查看: 3272|回复: 6

请求划分一个合理的VLAN

[复制链接]
发表于 2008-9-13 15:40:22 | 显示全部楼层 |阅读模式
请求划分一个合理的VLAN

光纤20M,使用华为f1000-s防火墙接入单位,在防火墙上分了192.168.100.1和101两个网段,然后将两个网段接入s3526交换中,每个楼层使用

s2000的光口接入到s3526上,s2000交换机数30台,计算机数450台,请求如何划为一个合理的VLAN,现配置如下:                          

                  

<Quidway>dis cur
#
sysname Quidway
#
radius scheme system
server-type huawei
primary authentication 127.0.0.1 1645
primary accounting 127.0.0.1 1646
user-name-format without-domain

domain system
radius-scheme system
access-limit disable
state active
vlan-assignment-mode integer
idle-cut disable
self-service-url disable
messenger time disable

domain default enable system
#
local-server nas-ip 127.0.0.1 key huawei
#
queue-scheduler wrr 1 2 4 8
#
vlan 1
#
vlan 2071
#
interface Vlan-interface1
ip address 192.168.101.207 255.255.255.0
#
interface Aux0/0
#
interface Ethernet0/1
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/2
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/3
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/4
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/5
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/6
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/7
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/8
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/9
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/10
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/11
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/12
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/13
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/14
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/15
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/16
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/17
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/18
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/19
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/20
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/21
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/22
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/23
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/24
line-rate inbound 3
line-rate outbound 6
#
interface Ethernet0/25
#
interface Ethernet1/1
#
interface NULL0
#
snmp-agent
snmp-agent local-engineid 800007DB000FE206BC896877
snmp-agent community read  public
snmp-agent community write  private
snmp-agent sys-info location BeiJing China
snmp-agent sys-info version all
#
user-interface aux 0
user-interface vty 0 4
user privilege level 3
set authentication password simple huawei
#
return


大家可以的话给写个配置VLAN步骤,最好有注释,谢谢了。共同学习。
回复

使用道具 举报

发表于 2008-9-13 18:59:49 | 显示全部楼层
在s3526上
vlan  100  to 114       #创建10至114共15 个vlan,分别对应你那15个s2000
int e0/1
port access vlan  100  #设置e0/1 为vlan 100
int e0/2
port access vlan  101
int e0/3
port access vlan  102
int e0/4
port access vlan  103
int e0/5
port access vlan  104
int e0/6
port access vlan  105
int e0/7
port access vlan  106
int e0/8
port access vlan  107
int e0/9
port access vlan  108
int e0/10
port access vlan  109
int e0/11
port access vlan  110
int e0/12
port access vlan  111
int e0/13
port access vlan  112
int e0/14
port access vlan  113
int e0/15
port access vlan  114
回复

使用道具 举报

发表于 2008-9-13 21:33:21 | 显示全部楼层
一般VLAN是根据你的逻辑来分的,而不是根据下层交换机的数量来分。
回复

使用道具 举报

发表于 2008-9-14 21:28:17 | 显示全部楼层

回复 2# 的帖子

professional
回复

使用道具 举报

发表于 2008-9-16 17:08:55 | 显示全部楼层
9494
VLAN的划分是根据你网络的逻辑结构来划分的,比如说按部门划分,或者是按办公楼的楼层划分,交换机的数量并不是主要的问题,当然如果你是一个网吧,就在一个大大的房间里,那你也可以一个交换机所在的那个区域划一个VLAN也行
总之划分VLAN要看你实际的情况了
回复

使用道具 举报

发表于 2008-9-16 17:32:42 | 显示全部楼层
一般是按部门分的。如果要跨部分通讯就要3层交换机
回复

使用道具 举报

您需要登录后才可以回帖 登录 | CSNA会员注册

本版积分规则

快速回复 返回顶部 返回列表