatha kuphela ku-VLAN ecacisiwe. Ngiya kuzilungiselelo zokushintshwa kwe-SW1, lapho nginentshisekelo ku-port Fa0/4, bese ngifaka imiyalo int fa0/4 kanye ne-switchport trunk evunyelwe i-vlan. Njengoba sengivele ngazi ukuthi i-SW2 ine-VLAN10 kuphela, ngingatshela i-SW1 ukuthi ivumele ithrafikhi yaleyo nethiwekhi kuphela echwebeni layo le-trunk ngokusebenzisa umyalo ovunyelwe we-vlan. Ngakho ngahlela imbobo ye-trunk Fa0/4 ukuthi iphathe ithrafikhi ye-VLAN10 kuphela. Lokhu kusho ukuthi leli chweba ngeke livumele ithrafikhi eyengeziwe evela ku-VLAN1, VLAN20, nanoma iyiphi enye inethiwekhi ngaphandle kwaleyo eshiwo.

Ungase uzibuze ukuthi iyiphi engcono ongayisebenzisa: I-VTP Pruning noma umyalo we-vlan ovunyelwe. Impendulo incike ngoba kwezinye izimo kunengqondo ukusebenzisa indlela yokuqala, kanti kwezinye kunengqondo ukusebenzisa eyesibili. Njengomphathi wenethiwekhi, kukuwe ukuthi ukhethe isisombululo esingcono kakhulu. Kwezinye izimo, isinqumo sokuhlela ichweba ukuvumela ithrafikhi evela ku-VLAN ethile singaba sihle, kodwa kwezinye singaba sibi. Endabeni yenethiwekhi yethu, ukusebenzisa umyalo we-vlan ovunyelwe kungase kuthethelelwe uma singeke siguqule i-topology yenethiwekhi. Kodwa uma othile kamuva efuna ukwengeza iqembu lamadivayisi asebenzisa i-VLAN2 kuya ku-SW 20, kungaba kuhle kakhulu ukusebenzisa imodi ye-VTP Pruning.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Ngakho, ukusetha i-VTP Pruning kuhlanganisa ukusebenzisa le miyalo elandelayo. Umyalo wokuthena we-vtp unikeza ukusetshenziswa okuzenzakalelayo kwale modi. Uma ufuna ukulungisa i-VTP Pruning yembobo ye-trunk ukuze uvumele ithrafikhi ye-VLAN ethile ukuthi idlule mathupha, sebenzisa umyalo ukuze ukhethe isixhumi esibonakalayo senombolo yembobo ye-trunk <#>, vumela i-trunk mode switchport mode trunk futhi uvumele ukudluliswa kwethrafikhi. kunethiwekhi ethile usebenzisa i-switchport trunk evunyelwe umyalo we-vlan .

Emyalweni wokugcina ungasebenzisa amapharamitha angu-5. Konke kusho ukuthi ukudluliswa kwethrafikhi kuwo wonke ama-VLAN kuvunyelwe, akukho - ukudluliswa kwethrafikhi kuwo wonke ama-VLAN akuvunyelwe. Uma usebenzisa ipharamitha engeza, ungangeza ukuhamba kwethrafikhi kwenye inethiwekhi. Isibonelo, sivumela ithrafikhi ye-VLAN10, futhi ngomyalo wokwengeza singavumela ithrafikhi ye-VLAN20 ukuthi idlule. Umyalo wokukhipha ikuvumela ukuthi ususe eyodwa yamanethiwekhi, isibonelo, uma usebenzisa ipharamitha yokususa engu-20, kuzohlala ithrafikhi ye-VLAN10 kuphela.

Manje ake sibheke i-VLAN yomdabu. Sesishilo ukuthi i-VLAN yomdabu iyinethiwekhi ebonakalayo yokudlula ithrafikhi engafakwanga echwebeni elithile le-trunk.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu

Ngingena kuzilungiselelo ezithile zembobo njengoba kukhonjiswe yisihloko somugqa womyalo we-SW(config-if)# bese ngisebenzisa i-switchport trunk native vlan <inombolo yenethiwekhi>, isibonelo i-VLAN10. Manje yonke ithrafikhi ku-VLAN10 izodlula esiqwini esingamakiwe.

Ake sibuyele ku-topology yenethiwekhi enengqondo efasiteleni le-Packet Tracer. Uma ngisebenzisa i-switchport trunk native vlan 20 command on switch port Fa0/4, khona-ke yonke ithrafikhi ku-VLAN20 izogeleza ku-Fa0/4 - SW2 isiqu esingamakiwe. Uma i-switch SW2 ithola le thrafikhi, izocabanga: "le ithrafikhi engamakiwe, okusho ukuthi kufanele ngiyihambise ku-VLAN yomdabu." Kulolu shintsho, i-VLAN yomdabu iyinethiwekhi ye-VLAN1. Amanethiwekhi 1 kanye no-20 awaxhunyiwe nganoma iyiphi indlela, kodwa njengoba imodi ye-VLAN yomdabu isetshenziswa, sinethuba lokuhambisa ithrafikhi ye-VLAN20 kunethiwekhi ehluke ngokuphelele. Kodwa-ke, le thrafikhi izobe ingalingani, futhi amanethiwekhi ngokwawo kufanele afane.

Ake sibheke lokhu ngesibonelo. Ngizongena kuzilungiselelo ze-SW1 futhi ngisebenzise umyalo we-switchport trunk native vlan 10 Manje noma iyiphi ithrafikhi ye-VLAN10 izophuma embobeni ye-trunk ingamakiwe. Uma ifika ku-trunk port SW2, iswishi izoqonda ukuthi kufanele iyidlulisele ku-VLAN1. Njengomphumela walesi sinqumo, ithrafikhi ngeke ikwazi ukufinyelela amakhompuyutha i-PC2, 3 kanye no-4, njengoba ixhunywe kumachweba okufinyelela okushintshayo ahloselwe i-VLAN10.

Ngobuchwepheshe, lokhu kuzobangela isistimu ukuthi ibike ukuthi i-VLAN yomdabu ye-port Fa0/4, eyingxenye ye-VLAN10, ayifani nembobo ye-Fa0/1, eyingxenye ye-VLAN1. Lokhu kusho ukuthi izimbobo ezishiwo ngeke zikwazi ukusebenza kumodi ye-trunk ngenxa yokungafani komdabu kwe-VLAN.

Ukuqeqeshwa kweCisco 200-125 CCNA v3.0. Usuku lwe-14 VTP, Ukuthena kanye ne-VLAN Yomdabu


Siyabonga ngokuhlala nathi. Uyazithanda izindatshana zethu? Ufuna ukubona okuqukethwe okuthakaselayo okwengeziwe? Sisekele ngokufaka i-oda noma ngokuncoma kubangani, Isaphulelo sika-30% sabasebenzisi be-Habr ku-analogue ehlukile yamaseva eleveli yokungena, esungulwe yithi ngenxa yakho: Lonke iqiniso nge-VPS (KVM) E5-2650 v4 (6 Cores) 10GB DDR4 240GB SSD 1Gbps kusuka ku-$20 noma ukwabelana ngeseva? (itholakala nge-RAID1 kanye ne-RAID10, kufika kuma-cores angu-24 kuze kufike ku-40GB DDR4).

I-Dell R730xd ishibhile izikhathi ezi-2? Lapha kuphela 2 x Intel TetraDeca-Core Xeon 2x E5-2697v3 2.6GHz 14C 64GB DDR4 4x960GB SSD 1Gbps 100 TV kusukela ku-$199 eNetherlands! I-Dell R420 - 2x E5-2430 2.2Ghz 6C 128GB DDR3 2x960GB SSD 1Gbps 100TB - isuka ku-$99! Funda mayelana Indlela yokwakha ingqalasizinda corp. ikilasi ngokusetshenziswa kwe-Dell R730xd E5-2650 v4 amaseva abiza u-9000 euros ngepeni?

Source: www.habr.com

Engeza amazwana