Jump to content
Sign in to follow this  
sandwichs

Vlan

Recommended Posts

salam...

aku dah search tapi takde pon aja cara nak wat vlan..tak tau la lau aku tak jumpe...

macam ni...macam mana aku nak create Vlan..??

conth opis aku ada 3 deparment...

HR

Management

Kewawangan

so aku nak wat vlan untuk tiap2 department tue..

aku barang ape yang aku perlukan..???

dan cara nak wat...

Share this post


Link to post
Share on other sites

Kalau user ramai, bajet tinggi, berbaloi la nak buat VLAN nie.

cube pakai nettracer, baru boleh faham cara camner nak implement vlan nieh..

betul tak crypto ? haha.. aku dah 2 bulan tak sentuh nettracer nieh.. adoila..

Share this post


Link to post
Share on other sites

Tak berapa ramai pun boleh juga kalau betul nak saperatekan network tu kepada bbrapa bahagian... aku rasa tak susah sgt nak implement yg simple

contoh :-

1. Kenal pasti port yg disetkan sbg TRUNK

2. Port Access utk VLAN

3. Permit vlan tru TRUNK port

Share this post


Link to post
Share on other sites

Tak berapa ramai pun boleh juga kalau betul nak saperatekan network tu kepada bbrapa bahagian... aku rasa tak susah sgt nak implement yg simple

contoh :-

1. Kenal pasti port yg disetkan sbg TRUNK

2. Port Access utk VLAN

3. Permit vlan tru TRUNK port

wah pening aku..aku tak paham sangat ape yang korang cakap nie..aku saje nak blaja nak wat vlan...

hardware yang kene ada untuk wat Vlan nie kene ada Switch ke..???takde ke tutorial yang korang nak wat tentang Vlan..mean cara nak setup Vlan..leh la aku yang amatuer ni blaja... :lol:

Share this post


Link to post
Share on other sites

SBELUM NAK CREATE VLAN KENa pastikan switch tu switch layer 3 ..

Nie ade lah smple cerate vlan..

Primary Secondary Type Ports

------- --------- ----------------- ------------------------------------------

CREATE NAME VLAN

HQB#vlan database

HQB(vlan)#vlan 5

VLAN 5 added:

Name: VLAN0005

HQB(vlan)#vlan 5 name akaun

VLAN 5 modified:

Name: BIT

HQB(vlan)#exit

APPLY completed.

Exiting....

HQB#sh vlan

VLAN Name Status Ports

---- -------------------------------- --------- -------------------------------

1 default active Fa1/0/4, Fa1/0/5, Fa1/0/6

Fa1/0/7, Fa1/0/8, Fa1/0/9

Fa1/0/10, Fa1/0/11, Fa1/0/12

Fa1/0/13, Fa1/0/14, Fa1/0/15

Fa1/0/16, Fa1/0/17, Fa1/0/18

Fa1/0/19, Fa1/0/20, Fa1/0/21

Fa1/0/22, Fa1/0/23, Fa1/0/24

Gi1/0/1, Gi1/0/2

5 akaun active

1002 fddi-default act/unsup

1003 token-ring-default act/unsup

1004 fddinet-default act/unsup

1005 trnet-default act/unsup

VLAN Type SAID MTU Parent RingNo BridgeNo Stp BrdgMode Trans1 Trans2

---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------

1 enet 100001 1500 - - - - - 0 0

5 enet 100005 1500 - - - - - 0 0

1002 fddi 101002 1500 - - - - - 0 0

1003 tr 101003 1500 - - - - - 0 0

Nie adelah nak configure port nama utk vlan aper .

Contoh :port 1-10 adelah utk akaun

Port 11-15 utk HR

Port 16-17 utk management

Port 18-24 kite defaultkan utk vlan lain pulak

HQB#conf t

HQB(config)#int range fastEthernet1/0/1-10

HQB(config-if-range)#sw mode access

HQB(config-if-range)#sw access vlan 5( vlan akaun )

HQB(config-if-range)#exit

HQB(config)#exit

Lepas kite create vlan utk switch tu kite kena setkan IP utk setiap vlan bagi membezakan setiap vlan ..kalau tak vlan tu akan conflik

HQB#conf t

HQB(config)#int vlan 5

HQB(config-if)#ip address 192.168.5.1 255.255.255.0

HQB(config-if)#exit

HQB(config)#exit

Command nie utk menunjukkan berapa vlan yang terdapat didalam switch layer 3

HQB#sh vlan

VLAN Name Status Ports

---- -------------------------------- --------- -------------------------------

1 default active Fa1/0/11, Fa1/0/12, Fa1/0/13

Fa1/0/14, Fa1/0/15, Fa1/0/16

Fa1/0/17, Fa1/0/18, Fa1/0/19

Fa1/0/20, Fa1/0/21, Fa1/0/22

Fa1/0/23, Fa1/0/24, Gi1/0/1

Gi1/0/2

5 akaun active Fa1/0/4, Fa1/0/5, Fa1/0/6

Fa1/0/7, Fa1/0/8, Fa1/0/9

Fa1/0/10

1002 fddi-default act/unsup

1003 token-ring-default act/unsup

1004 fddinet-default act/unsup

1005 trnet-default act/unsup

HQB#sh run

Building configuration...

Current configuration : 2286 bytes

!

version 12.2

no service pad

service timestamps debug uptime

service timestamps log uptime

no service password-encryption

!

hostname HQB

!

enable password cisco

!

no aaa new-model

switch 1 provision ws-c3750-24ts

ip subnet-zero

ip routing

!

!

!

!

!

!

no file verify auto

spanning-tree mode pvst

spanning-tree extend system-id

!

vlan internal allocation policy ascending

!

!

interface FastEthernet1/0/1

description Connection to HQA

no switchport

ip address 172.16.0.253 255.255.255.0

!

interface FastEthernet1/0/2

no switchport

ip address 172.16.2.253 255.255.255.0

!

interface FastEthernet1/0/3

no switchport

ip address 192.168.0.1 255.255.255.0

!

interface FastEthernet1/0/4

switchport access vlan 5

switchport mode access

interface FastEthernet1/0/5

switchport access vlan 5

switchport mode access

!

interface FastEthernet1/0/6

switchport access vlan 5

switchport mode access

!

interface FastEthernet1/0/7

switchport access vlan 5

switchport mode access

!

interface FastEthernet1/0/8

switchport access vlan 5

switchport mode access

!

interface FastEthernet1/0/9

switchport access vlan 5

switchport mode access

!

interface FastEthernet1/0/10

switchport access vlan 5

switchport mode access

!

interface GigabitEthernet1/0/2

!

interface Vlan1

no ip address

!

interface Vlan2

ip address 192.168.1.1 255.255.255.0

!

interface Vlan3

ip address 192.168.2.1 255.255.255.0

!

interface Vlan5

ip address 192.168.5.1 255.255.255.0

!

HQB#ping 192.168.5.10 nie ip pc

Type escape sequence to abort.

Sending 5, 100-byte ICMP Echos to 192.168.5.10, timeout is 2 seconds:

.!!!!

Success rate is 80 percent (4/5), round-trip min/avg/max = 1/1/1 ms

HQB#exit

HQB#sh vtp status

VTP Version : 2

Configuration Revision : 17

Maximum VLANs supported locally : 1005

Number of existing VLANs : 6

VTP Operating Mode : Server

VTP Domain Name : astro

VTP Pruning Mode : Disabled

VTP V2 Mode : Disabled

VTP Traps Generation : Disabled

MD5 digest : 0x8E 0x5D 0x14 0xD9 0x58 0x4C 0x21 0xC8

Configuration last modified by 0.0.0.0 at 3-8-93 03:20:42

Local updater ID is 192.168.5.1 on interface Vl5 (lowest numbered VLAN interface found)

Command ini utk melihat port mana yg UP and prot mana yg DOWN

HQB#sh ip int brief

Interface IP-Address OK? Method Status Protocol

Vlan1 unassigned YES NVRAM up up

Vlan2 192.168.1.1 YES manual up down

Vlan3 192.168.2.1 YES manual up down

Vlan5 192.168.5.1 YES manual up up

FastEthernet1/0/1 172.16.0.253 YES NVRAM down down

FastEthernet1/0/2 172.16.2.253 YES NVRAM down down

FastEthernet1/0/3 192.168.0.1 YES NVRAM down down

FastEthernet1/0/4 unassigned YES unset up up

FastEthernet1/0/5 unassigned YES unset down down

FastEthernet1/0/6 unassigned YES unset down down

FastEthernet1/0/7 unassigned YES unset down down

FastEthernet1/0/8 unassigned YES unset down down

FastEthernet1/0/9 unassigned YES unset down down

FastEthernet1/0/10 unassigned YES unset down down

FastEthernet1/0/11 unassigned YES unset down down

FastEthernet1/0/12 unassigned YES unset down down

FastEthernet1/0/13 unassigned YES unset down down

Share this post


Link to post
Share on other sites

SBELUM NAK CREATE VLAN KENa pastikan switch tu switch layer 3 ..

Tak semestinya layer 3, unless nak buat routing dalam VLan. Jika hanya simple Vlan, layer 2 switch sudah cukup.

Lepas kite create vlan utk switch tu kite kena setkan IP utk setiap vlan bagi membezakan setiap vlan ..kalau tak vlan tu akan conflik

Pun tak semestinya create IP... takkan conflict punya..sebab each VLAN dalam broadcast domain yang berbeza..

:lol:

Ok, yang lain betul, terima kasih sebab promote cisco

Encik sandwichs, Click sini untuk view product cisco

http://www.cisco.com/en/US/products/hw/switches/index.html

or, maybe Encik Pronto nak introduce 3COM switch? :D

Kalau user ramai, bajet tinggi, berbaloi la nak buat VLAN nie.

cube pakai nettracer, baru boleh faham cara camner nak implement vlan nieh..

betul tak crypto ? haha.. aku dah 2 bulan tak sentuh nettracer nieh.. adoila..

betul, practice dulu buat kat simulation, nescaya akan faham apa tu VLAN :lol:

Edited by crypto.md5

Share this post


Link to post
Share on other sites

makin panjang pulak perbincangan kat sini... apa kata kita sambung balik kat post VLAN yg dah sedia hangat tu... EN Crypto sebut nick aku nih lagi.... aku ada seunit Cisco 2950 kat umah... nanti la aku study sendiri berdasarkan CLI yg ada dlm tu

Share this post


Link to post
Share on other sites

makin panjang pulak perbincangan kat sini... apa kata kita sambung balik kat post VLAN yg dah sedia hangat tu... EN Crypto sebut nick aku nih lagi.... aku ada seunit Cisco 2950 kat umah... nanti la aku study sendiri berdasarkan CLI yg ada dlm tu

Nampaknya Encik Pronto sudah mula menceburkan diri ke dalam dunia cisco tanah air :D ..welcome to da club

Baguslah kalau nak sambung balik, rasa rindu tengok post2 lama, apa kata hang upkan topik tu? atau Encik Bazet dengan pfsense or any idea lain dengan open source..

http://forum.putera.com/tanya/t37090.html

:wub:

Share this post


Link to post
Share on other sites

ni nak sambung vlan ni dekat mana ni huhuh...kat link yang crypto bagi ke..???

satu lagi kan..ada soalan yang aku tak paham ni aku bagi contoh...sape yang tau pls terangkan...

The picture below shows our example network (192.168.0.0). All computers here have been configured with the default Class C subnet mask (255.255.255.0):

ip-subnetting-basic-concepts-2.gif

pastu dia kata dia ubah subnet mask kepada 255.255.255.224 dia dapat bahagikan lagi network tu jadi segment kecil..kire dia leh wat partition...macma mana dia wat..???nape bile dia tuka subnet mask dia dapat bahagikan jadi 2 partition...

ip-subnetting-basic-concepts-3.gif

Yang aku paham dia ubah 3 biji tu subnet mask 255.255.255.0...yang lagi 3 bijik tu subnet mask 255.255.255.224..btul ke tak cara aku nie..??kalau salah tlg tunjukkan ea..tq..

Edited by sandwichs

Share this post


Link to post
Share on other sites

sekarang ni boleh tak bagitau, swith ape yang dipakai ? jenama ape ? yang IP ngko bagi tu just IP management, bukan VLAN management..

diorang dah mentionkan, kene ade at least layer 2 swith or layer 3 better.

manageable swithes.. pronto ade CISCO 2950. ehehe.. suruh die buat demo..

Share this post


Link to post
Share on other sites

Soalan yang aku anta ni bukan pasal Vlan..pasal subnetting la sayang ehehhe....

kuang kuang kuang...aku cuma nak tau tu je...sowi la kalau dah mengkonpiuskan ko bro... :lol:

Share this post


Link to post
Share on other sites

Soalan yang aku anta ni bukan pasal Vlan..pasal subnetting la sayang ehehhe....

kuang kuang kuang...aku cuma nak tau tu je...sowi la kalau dah mengkonpiuskan ko bro... laugh.gif

Huh?subnetting? kan aku dah buat tutorial pasal subnetting... dah kena pin lagi kat atas tu... adoilaaa

rujuk sini:

http://forum.putera.com/tanya/index.php?showtopic=37474

off topic:

ooo ya, siapa punya blog ni:

http://www.aziman.net/v2/plugins/content/c....php?content.59

:wub:

Edited by crypto.md5

Share this post


Link to post
Share on other sites

Yang ni segmenkan guna IP... bagaimana lak dgn ipx atau layer 2 protocol yg lain? tetap nampak semua unit kalau load protocol tu ...

ngantuks plak.... CISCO aku ada problem... kenape aku gatai2 pi main dgn config dlm flash tu.... aku terdelete... hahahahah... nanti la aku reload balik kalau dpt la ..

Edited by prontoxp

Share this post


Link to post
Share on other sites

A'ahlah.. Apsal hang masuk bahagian flash? kehkehkeh, lewat malam configure memang macam2 yang terjadi :D ... boleh tengok hang punya CLI config ka?

sandwichs, amacam...nak pilih cisco catalyst switch sebagai VLAN?

Share this post


Link to post
Share on other sites

Tak Sempat aku ku copy plak cisco tu punya config... skrg cisco tu just tak boleh start coz boot configuration dia dah tak de... tak ade backup lansung..

Kalau nak tgk switch 3com punya configuration mcm ni la... Bayangkan mcm mana bentuk network tu...

#

config-version 3.01.31s256re

#

sysname

#

local-server nas-ip 127.0.0.1 key 3com

undo password-control aging enable

undo password-control length enable

#

Xbar load-balance

#

router route-limit 128K

router VRF-limit 256

#

ip http directory

#

undo ip http shutdown

#

link-aggregation group 1 mode manual

#

vbas deviceid_type bridge_mac

#

stp non-flooding

#

isis

#

radius scheme system

server-type standard

primary authentication 127.0.0.1 1645

primary accounting 127.0.0.1 1646

user-name-format without-domain

#

domain system

vlan-assignment-mode integer

access-limit disable

state active

idle-cut disable

self-service-url disable

domain default enable system

#

local-user admin

service-type ssh telnet terminal

level 3

#

stp instance 0 root primary

stp bpdu-protection

stp enable

#

vlan 1

#

vlan 2

#

vlan 11

#

vlan 12

#

vlan 13

#

vlan 14

#

vlan 21

#

vlan 22

#

vlan 23

#

vlan 30

#

vlan 31

#

vlan 32

#

vlan 33

#

vlan 34

#

vlan 35

#

vlan 41

#

vlan 42

#

vlan 43

#

vlan 44

#

vlan 45

#

vlan 51

#

vlan 52

description vlan

#

vlan 53

#

vlan 54

#

vlan 55

#

vlan 56

#

vlan 57

#

vlan 61

#

vlan 62

#

vlan 63

#

vlan 64

#

vlan 71

#

vlan 81

#

vlan 200

#

vlan 201

#

vlan 202

#

vlan 300

#

interface Vlan-interface1

ip address 172.32.1.2 255.255.255.0

vrrp vrid 1 virtual-ip 172.32.1.1

vrrp vrid 1 priority 120

#

interface Vlan-interface2

ip address 172.16.1.46 255.255.0.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 2 virtual-ip 172.16.1.45

vrrp vrid 2 priority 120

#

interface Vlan-interface11

ip address 172.32.11.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 11 virtual-ip 172.32.11.1

vrrp vrid 11 priority 120

#

interface Vlan-interface12

ip address 172.32.12.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 12 virtual-ip 172.32.12.1

vrrp vrid 12 priority 120

#

interface Vlan-interface13

ip address 172.32.13.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 13 virtual-ip 172.32.13.1

vrrp vrid 13 priority 120

#

interface Vlan-interface14

ip address 172.32.14.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 14 virtual-ip 172.32.14.1

vrrp vrid 14 priority 120

#

interface Vlan-interface21

ip address 172.32.21.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 21 virtual-ip 172.32.21.1

vrrp vrid 21 priority 120

#

interface Vlan-interface22

ip address 172.32.22.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 22 virtual-ip 172.32.22.1

vrrp vrid 22 priority 120

#

interface Vlan-interface23

ip address 172.32.23.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 23 virtual-ip 172.32.23.1

vrrp vrid 23 priority 120

#

interface Vlan-interface30

ip address 172.32.30.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 30 virtual-ip 172.32.30.1

vrrp vrid 30 priority 120

#

interface Vlan-interface31

ip address 172.32.31.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 31 virtual-ip 172.32.31.1

vrrp vrid 31 priority 120

#

interface Vlan-interface32

ip address 172.32.32.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 32 virtual-ip 172.32.32.1

vrrp vrid 32 priority 120

#

interface Vlan-interface33

ip address 172.32.33.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 33 virtual-ip 172.32.33.1

vrrp vrid 33 priority 120

#

interface Vlan-interface34

ip address 172.32.34.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 34 virtual-ip 172.32.34.1

vrrp vrid 34 priority 120

#

interface Vlan-interface35

ip address 172.32.35.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 35 virtual-ip 172.32.35.1

vrrp vrid 35 priority 120

#

interface Vlan-interface41

ip address 172.32.41.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 41 virtual-ip 172.32.41.1

vrrp vrid 41 priority 120

#

interface Vlan-interface42

ip address 172.32.42.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 42 virtual-ip 172.32.42.1

vrrp vrid 42 priority 120

#

interface Vlan-interface43

ip address 172.32.43.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 43 virtual-ip 172.32.43.1

vrrp vrid 43 priority 120

#

interface Vlan-interface44

ip address 172.32.44.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 44 virtual-ip 172.32.44.1

vrrp vrid 44 priority 120

#

interface Vlan-interface45

ip address 172.32.45.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 45 virtual-ip 172.32.45.1

vrrp vrid 45 priority 120

#

interface Vlan-interface51

ip address 172.32.51.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 51 virtual-ip 172.32.51.1

vrrp vrid 51 priority 120

#

interface Vlan-interface52

ip address 172.32.52.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 52 virtual-ip 172.32.52.1

vrrp vrid 52 priority 120

#

interface Vlan-interface53

ip address 172.32.53.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 53 virtual-ip 172.32.53.1

vrrp vrid 53 priority 120

#

interface Vlan-interface54

ip address 172.32.54.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 54 virtual-ip 172.32.54.1

vrrp vrid 54 priority 120

#

interface Vlan-interface55

ip address 172.32.55.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 55 virtual-ip 172.32.55.1

vrrp vrid 55 priority 120

#

interface Vlan-interface56

ip address 172.32.56.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 56 virtual-ip 172.32.56.1

vrrp vrid 56 priority 120

#

interface Vlan-interface57

ip address 172.32.57.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 57 virtual-ip 172.32.57.1

vrrp vrid 57 priority 120

#

interface Vlan-interface61

ip address 172.32.61.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 61 virtual-ip 172.32.61.1

vrrp vrid 61 priority 120

#

interface Vlan-interface62

ip address 172.32.62.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 62 virtual-ip 172.32.62.1

vrrp vrid 62 priority 120

#

interface Vlan-interface63

ip address 172.32.63.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 63 virtual-ip 172.32.63.1

vrrp vrid 63 priority 120

#

interface Vlan-interface64

ip address 172.32.64.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 64 virtual-ip 172.32.64.1

vrrp vrid 64 priority 120

#

interface Vlan-interface71

ip address 172.32.71.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 71 virtual-ip 172.32.71.1

vrrp vrid 71 priority 120

#

interface Vlan-interface81

ip address 172.32.81.2 255.255.255.0

ip relay address 172.16.1.48

dhcp select relay

vrrp vrid 81 virtual-ip 172.32.81.1

vrrp vrid 81 priority 120

#

interface Aux0/0/1

flowcontrol normal

async mode interactive

link-protocol ppp

#

interface M-Ethernet0/0/0

#

interface GigabitEthernet2/1/1

port link-type trunk

port trunk permit vlan all

port link-aggregation group 1

#

interface GigabitEthernet2/1/2

port link-type trunk

port trunk permit vlan all

port link-aggregation group 1

#

interface GigabitEthernet3/1/1

port link-type trunk

port trunk permit vlan 1 to 2 51 200

#

interface GigabitEthernet3/1/2

port link-type trunk

port trunk permit vlan 1 to 2 53 200

#

interface GigabitEthernet3/1/3

port link-type trunk

port trunk permit vlan 1 to 2 54 200

#

interface GigabitEthernet3/1/4

port link-type trunk

port trunk permit vlan 1 to 2 56 200

#

interface GigabitEthernet3/1/5

port link-type trunk

port trunk permit vlan 1 to 2 55 200

#

interface GigabitEthernet3/1/6

port link-type trunk

port trunk permit vlan 1 to 2 41 200

#

interface GigabitEthernet3/1/7

port link-type trunk

port trunk permit vlan 1 to 2 41 200

#

interface GigabitEthernet3/1/8

port link-type trunk

port trunk permit vlan 1 to 2 42 200

#

interface GigabitEthernet3/1/9

port link-type trunk

port trunk permit vlan 1 to 2 43 200

#

interface GigabitEthernet3/1/10

port link-type trunk

port trunk permit vlan 1 to 2 44 200

#

interface GigabitEthernet3/1/11

port link-type trunk

port trunk permit vlan 1 to 2 31 200

#

interface GigabitEthernet3/1/12

port link-type trunk

port trunk permit vlan 1 to 2 32 200

#

interface GigabitEthernet3/1/13

port link-type trunk

port trunk permit vlan 1 to 2 33 200

#

interface GigabitEthernet3/1/14

port link-type trunk

port trunk permit vlan 1 to 2 34 200

#

interface GigabitEthernet3/1/15

port link-type trunk

port trunk permit vlan 1 to 2 35 200

#

interface GigabitEthernet3/1/16

port link-type trunk

port trunk permit vlan 1 to 2 21 200

#

interface GigabitEthernet3/1/17

port link-type trunk

port trunk permit vlan 1 to 2 21 200

#

interface GigabitEthernet3/1/18

port link-type trunk

port trunk permit vlan 1 to 2 22 200

#

interface GigabitEthernet3/1/19

port link-type trunk

port trunk permit vlan 1 to 2 23 200

#

interface GigabitEthernet3/1/20

port link-type trunk

port trunk permit vlan 1 to 2 11 200

#

interface GigabitEthernet3/1/21

port link-type trunk

port trunk permit vlan 1 to 2 12 200

#

interface GigabitEthernet3/1/22

port link-type trunk

port trunk permit vlan 1 to 2 13 200

#

interface GigabitEthernet3/1/23

port link-type trunk

port trunk permit vlan 1 to 2 61 200

#

interface GigabitEthernet3/1/24

port link-type trunk

port trunk permit vlan 1 to 2 61 200

#

interface GigabitEthernet4/1/1

port link-type trunk

port trunk permit vlan 1 to 2 62 200

#

interface GigabitEthernet4/1/2

port link-type trunk

port trunk permit vlan 1 to 2 63 200

#

interface GigabitEthernet4/1/3

port link-type trunk

port trunk permit vlan 1 to 2 71 200

#

interface GigabitEthernet4/1/4

port link-type trunk

port trunk permit vlan 1 to 2 81 200

#

interface GigabitEthernet4/1/5

port link-type trunk

port trunk permit vlan 1 to 2 52 200

#

interface GigabitEthernet4/1/6

interface GigabitEthernet4/1/6

port trunk permit vlan 1 to 2 55 200

#

interface GigabitEthernet4/1/7

port link-type trunk

port trunk permit vlan 1 to 2 45 200

#

interface GigabitEthernet4/1/8

port link-type trunk

port trunk permit vlan 1 to 2 14 200

#

interface GigabitEthernet4/1/9

#

interface GigabitEthernet4/1/10

#

interface GigabitEthernet4/1/11

#

interface GigabitEthernet4/1/12

#

interface GigabitEthernet4/1/13

#

interface GigabitEthernet4/1/14

#

interface GigabitEthernet4/1/15

port link-type trunk

port trunk permit vlan 1 to 2 52 200

#

interface GigabitEthernet4/1/6

port link-type trunk

port trunk permit vlan 1 to 2 55 200

#

interface GigabitEthernet4/1/7

port link-type trunk

port trunk permit vlan 1 to 2 45 200

#

interface GigabitEthernet4/1/8

port link-type trunk

port trunk permit vlan 1 to 2 14 200

#

interface GigabitEthernet4/1/9

#

interface GigabitEthernet4/1/10

#

interface GigabitEthernet4/1/11

#

interface GigabitEthernet4/1/12

#

interface GigabitEthernet4/1/13

#

interface GigabitEthernet4/1/14

#

interface GigabitEthernet4/1/15

#

interface GigabitEthernet4/1/16

#

interface GigabitEthernet4/1/17

#

interface GigabitEthernet4/1/18

#

interface GigabitEthernet4/1/19

#

interface GigabitEthernet4/1/20

#

interface GigabitEthernet4/1/21

#

interface GigabitEthernet4/1/22

#

interface GigabitEthernet4/1/23

#

interface GigabitEthernet4/1/24

#

interface GigabitEthernet5/1/1

stp disable

port access vlan 2

#

interface GigabitEthernet5/1/2

#

interface GigabitEthernet5/1/3

port access vlan 31

#

interface GigabitEthernet5/1/4

#

interface GigabitEthernet5/1/5

#

interface GigabitEthernet5/1/6

#

interface GigabitEthernet5/1/7

#

interface GigabitEthernet5/1/8

#

interface GigabitEthernet5/1/9

port access vlan 2

#

interface GigabitEthernet5/1/10

#

interface GigabitEthernet5/1/11

#

interface GigabitEthernet5/1/12

#

interface GigabitEthernet5/1/13

#

interface GigabitEthernet5/1/14

#

interface GigabitEthernet5/1/15

#

interface GigabitEthernet5/1/16

#

interface GigabitEthernet5/1/17

#

interface GigabitEthernet5/1/18

#

interface GigabitEthernet5/1/19

#

interface GigabitEthernet5/1/20

#

interface GigabitEthernet5/1/21

#

interface GigabitEthernet5/1/22

#

interface GigabitEthernet5/1/23

#

interface GigabitEthernet5/1/24

#

interface GigabitEthernet5/1/25

#

interface GigabitEthernet5/1/26

#

interface GigabitEthernet5/1/27

#

interface GigabitEthernet5/1/28

#

interface GigabitEthernet5/1/29

#

interface GigabitEthernet5/1/30

#

interface GigabitEthernet5/1/31

#

interface GigabitEthernet5/1/32

#

interface GigabitEthernet5/1/33

#

interface GigabitEthernet5/1/34

#

interface GigabitEthernet5/1/35

#

interface GigabitEthernet5/1/36

#

interface GigabitEthernet5/1/37

#

interface GigabitEthernet5/1/38

#

interface GigabitEthernet5/1/39

#

interface GigabitEthernet5/1/40

#

interface GigabitEthernet5/1/41

port link-type trunk

port trunk permit vlan 1 to 2 32 200

#

interface GigabitEthernet5/1/42

#

interface GigabitEthernet5/1/43

port access vlan 200

#

interface GigabitEthernet5/1/44

#

interface GigabitEthernet5/1/45

#

interface GigabitEthernet5/1/46

#

interface GigabitEthernet5/1/47

#

interface GigabitEthernet5/1/48

port link-type trunk

port trunk permit vlan 1 to 2 200 to 202

#

interface NULL0

#

dhcp enable

#

ip route-static 0.0.0.0 0.0.0.0 172.16.1.2 preference 60

ip route-static 10.0.0.0 255.0.0.0 172.16.1.17 preference 60

ip route-static 172.17.0.0 255.255.0.0 172.16.1.14 preference 60

ip route-static 172.18.0.0 255.255.0.0 172.16.1.14 preference 60

ip route-static 172.19.0.0 255.255.0.0 172.16.1.14 preference 60

ip route-static 172.19.0.0 255.255.0.0 172.16.1.14 preference 60

ip route-static 172.21.0.0 255.255.0.0 172.16.1.14 preference 60

ip route-static 172.22.0.0 255.255.0.0 172.16.1.14 preference 60

ip route-static 172.23.0.0 255.255.0.0 172.16.1.14 preference 60

ip route-static 172.24.0.0 255.255.0.0 172.16.1.14 preference 60

ip route-static 172.25.0.0 255.255.0.0 172.16.1.14 preference 60

ip route-static 172.26.0.0 255.255.0.0 172.26.1.1 preference 60

ip route-static 172.29.0.0 255.255.0.0 172.16.1.14 preference 60

ip route-static 192.168.0.0 255.255.0.0 172.16.1.100 preference 60

#

snmp-agent

snmp-agent local-engineid 8000002B00209C6B22C46877

snmp-agent community write ns9DK

snmp-agent community read sukN9

snmp-agent sys-info contact 3Com Corporation

snmp-agent sys-info version v1 v3

#

user-interface con 0

authentication-mode scheme

user-interface aux 0

user-interface vty 0 4

authentication-mode scheme

#

return

Share this post


Link to post
Share on other sites

A'ahlah.. Apsal hang masuk bahagian flash? kehkehkeh, lewat malam configure memang macam2 yang terjadi :D ... boleh tengok hang punya CLI config ka?

sandwichs, amacam...nak pilih cisco catalyst switch sebagai VLAN?

Bape pulak harge cisco catalyst nie...huhuh...lau orang yang tak tau ape2 pasl cisco ni leh ke nak bli..

kunk tak pandai guna ehehe...

Share this post


Link to post
Share on other sites

:wacko: VLAN ni ape ek? ape funtion die? :wacko:

VLAN = Virtual LAN

Simple View.... Ada layer 3 switch 24 port... dlm 24 port ni dibuat sebanyak 3 vlan... jadi contohnya .. port 1 - 8 = vlan 2 , port 9 - 16 = vlan 3 dan port 17 - 24 = vlan 4

Sekalipun dlm satu switch dan IP range sama, data tidak boleh pergi ke vlan yang lain... Vlan 2 hanya berinteraksi dgn pengguna@port user dlm vlan 2 sahaja... seterusnya juga pengguna vlan 3 berinteraksi dgn pengguna @ port user dlm vlan 3 sahaja.

Share this post


Link to post
Share on other sites

kirakan kita seprate @ pisahkan network dalam satu router la..

betul tak?

ape bezanye dengan workgroup in domain; contoh : DOMAIN FTS TECH SDN.BHD, dbawah domain ni kita buat 3 workgroup SALES, ADMIN, TECHNICAL..

AKU BAB NETWORKING NI BLER SIKIT TAPI AKU MMG BLEH BUAT NETWORKING&SERVER.. OTAK AKU NI MMG LAMBAT PICKUP SIKIT..TP BLA DAH ADA DETAIL @ PRAKTIKAL BARU SENANG PAHAM..

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
Sign in to follow this  

×
×
  • Create New...