Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

The first method to realize the communication between different vlan: one-arm routing

2025-03-30 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Network Security >

Share

Shulou(Shulou.com)06/01 Report--

The first method to realize the communication between different vlan: one-arm routing

1. Experimental purpose: to realize the communication between VLAN through single-arm routing

2. Use tools: GNS3 simulator, SecureCRT, in which PC1 and PC2 are simulated by Route

3. Experimental topology:

IV. Concrete steps

1. Set the IP:192.168.1.1 / 24 gateway of PC1: 192.168.1.254

Finally, it is verified by show ip inter brief.

2. Set the IP:192.168.2.1 / 24 gateway of PC2: 192.168.2.254

Finally, it is verified by show ip inter brief.

3. Create vlan 10 and vlan 20 in SW1

4. Set the e0amp 1 port mode of SW1 to access, and add it to vlan 10.

Set the e0ram 2 port mode of SW1 to access and put it into vlan 20

Where access is the exclusive mode, only traffic passing through the corresponding vlan is allowed

5. Set the e0hampany port mode of SW1 to trunk, and encapsulate that 802.1qsynchronized mode is a shared mode, which can pass through different vlan traffic, and the peer must also be trunk mode, that is, encapsulation 802.1q (public standard, good support between different vendors, usually used) or ISL (Cisco private, less used in current network)

6. Open port e0mobile0 of R1:

Enter the subinterface e0apace 0.10 of encapsulation dot1q 0, open the port, encapsulate 802.1q (remember), and set IP:192.168.1.254 / 24. This IP is the gateway of vlan 10, especially note that the number after encapsulation dot1q should be vlan ID.

Enter the subinterface e0apace 0.20 of e0apace 0, open the port, encapsulate 802.1q (remember) and set IP:192.168.2.254 / 24. This IP is the gateway of vlan 20, especially note that the number after encapsulation dot1q should be vlan ID.

At this time, e0swap 0.10 becomes the gateway of vlan 10, and e0max 0.20 becomes the gateway of vlan 20. To achieve different network communication, there is only routing. It just so happens that the subinterfaces of these two e0max 0 are directly connected to the router, so the gateways can reach each other. Eventually, vlan 10 and vlan 20 can communicate with each other.

7. View the directly connected routes of R1

8. Connectivity test

V. Summary

The switch can only divide the vlan logically, and each vlan is a broadcast domain and a subnet, so after dividing the vlan, there is no access between the vlan, so the vlan is routed through single-arm routing or layer 3 switching, so that the two vlan can communicate with each other.

-Scallion seed 2017-01-16

-reprint, please indicate the source http://myitpp.blog.51cto.com.

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Network Security

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report