示例图
一.实验目的
1.配置Dot1q终结子接口实现跨设备VLAN间通信示例
二.注意事项
1.Dot1q终结子接口和QinQ终结子接口不支持透传不带VLAN Tag的报文,
收到不带VLAN Tag的报文会直接丢弃
2.由于三层以太网子接口不支持VLAN报文,当它收到VLAN报文时,会将VLAN报文当成是
非法报文而丢弃,因此,需要在子接口上将VLAN Tag剥掉,也就是需要VLAN终结
3.配置某个VLAN为子接口的终结VLAN后,该VLAN不能再配置为Super-VLAN或Sub-VLAN
三.VLAN终结简介
1.VLAN终结的实质包含两个方面:
①.对接口接收到报文,剥除VLAN标签后进行三层转发或其他处理
②.对接口发出的报文,又将相应的VLAN标签添加到报文中后再发送
2.分类
①.Dot1q终结:对接收到的带有一层或两层VLAN Tag的报文,
剥除报文的最外一层VLAN Tag;对从接口发出的报文,添加一层VLAN Tag
②.QinQ终结:对接收到的带有两层VLAN Tag的报文,剥除报文的两层VLAN Tag
对从接口发出的报文,添加两层VLAN Tag
##
四.简单配置
LSW1
sysname LSW1
#
vlan batch 10
#
interface Ethernet0/0/1
port link-type trunk
port trunk allow-pass vlan 10
#
interface Ethernet0/0/2
port link-type access
port default vlan 10
#
return
AR1
sysname AR1
#
interface GigabitEthernet0/0/0
ip address 192.168.1.1 255.255.255.0
#
interface GigabitEthernet0/0/1.1
dot1q termination vid 10
ip address 10.10.10.1 255.255.255.0
arp broadcast enable
#
interface LoopBack0
ip address 1.1.1.1 255.255.255.255
#
ospf 1 router-id 1.1.1.1
area 0.0.0.0
network 10.10.10.0 0.0.0.255
network 192.168.1.0 0.0.0.255
#
return
AR2
sysname AR2
#
interface GigabitEthernet0/0/0
ip address 192.168.1.2 255.255.255.0
#
interface GigabitEthernet0/0/1
ip address 192.168.2.1 255.255.255.0
#
interface LoopBack0
ip address 2.2.2.2 255.255.255.255
#
ospf 1 router-id 2.2.2.2
area 0.0.0.0
network 192.168.1.0 0.0.0.255
network 192.168.2.0 0.0.0.255
#
return
sysname AR3
#
interface GigabitEthernet0/0/0
ip address 192.168.2.2 255.255.255.0
#
interface GigabitEthernet0/0/1.1
dot1q termination vid 20
ip address 10.10.20.2 255.255.255.0
arp broadcast enable
#
interface LoopBack0
ip address 3.3.3.3 255.255.255.255
#
ospf 1 router-id 3.3.3.3
area 0.0.0.0
network 10.10.20.0 0.0.0.255
network 192.168.2.0 0.0.0.255
#
return
LSW2
sysname LSW2
#
vlan batch 20
#
interface Ethernet0/0/1
port link-type trunk
port trunk allow-pass vlan 20
#
interface Ethernet0/0/2
port link-type access
port default vlan 20
#
return