background image

 

9032599-02

 

802.1Q VLAN

User’s Guide

Summary of Contents for 802.1Q VLAN

Page 1: ...9032599 02 802 1Q VLAN User s Guide ...

Page 2: ......

Page 3: ...L OR CONSEQUENTIAL DAMAGES WHATSOEVER INCLUDING BUT NOT LIMITED TO LOST PROFITS ARISING OUT OF OR RELATED TO THIS MANUAL OR THE INFORMATION CONTAINED IN IT EVEN IF CABLETRON SYSTEMS HAS BEEN ADVISED OF KNOWN OR SHOULD HAVE KNOWN THE POSSIBILITY OF SUCH DAMAGES 1999 by Cabletron Systems Inc P O Box 5005 Rochester NH 03866 5005 All Rights Reserved Printed in the United States of America Order Number...

Page 4: ...Notice ii 802 1Q VLAN User s Guide ...

Page 5: ...trategies 1 3 1 3 Benefits and Restrictions 1 4 1 4 VLAN Terms 1 4 1 5 Getting Help 1 7 CHAPTER 2 VLAN OPERATION 2 1 Description 2 1 2 2 VLAN Components 2 1 2 3 Configuration Process 2 2 2 3 1 Defining a VLAN 2 2 2 3 2 Classifying Frames to a VLAN 2 2 2 3 3 Customizing the VLAN Forwarding List 2 3 2 4 VLAN Switch Operation 2 3 2 4 1 Receiving Frames from VLAN Ports 2 4 2 4 2 Forwarding Decisions 2...

Page 6: ...Mode 3 15 3 5 2 Assigning a VLAN ID 3 16 3 5 3 Paging Through the Port List 3 17 3 6 Port Filtering Configuration Screen 3 17 3 6 1 Displaying VLAN IDs Associated with a Port 3 19 3 6 2 Selecting the Type of Filtering for a Port 3 20 3 7 VLAN Forwarding Configuration Screen 3 21 3 7 1 Viewing Current VLAN Ports 3 22 3 7 2 Paging Through VLAN Forwarding List Entries 3 23 3 7 3 Adding Forwarding Lis...

Page 7: ...ame Handling 4 3 4 2 Example 2 VLANs Across Multiple Switches 4 4 4 2 1 Solving the Problem 4 5 4 2 2 Frame Handling 4 8 4 3 Example 3 1D Trunk Connection to 802 1Q VLAN Network 4 10 4 3 1 Solving the Problem 4 12 4 3 2 Frame Handling 4 13 4 4 Example 4 Isolating Network Traffic According to Protocol 4 17 4 4 1 Solving the Problem 4 18 ...

Page 8: ...Contents vi 802 1Q VLAN User s Guide ...

Page 9: ...een 3 25 3 10 Protocol Ports Configuration Screen 3 31 3 11 Walkthrough Stage One 3 35 3 12 Walkthrough Stage Two 3 36 3 13 Walkthrough Stage Three 3 37 3 14 Walkthrough Stage Four 3 38 3 15 Final Walkthrough Stage 3 40 4 1 Example 1 Single Switch Operation 4 1 4 2 Switch Configured for VLANs 4 2 4 3 Example 2 VLANs Across Multiple Switches 4 5 4 4 Bridge 1 Broadcasts Frames 4 8 4 5 Transmitting t...

Page 10: ...en Field Definitions 3 9 3 3 Port Assignment Configuration Screen Field Definitions 3 15 3 4 Port Filtering Configuration Screen Field Definitions 3 19 3 5 VLAN Forwarding Configuration Screen Field Definitions 3 22 3 6 Protocol VLAN Configuration Screen Field Definitions 3 26 3 7 Protocol Ports Configuration Screen Field Definitions 3 32 ...

Page 11: ...w the switch handles the frames while they make their way through the networks shown in the examples Chapter 3 describes the VLAN Local Management screens and provides a quick walkthrough on how to use them to configure VLANs in a switch STRUCTURE OF THIS GUIDE This guide is organized as follows Chapter 1 Virtual Local Area Networks presents the basic concepts of VLANs including their benefits and...

Page 12: ... World Wide Web in Adobe Acrobat Portable Document Format PDF at the following site http www cabletron com DOCUMENT CONVENTIONS The following conventions are used throughout this document In Local Management sections Bold type indicates fields field values and commands that can be highlighted or selected by the user In Local Management sections keystrokes are shown in UPPERCASE Italic type denotes...

Page 13: ...e broadcast and multicast traffic as though they were all connected to a common network VLAN aware switches isolate broadcast multicast and unknown traffic received from VLAN groups so that traffic from stations in a VLAN are confined to that VLAN When stations are assigned to a VLAN the performance of their network connection is not changed Stations connected to switched ports do not sacrifice th...

Page 14: ...ch B The SmartSwitches treat each port as being equivalent to any other port and have no understanding of the departmental memberships of each workstation In a VLAN environment each SmartSwitch understands that certain individual ports or frames are members of separate workgroups In this environment a broadcast or multicast data transmission from one of the Sales stations in Building One would rea...

Page 15: ...nsmit frames associated with the frame VLAN ID and protocol If the received frame is not tagged the frame is examined and tagged as belonging to the default VLAN Then the frame is forwarded to the GVRP ports that are configured to transmit frames associated with the default VLAN and the frame protocol 1 2 2 SecureFast VLANs Cabletron Systems SecureFast VLAN strategy takes a different approach to c...

Page 16: ...other FID To set up a VLAN all the network switch devices that are assigned to the VLAN must support the IEEE 802 1Q specification for VLANs Before you attempt to implement a VLAN strategy ensure that the switches under consideration support the IEEE 802 1Q specification 1 4 VLAN TERMS To fully understand the operation and configuration of port based VLANs it is essential to understand the definit...

Page 17: ...d cannot be deleted or renamed Forwarding List A list of the ports on a particular device that are eligible to transmit frames for a selected VLAN Port VLAN List A per port list of all eligible VLANs whose frames can be forwarded out one specific port and the frame format tagged or untagged of transmissions for that port The Port VLAN List specifies what VLANs are associated with a single port for...

Page 18: ... untagged frames Generic Attribute Registration Protocol GARP GARP is a protocol used to propagate state information throughout a switched network GARP VLAN Registration Protocol GVRP A GARP application used to dynamically create VLANs across a switched network GARP Multicast Registration Protocol GMRP A GARP application that functions in a similar fashion as GVRP except that GMRP registers multic...

Page 19: ...stems products in the network A description of your network environment layout cable type etc Network load and frame size at the time of trouble if known The device history i e have you returned the device before is this a recurring problem etc Any previous Return Material Authorization RMA numbers World Wide Web http www cabletron com Phone 603 332 9400 Internet mail support cabletron com FTP ftp...

Page 20: ...Chapter 1 Virtual Local Area Networks 1 8 802 1Q VLAN User s Guide ...

Page 21: ...ses from switch to switch or from port to port within a switch 2 2 VLAN COMPONENTS Before describing the operation of an 802 1Q VLAN it is important to understand the basic elements that are combined to make up an 802 1Q VLAN Stations A station is any end unit that belongs to a network In the vast majority of cases stations are the computers through which the users access the network Switches In o...

Page 22: ...ed rules are defined to classify all frames in a VLAN This is accomplished through management by associating a VLAN ID with each port on the switch Optionally frames can be classified according to a protocol identifier contained within the frame The order of frame classification priority is by VLAN Tag a protocol match and lastly the PVID This combination of the switch port s identification and th...

Page 23: ...VLAN switches act on the classification of frames into VLANs Sometimes VLAN classification is based on tags in the headers of data frames These VLAN tags are added to data frames by the switch as the frames are transmitted out certain ports and are later used to make forwarding decisions by the switch and other VLAN aware switches In the absence of a VLAN tag header the classification of a frame i...

Page 24: ... untagged frames received would need to be classified if the port has not been configured to drop all untagged frames Figure 2 1 Inside the Switch 2 4 1 Receiving Frames from VLAN Ports When a switch is placed in 802 1Q Operational Mode every frame received by the switch must belong or be assigned to a VLAN Untagged Frames The switch receives a frame from Port 1 and examines the frame The switch n...

Page 25: ...frame with a broadcast multicast or other unknown address is received by an 802 1Q VLAN aware switch the switch checks the VLAN classification of the frame The switch then forwards the frame out all ports that are identified in the Forwarding List for that VLAN For example if Port 3 shown in Figure 2 1 received the frame the frame would then be sent to all ports that had VLAN C in their Port VLAN ...

Page 26: ...he switch recognizes the destination MAC address of the frame as being located out Port 4 Having made the forwarding decision the switch now examines the Port VLAN List of Port 4 to determine if it may transmit a frame belonging to VLAN C If so the frame is transmitted out Port 4 If Port 4 has not been configured to transmit frames belonging to VLAN C the frame is discarded 2 5 GARP SWITCH OPERATI...

Page 27: ... the default VLAN When the switch is configured with VLANs special precautions must be taken to use remote management 3 1 1 Switch Without VLANs When the switch is powered up the switch uses its default settings to switch frames like an 802 1D switch In this default configuration all ports are a member of the default VLAN VLAN 1 including the virtual Host Data Port of the switch so any port can be...

Page 28: ...nd C Figure 3 2 Switch Management with VLANs To set up the switch shown in Figure 3 2 to establish a management VLAN on port 1 use the process described below 1 Use the Device VLAN Configuration screen for the following a Define a new VLAN named Management VLAN or other suitable name and itsVLAN ID In this example theVLAN ID is set to 2 NOTE The switch s virtual Host Data Port like any other port ...

Page 29: ...le it will be port 8 Leave the Port Mode setting in the default value of HYBRID For details on assigning a VLAN ID refer to Section 3 4 2 This process would be repeated on every switch that is connected in the network to ensure that each switch has a secure Management VLAN for switch management If the switch was connected to another switch via port 7 which was set as a 1Q Trunk port then the manag...

Page 30: ...little forethought and planning is essential to a good VLAN implementation Before attempting to configure a single switch for VLAN operation consider the following How many VLANs will be required What stations will belong to them What ports are connected to those stations What ports will be configured as GARP aware ports It may also be helpful to sketch out a diagram of your VLAN strategy The exam...

Page 31: ...to be configured on a network at the switched port of the device or SmartSwitch chassis Also some or all of the ports on the switch can be configured as GVRP ports which enable frames received with a particular VLAN ID and protocol to be transmitted on a limited number of ports This keeps the traffic associated with a particular VLAN and protocol to be isolated from the other parts of the network ...

Page 32: ...TER The 802 1Q VLAN Configuration Menu screen displays Screen Example Figure 3 4 802 1Q VLAN Configuration Menu Screen Firmware Revision XX XX XX 802 1Q VLAN Configuration Menu DEVICE VLAN CONFIGURATION 25994 04 Module Type xxxxx xx BOOTPROM Revision XX XX XX 6C105 LOCAL MANAGEMENT Slot Number xx RETURN PORT ASSIGNMENT CONFIGURATION VLAN FORWARDING CONFIGURATION EXIT PORT FILTERING CONFIGURATION P...

Page 33: ... of a port Refer to Section 3 5 for additional information PORT FILTERING CONFIGURATION Used to set the switch to filter out inbound frames to prevent them from being forwarded by the switch out a particular port This screen also lists the VLANs whose frames are eligible to be transmitted out that port Refer to Section 3 6 for additional information VLAN FORWARDING CONFIGURATION Used to view which...

Page 34: ... highlight the DEVICE VLAN CONFIGURATION menu item on the 802 1Q VLAN Configuration Menu screen and press ENTER The Device VLAN Configuration screen displays Screen Example Figure 3 5 Device VLAN Configuration Screen Firmware Revision XX XX XX Device VLAN Configuration 25993 05 Module Type xxxxx xx BOOTPROM Revision XX XX XX 6C105 LOCAL MANAGEMENT Slot Number xx RETURN EXIT Forward Default VLAN Ou...

Page 35: ...Name field displays Not Defined Admin Status Toggle Set the current state of the associated VLAN This field toggles between Enabled and Disabled An enabled VLAN is operational and a disabled VLAN is not operational If a VLAN is disabled all ports assigned to that VLAN will assume a PVID of the default VLAN VLAN ID lower part of screen Modifiable Enter input to select or define a new VLAN ID FID lo...

Page 36: ... 5 4 Type in the ID number of the FID 5 Use the arrow keys to highlight the VLAN Name field 6 Type a name of up to 32 ASCII characters in the VLAN Name field This is an optional attribute of a VLAN and is not required for VLAN operation 7 Use the arrow keys to highlight the ADD DEL field 8 Press the SPACE bar to select ADD for a defined VLAN Press ENTER The new VLAN will be added to the VLAN list ...

Page 37: ...upper left hand corner of the screen displays VLAN UPDATED where represents the entered ID number 5 Use the arrow keys to highlight the SAVE command at the bottom of the screen Press ENTER The message SAVED OK displays 3 4 3 Renaming a VLAN To change the name of an existing VLAN proceed as follows 1 Enter the VLAN ID The VLAN Name field will automatically update to display the VLAN s current name ...

Page 38: ...ighlight the SAVE command at the bottom of the screen Press ENTER The message SAVED OK displays 3 4 5 Enabling VLANs To enable a VLAN proceed as follows 1 Use the arrow keys to highlight the Admin Status field of the selected VLAN 2 Press the SPACE bar to toggle the field to display Enabled 3 Use the arrow keys to highlight the SAVE command at the bottom of the screen 4 Press ENTER The message SAV...

Page 39: ...hose belonging to only the Default VLAN 3 Use the arrow keys to highlight the SAVE command at the bottom of the screen 4 Press ENTER The message SAVED OK displays 3 4 8 Paging Through the VLAN List To display additional VLANs that do not display in the current VLAN List as shown on the screen use the NEXT or PREVIOUS commands located at the bottom of the screen as follows 1 To display the next scr...

Page 40: ...rt Assignment Configuration Screen Firmware Revision XX XX XX Port Assignment Configuration 25992 06 Module Type xxxxx xx BOOTPROM Revision XX XX XX 6C105 LOCAL MANAGEMENT Slot Number xx RETURN EXIT Port 1 2 3 4 5 6 7 8 9 10 11 12 Port Mode 1D TRUNK 1Q TRUNK HYBRID HYBRID HYBRID HYBRID HYBRID HYBRID HYBRID HYBRID HYBRID HYBRID VLAN Name Default VLAN Default VLAN Default VLAN Default VLAN Default V...

Page 41: ...unk the Port VLAN List and the associated frame type are automatically configured Table 3 3 Port Assignment Configuration Screen Field Definitions Use this field To Port Read Only See the port numbers of the interfaces of the current module Port Mode Selectable Display the current operational mode for the corresponding port and select one of three modes HYBRID 1Q TRUNK or ID TRUNK The default is H...

Page 42: ... DefaultVLAN OutAll Ports parameter and the Default VLAN to allow all stations on a legacy portion of the network to access all stations or servers in the 802 1Q portion of the network 3 When the desired operational mode for the port is displayed use the arrow keys to highlight the SAVE command at the bottom of the screen 4 Press ENTER The message SAVED OK displays 3 5 2 Assigning a VLAN ID The Po...

Page 43: ...reen use the arrow keys to highlight PREVIOUS Press ENTER to view the entries on the previous screen 3 6 PORT FILTERING CONFIGURATION SCREEN When to Use To perform the following functions Select a port and view a list ofVLANs that are configured to have their frames transmitted out that port Filter out certain incoming frames according to the VLAN List and prevent them from being switched and tran...

Page 44: ...splays Screen Example Figure 3 7 Port Filtering Configuration Screen Firmware Revision XX XX XX Port Filtering Configuration 25992 07 Module Type xxxxx xx BOOTPROM Revision XX XX XX 6C105 LOCAL MANAGEMENT Slot Number xx RETURN EXIT Filter Using VLAN Lists NO Filter All Untagged Frames NO VLAN ID 0001 0003 0004 0012 0014 0020 VLAN Name Default VLAN Not Defined Not Defined Not Defined Not Defined No...

Page 45: ...he VLAN ID of the VLANs that are configured to have their frames transmitted out the port selected in the Port field VLAN Name Read Only See the names of the VLANs associated with the VLAN ID If a VLAN does not have a name Not Defined is displayed Port Selectable To step to the port number of the interface being configured including the selection of ALL ports Filter Using VLAN Lists Toggle Filter ...

Page 46: ...to step through the available port selections 3 Use the arrow keys to highlight the Filter Using VLAN List field 4 Use the SPACE bar or BACKSPACE key to toggle between YES and NO When set to YES the switch will drop all incoming frames that are classified with a VLAN tag of a VLAN that does not appear on the Port VLAN List The default is NO 5 Use the arrow keys to highlight the Filter All Untagged...

Page 47: ... Configuration screen displays Screen Example Figure 3 8 VLAN Forwarding Configuration Screen Firmware Revision XX XX XX VLAN Forwarding Configuration 25991 08 Module Type xxxxx xx BOOTPROM Revision XX XX XX 6C105 LOCAL MANAGEMENT Slot Number xx RETURN EXIT VLAN Name xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx ATM PVC VCI 1 VPI 23 Current VLAN Ports Port 15 Port 17 Port 20 Port 23 Port 24 Port 25 Port 35 Po...

Page 48: ...on for the selected switch port Frame Format Read Only See the frame format Tagged or Untagged for the frames of the selected VLAN that the port will transmit VLAN ID Selectable Select the identification of the VLAN under examination This screen displays the list of ports currently configured to transmit frames for the VLAN ID in this field VLAN Name Read Only See the name associated with the VLAN...

Page 49: ...d Use the SPACE bar or BACKSPACE to step to the desired VLAN ID and VLAN Name Press ENTER 2 Use the arrow keys to highlight the Port field Step through the available ports on the module with the SPACE bar or BACKSPACE 3 Use the arrow keys to highlight the ADD DELETE field Press the SPACE bar to select ADD or DELETE Press ENTER The Forwarding List entry will be added to the list of current VLANs on...

Page 50: ...w keys to highlight the Port field Step through the available ports by pressing the SPACE bar or BACKSPACE 2 Using the arrow keys select the Frame Type field Use the SPACE bar or BACKSPACE to toggle between Tagged or Untagged 3 Use the arrow keys to highlight the SAVE command at the bottom of the screen 4 Press ENTER The message SAVED OK displays 3 8 PROTOCOL VLAN CONFIGURATION SCREEN When to Use ...

Page 51: ...creen Example Figure 3 9 Protocol VLAN Configuration Screen Firmware Revision XX XX XX Protocol VLAN Configuration 25991_23 Module Type xxxx xx Slot Number xx BOOTPROM Revision XX XX XX 2E253 49R LOCAL MANAGEMENT RETURN EXIT Configured Ports Protocol Type CUSTOM Ether type 0x0800 ADD MODIFY SAVE ALL PORTS USER DEFINED PORT LIST VLAN ID Protocol Type 0001 0x0800 IP 0002 0x0801 CUSTOM VLAN ID 2 Acti...

Page 52: ...otocol Ports Configuration screen for that Priority and Protocol Type Configurable ports are all the physical ports and existing virtual interfaces such as for ATM VLAN ID Modifiable Enter the VLAN ID which will be assigned to a protocol The VLAN ID may be one already created or a new one If a new VLAN ID is entered it will be added to the VLAN Configuration with a FID of the same value as the VLA...

Page 53: ...eld is chosen Ether Type 0x0 displays so the user can input a particular Ether Type NOTE Any Ether type selected or entered in the Ether type field and saved will become part of the selection in the protocol field For details refer to Section 3 8 1 Feature Status Toggle Enables or disables the entries The entries can be made but are not affective until this field is set to ENABLED The choices for ...

Page 54: ...h a Protocol Family to a VLAN ID proceed as follows Ether type Modifiable Enter the values of a new Ether type when CUSTOM is selected in the Protocol Type field The value 0x0 will display which can be modified A protocol may have more that one Ether Type Any Ether Type greater than 05dc hex and less than ffff hex may be entered The maximum number of Ether Types configured per switch is 32 If an a...

Page 55: ...ocol field at the bottom of the screen 4 Use the SPACE bar to step to the appropriate protocol type IP IPX Appletalk Netbios Banyan Vines DECNET or CUSTOM If CUSTOM is selected Ether Type 0x0 displays The user s own Ether Type can then be entered if necessary 5 Use the arrow keys to highlight the Configure Ports field near the bottom of the screen 6 Press the SPACE bar to toggle the field to apply...

Page 56: ...nfiguration screen as described in Section 3 8 3 to view add or delete ports from the priority in the highlighted line 3 8 3 Displaying the Protocol Types on Current Ports To display the current ports and port types associated with a VLAN ID the Protocol Ports Configuration screen must be displayed While in that screen ports and their port type may be added to or current ones deleted from the VLAN...

Page 57: ...iority Configuration screen and press ENTER The Protocol Ports Configuration screen displays Screen Example Figure 3 10 Protocol Ports Configuration Screen NOTE The line of information selected must have been saved before it can be used to access the Protocol Ports Configuration screen as described below Firmware Revision XX XX XX Protocol Ports Configuration 2599_24 Module Type xxxxx xx BOOTPROM ...

Page 58: ...of deleted from the VLAN ID shown in the VLAN ID field When a port is displayed the associated port type is displayed to the right of the port number In Figure 3 10 the port is 31 and the associated port type is ATM PVC VCI 1 VPI 23 DELETE ALL PORTS Selectable Add or delete a port selected in the Port field of the VLAN ID displayed or add all ports to or deleted all ports that are configurable on ...

Page 59: ...H The procedures below provide a short tutorial walkthrough that presents each of the steps necessary to configure a new VLAN assign a port to it and check the Port VLAN List of the port You may wish to follow this walkthrough from start to finish before attempting to configure your own VLANs This walkthrough begins at the 802 1Q VLAN Configuration Menu screen for a 6C105 chassis Follow the instru...

Page 60: ... highlight the ADD DEL field 7 Press the SPACE bar to toggle the field to ADD Press ENTER The VLAN is added to the list 8 Use the arrow keys to highlight the SAVE command at the bottom of the screen Press ENTER The message SAVED OK displays The screen refreshes and VLAN 2 the TEST VLAN has been added to the Device VLAN Configuration screen and all learning of MAC addresses will be updated in FID 2...

Page 61: ...he VLAN ID field for the module and port combination you wish to change NOTE For the purposes of this walkthrough port 3 will be configured NOTE As this port will connect to a single workstation and is not to be used for switch to switch communications it is not necessary to change the PORT MODE from the default setting of HYBRID Firmware Revision XX XX XX Device VLAN Configuration 25993 09 Module...

Page 62: ...ne port as a 1Q Trunk port for a connection to another VLAN aware switch This 1Q Trunk port will carry traffic from all VLANs allowing VLAN frames to maintain their VLAN ID across multiple switches NOTE For the purposes of this walkthrough port 10 will be configured as the trunk port Firmware Revision XX XX XX Port Assignment Configuration 25992 10 Module Type xxxxx xx BOOTPROM Revision XX XX XX 6...

Page 63: ...k like Figure 3 13 Figure 3 13 Walkthrough Stage Three Now that the TEST VLAN and the 1Q Trunk connection are set up we can proceed to activate the TEST VLAN Firmware Revision XX XX XX Port Assignment Configuration 25991 11 Module Type xxxxx xx BOOTPROM Revision XX XX XX 6C105 LOCAL MANAGEMENT Slot Number xx RETURN EXIT Port 1 2 3 4 5 6 7 8 9 10 11 12 Port Mode HYBRID HYBRID HYBRID HYBRID HYBRID H...

Page 64: ...VE command at the bottom of the screen 19 Press ENTER The message SAVED OK displays The switch activates the new VLAN This effectively completes the configuration of a single VLAN assigning it to a port and configuring the switch to forward the frames received on that port to be forwarded with the VLAN information included in the frame Firmware Revision XX XX XX Device VLAN Configuration 25993 12 ...

Page 65: ...ay the Port VLAN List of port 10 and set the port to filter out all untagged frames that it receives 20 On the 802 1Q VLAN Main Menu screen use the arrow keys to highlight the PORT FILTERING CONFIGURATION menu item Press ENTER The Port Filtering Configuration screen displays 21 Use the arrow keys to highlight the Port field 22 Press the SPACE bar to step the field to display 2 23 Use the arrow key...

Page 66: ...e setting of the port filtering of all untagged frames Firmware Revision XX XX XX Port Filtering Configuration 25992 20 Module Type xxxxx xx BOOTPROM Revision XX XX XX 6C105 LOCAL MANAGEMENT Slot Number xx RETURN EXIT Filter Using VLAN Lists NO Filter All Untagged Frames YES VLAN ID 0001 0001 VLAN Name DEFAULT VLAN 1Q TRUNK SAVE PREVIOUS NEXT Port 10 Port VLAN List ...

Page 67: ...uration Also provided in the discussion of each example is a description of how the frames transmitted from one user would traverse the network to its target device 4 1 EXAMPLE 1 SINGLE SWITCH OPERATION This first example looks at the configuration of a single Ethernet switch for VLAN operation In this example two groups of three users are to be assigned to two VLANs to isolate them from one anoth...

Page 68: ...Blue VLAN is a member of FID 3 from the Device VLAN Configuration screen 2 The Administrator uses the Device VLAN Configuration screen to define the two VLANs for this switch the Red VLAN with a VLAN ID of 002 and the Blue VLAN with a VLAN ID of 003 3 The Administrator brings up the Port Assignment Configuration screen and assigns the ports to the VLANs Ports 1 2 and 3 VLAN ID 002 Red VLAN Ports 4...

Page 69: ...ID 2 In this fashion it learns that station R1 is located out Port 1 3 Once the frame is classified its destination MAC address is examined The switch discovers that the frame is a broadcast and treats it as it would any other unknown destination MAC address The switch forwards the frame out all ports in the Red VLAN s Forwarding List except for the one that received the frame In this case the fra...

Page 70: ...be taken to set up VLANs across multiple 802 1Q VLAN switches This includes the configuration and operation of 1Q Trunks between 802 1Q VLAN switches As shown in Figure 4 3 two companies Redco and Blue Industries share floors 2 and 4 in a building where the network infrastructure is supplied by the building owner The objective is to completely isolate the network traffic of the two companies by li...

Page 71: ...rs to the Blue VLAN The following information shows how Switch 4 and Switch 2 are configured to create the two VLANs to isolate the users of the two companies from one another on the network using the existing infrastructure Floor 1 Floor 2 Floor 3 Floor 4 1 Bridge 1 Bridge 2 Bridge 3 Bridge 4 Redco Redco Blue Industries Red VLAN Red VLAN Red VLAN Red VLAN Blue VLAN Blue VLAN Blue VLAN Blue VLAN 2...

Page 72: ...sify all untagged frames received as belonging to the VLAN specified by each port PVID and to replace the previous PVID information in the port VLAN List with the new PVID information This makes Port 1 part of the Red VLAN Port 3 part of the Blue VLAN and both are set as VLAN frame format of untagged 3 Port 4 is configured as a 1Q Trunk port as follows using the Port Assignment Configuration scree...

Page 73: ...the Port Assignment screen Port 1 VLAN ID 223 for the Blue VLAN Port 3 VLAN ID 222 for the Red VLAN These settings change the configuration of the switch so that Port 1 is part of Blue VLAN Port 3 is part of Red VLAN and both are set as frame type of untagged 3 Port 2 is configured as a 1Q Trunk port as follows using the Port Assignment Configuration screen Port 2 Port Mode 1Q Trunk Port 2 is set ...

Page 74: ...es the frame from Bridge 1 and immediately classifies it as belonging to the Red VLAN After the frame is classified Switch 4 checks the Destination Address and upon discovering that it is a Broadcast Destination Address forwards the frame out all ports in the Red VLAN Forwarding List excluding Port 1 which received the frame In this example it is only Port 4 Switch 4 updates its Source Address Tab...

Page 75: ...ts in the Red VLAN Forwarding List excluding Port 2 which received the frame In this example the only eligible port is Port 3 which connects to Bridge 4 Switch 2 checks its Forwarding List which specifies that the VLAN frame type for that port is untagged Switch 2 then updates its Source Address Table in FID 3 for MAC address Y if necessary The untagged frame is then transmitted out Port 3 to Brid...

Page 76: ...eive port 5 The frame from the File Server is received on Switch 2 and forwarded to Switch 1 as a tagged frame classified as belonging to the Red VLAN Switch 1 removes the tag and forwards the frame to Bridge 1 which in turn forwards the frame out of the port attached to User A All subsequent frames between User A and the File Server are forwarded through the switch fabric in the same manner 4 3 E...

Page 77: ...corporated Network Administrators want to continue to separate normal network traffic between the Blue and Red VLANs and create a new isolated VLAN for Green Incorporated users All divisions in the facility are to have equal access to the Mail Server on the first floor Floor 1 Floor 2 Floor 3 Floor 4 1 Bridge 1 Bridge 2 Bridge 3 Bridge 4 Red VLAN Red VLAN Red VLAN Red VLAN Blue VLAN Blue VLAN Blue...

Page 78: ...o be received and classified to the Default VLAN of Switch 4 Switch 2 Switch 2 is set as follows 1 The Forward Default VLAN Out All Ports is set to YES using the Device VLAN Configuration screen This adds the Default VLAN to the Port VLAN List of every switch port and all VLANs become members of FID 1 2 The port mode of Port 4 is set using the Port Assignment screen Port 4 Port Mode 1Q Trunk This ...

Page 79: ...t 2 is set as an 802 1Q Trunk port which makes the port eligible to transmit frames of all VLANs and sets all frames forwarded out this port as tagged frames Port 3 is set as a 1D Trunk port where frames classified as belonging to any VLAN are forwarded untagged and received frames are classified as belonging to the Default VLAN This allows the Mail Server to send receive mail traffic to from all ...

Page 80: ... added as shown in Figure 4 8 Figure 4 8 Bridge 1 Broadcasts Frames 3 Switch 2 receives the tagged Red VLAN frame on Port 2 as shown in Figure 4 9 The VLAN Tag in the frame is maintained classifying the frame as belonging to the Red VLAN The switch forwards the broadcast frame out all the eligible ports Ports 3 and 4 Switch 2 simultaneously updates its Source Address Table for FID 1 to reflect the...

Page 81: ...ripped from the frame and the frame is transmitted out Port 3 as shown in Figure 4 10 The Source Address Table FID 1 for Switch 1 is updated to contain User B Figure 4 10 Switch 1 Forwards to 1D Trunk 5 The Mail Server receives the broadcast frame and recognizes it The Mail Server responds with a unicast frame to User B This frame crosses the 1D Trunk and is received by Switch 1 Switch 1 classifie...

Page 82: ... is checked for eligibility and frame format for Port 2 Since Port 2 is a 1Q Trunk port it is eligible to transmit frames for all VLANs The frame is tagged and transmitted out port 2 7 Switch 4 receives the frame on its 1Q Trunk port Port 4 and examines the frame s Tag The frame maintains its Default VLAN classification The switch also refers to its Source Address Table FID 1 to see if it can loca...

Page 83: ...n Figure 4 7 the Publications Department is relocating from another site to the third floor This network will consist of six computers and a printer using several protocols including the AppleTalk protocol A characteristic of the AppleTalk protocol is to send all frames as multicast frames These multicast frames will be isolated to a VLAN Grey VLAN to prevent them from slowing down the other netwo...

Page 84: ...Switch 5 and the devices that will make up Publication s Grey VLAN have been added Floor 1 Floor 2 Floor 3 Floor 4 1 Bridge 1 Bridge 2 Bridge 3 Red VLAN Red VLAN Blue VLAN Blue VLAN Blue VLAN Blue VLAN 2599_18 User 802 1D Legacy Bridge 802 1Q VLAN Aware Switch User B Server 2 4 3 4 1 1 2 3 Mail Server Green VLAN Green VLAN Bridge 4 Red VLAN Red VLAN File Server 2 Grey VLAN Grey VLAN 1 2 3 4 Printe...

Page 85: ...signed to the Yellow VLAN to handle the traffic between Switch 3 and 5 Switch 3 Switch 3 is set as follows 1 One VLAN is added to the list of VLANs in the Device VLAN Configuration screen In this example Switch 3 is set as follows VLAN ID 5 FID 5 with a VLAN Name of Yellow 2 The Forward Default VLAN Out All Ports is set to YES using the Device VLAN Configuration screen This adds the Default VLAN t...

Page 86: ...and 5 from being transmitted out Port 1 to Switch 3 and the network backbone Port VLAN IDs are assigned to all switch ports using the Port Assignment screen as follows Port 1 VLAN ID 5 for the Yellow VLAN Port 2 VLAN ID 5 for the Yellow VLAN Port 3 VLAN ID 5 for the Yellow VLAN Port 4 VLAN ID 5 for the Yellow VLAN Port 5 VLAN ID 5 for the Yellow VLAN Port 6 VLAN ID 5 for the Yellow VLAN Port 7 VLA...

Page 87: ...col Switch 5 would only transmit the frame to Ports 2 3 4 6 7 and 8 6 Use the VLAN Forwarding Configuration screen to assign Port 1 to the Yellow VLAN and set the frame type to tagged With this configuration the frames transmitted on Port 1 are tagged as being from the Yellow VLAN If a frame associated with any protocol other than AppleTalk for example for the mail server is received on any of the...

Page 88: ...Chapter 4 Examples 4 22 802 1Q VLAN User s Guide ...

Page 89: ...3 9 VLAN Out All Ports Toggle 3 9 E Examples 4 1 F FID See Filtering Database ID Filtering Database 1 5 Filtering Database ID 1 4 Forwarding list 1 5 adding entries 3 23 customizing 2 3 deleting entries 3 23 viewing 3 22 Forwarding mode changing 3 13 Frame format changing 3 24 Frames tagged 1 5 2 5 untagged 1 5 2 4 H Host data port 3 2 3 3 Hybrid 3 15 I Isolating Network Traffic According to Proto...

Page 90: ... 3 32 Port Type upper part of screen Read Only 3 32 Priority Read Only 3 32 Protocol Read Only 3 32 Protocol VLAN Configuration screen 3 24 Action Toggle 3 27 Configured Ports 3 26 Configured Ports BitMap upper part of screen Selectable 3 26 Ether type Modifiable 3 28 Feature Status 3 27 Ports upper part of screen Read Only 3 26 Protocol Type Selectable 3 27 VLAN ID Modifiable 3 26 VLAN ID upper p...

Page 91: ... VLAN Configuration deleting 3 12 disabling 3 12 enabling 3 12 VLAN Forwarding Configuration screen ADD DELETE Toggle 3 22 Current VLAN Ports Read Only 3 22 Frame Format upper part of screen Read Only 3 22 Frame Type lower part of screen Toggle 3 22 Port Selectable 3 22 Port Type Read Only 3 22 VLAN ID Selectable 3 22 VLAN Name Read Only 3 22 VLAN ID 1 4 assigning 3 16 VLAN Local Management 3 4 VL...

Page 92: ...Index Index 4 802 1Q VLAN User s Guide ...

Reviews: