VLAN Theory and Implementation

Slides:



Advertisements
Similar presentations
LAN Segmentation Virtual LAN (VLAN).
Advertisements

© 2006 Cisco Systems, Inc. All rights reserved. ICND v2.3—2-1 Extending Switched Networks with Virtual LANs Introducing VLAN Operations.
Implementing Inter-VLAN Routing
Switching Topic 4 Inter-VLAN routing. Agenda Routing process Routing VLANs – Traditional model – Router-on-a-stick – Multilayer switches EtherChannel.
Cisco 3 - Switch Perrine. J Page 15/8/2015 Chapter 8 What happens to the member ports of a VLAN when the VLAN is deleted? 1.They become inactive. 2.They.
VLANs Module 2. 2 VLANs  VLANs  Trunking  VLAN Trunking Protocol (VTP)
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 VLANs LAN Switching and Wireless – Chapter 3.
VLANs (Virtual LANs) CS 158B Elaine Lim Allison Nham.
© 2006 Cisco Systems, Inc. All rights reserved. ICND v2.3—2-1 Extending Switched Networks with Virtual LANs Configuring VLANs.
Virtual LANs. VLAN introduction VLANs logically segment switched networks based on the functions, project teams, or applications of the organization regardless.
VLANs.ppt CCNA Exploration Semester 3 Chapter 3
CCENT Study Guide Chapter 11 VLANs and Inter-VLAN Routing.
1 Lecture #6 Switch – VLAN Asst.Prof. Dr.Anan Phonphoem Department of Computer Engineering, Faculty of Engineering, Kasetsart University, Bangkok, Thailand.
Advanced Computer Networks
Voice VLANs Lecture 7 VLANs.ppt 21/04/ Apr-17
TRUNKS TRUNK: Trunking is a layer 2 feature.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 3: Implementing VLAN Security Routing And Switching.
© 2015 Mohamed Samir YouTube channel All rights reserved. Samir CCNP-SWITCHING Mohamed Samir YouTube channel.
IEEE 802.1q - VLANs Nick Poorman.
Chapter review Chapter 5 test.
VLAN Trunking Protocol
Network Admin Course Plan Accede Institute Of Science & Technology.
1/28/2010 Network Plus Network Device Review. Physical Layer Devices Repeater –Repeats all signals or bits from one port to the other –Can be used extend.
Chapter 9 Virtual LANs (VLANs). Setup 1 Setup 2.
VLAN V irtual L ocal A rea N etwork VLAN Network performance is a key factor in the productivity of an organization. One of the technologies used to.
Chapter 8: Virtual LAN (VLAN)
Cisco 3 - LAN Perrine. J Page 110/20/2015 Chapter 8 VLAN VLAN: is a logical grouping grouped by: function department application VLAN configuration is.
Author: Bill Buchanan. 1. Broadcast: What is the MAC address of this network address? 2. Requested host: All the hosts read the broadcast and checks.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 9 Virtual Trunking Protocol.
Cisco S3C3 Virtual LANS. Why VLANs? You can define groupings of workstations even if separated by switches and on different LAN segments –They are one.
Connecting LANs, Backbone Networks, and Virtual LANs : Data Communication and Computer Networks Asst. Prof. Chaiporn Jaikaeo, Ph.D.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 8 Virtual LANs Cisco Networking Academy.
Inter VLAN routing using ISL By Eric and Holly. Overview of ISL Trunking Trunking is a way to carry traffic from several VLANs over a point-to-point link.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 VLANs LAN Switching and Wireless – Chapter 3.
Switching Topic 2 VLANs.
Virtual LAN (VLAN) W.lilakiatsakun. VLAN Overview (1) A VLAN allows a network administrator to create groups of logically networked devices that act as.
Virtual Local Area Networks (VLANs) Part II
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 9 VLAN Trunking Protocol Cisco Networking Academy.
CCNA3 v3 Module 9 v3 CCNA 3 Module 9 JEOPARDY K. Martin.
W&L Page 1 CCNA CCNA Training 2.5 Describe how VLANs create logically separate networks and the need for routing between them Jose Luis.
1 VLANs Relates to Lab 6. Short module on basics of VLAN switching.
VLAN Trunking Protocol
Network Components Kortney Horton LTEC October 20, 2013 Assignment 3.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 VLANs LAN Switching and Wireless – Chapter 3.
1 Version 3.0 Module 8 Virtual LANs. 2 Version 3.0.
CCNA3: Switching Basics and Intermediate Routing v3.0 CISCO NETWORKING ACADEMY PROGRAM Chapter 8 – Virtual LANs Virtual LANs VLAN Concepts VLAN Configuration.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 VLANs.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 VLANs.
CCNA Practice Exam Questions
Chapter 11 VLANs and Inter-VLAN Routing
Large-scale (Campus) Lan design (Part II)
Switching and VLANs.
Chapter 4 Data Link Layer Switching
VLANs: Virtual Local Area Networks
Chapter 5: Inter-VLAN Routing
Virtual LANs.
Ethernet : Framing and Addressing
Advanced Network Training
Routing and Switching Essentials v6.0
CCNA Routing and Switching Routing and Switching Essentials v6.0
Connecting LANs, Backbone Networks,
Chapter 3: Implementing VLAN Security
CCNA 3 v3 JEOPARDY Module 8 CCNA3 v3 Module 8 K. Martin.
CCNA 3 v3 JEOPARDY Module 8 CCNA3 v3 Module 8 K. Martin.
Medium-Sized Switched Network Construction
Network layer devices combine multiple broadcast domains
CCNA 3 v3 JEOPARDY Module 9 CCNA3 v3 Module 9 K. Martin.
Implement Inter-VLAN Routing
Lecture#7: Trunking and STP
Presentation transcript:

VLAN Theory and Implementation Gilbert Detillieux, Computer Science Presented to MUUG, October 2017

7-Layer Model 7 6 5 4 (TCP, UDP) 3 (IP, Routers) 2 (Ethernet, Switches, Bridges) 1 (100BaseT, Hubs, Repeaters) Source: https://commons.wikimedia.org/wiki/File:Osi-model-jb.svg licensed under the Creative Commons Attribution-Share Alike 3.0 Unported license

Routers, Switches, and Hubs, Oh My! Device: Hub Bridge Switch Router OSI Layer 1 2 3 Collision Domains 1/port Broadcast Domains

What is a VLAN? A virtual LAN (VLAN) is any broadcast domain that is partitioned and isolated in a computer network at the data link layer (OSI layer 2) … creating the appearance and functionality of network traffic that is physically on a single network but acts as if it is split between separate networks. In this way, VLANs can keep network applications separate despite being connected to the same physical network, and without requiring multiple sets of cabling and networking devices to be deployed. Source: https://en.wikipedia.org/wiki/Virtual_LAN licensed under the  Creative Commons Attribution-ShareAlike License

VLAN Tagging (IEEE 802.1Q) adds a 32-bit field between the source MAC address and the EtherType fields Tag protocol identifier (TPID): a 16-bit field set to a value of 0x8100 Priority code point (PCP): a 3-bit field which refers to the IEEE 802.1p class of service Drop eligible indicator (DEI): a 1-bit field (congestion management) VLAN identifier (VID): a 12-bit field 0x000 and 0xFFF are reserved other values may be used as VLAN identifiers, allowing up to 4,094 VLANs Source: https://en.wikipedia.org/wiki/IEEE_802.1Q licensed under the  Creative Commons Attribution-ShareAlike License

Double Tagging (802.1ad) useful for Internet service providers allow use of VLANs internally while mixing traffic from clients that are already VLAN-tagged outer (representing ISP VLAN) S-TAG (service tag) comes first inner C-TAG (customer tag) next TPID of 0x88a8 for service-provider outer S-TAG Source: https://en.wikipedia.org/wiki/IEEE_802.1Q licensed under the  Creative Commons Attribution-ShareAlike License

IOS Access Mode vs Trunk Mode ! Port 1 in access mode: ! Port 24 (uplink) in trunk mode: interface GigabitEthernet1/0/1 interface GigabitEthernet1/0/24 switchport access vlan 10 switchport trunk encapsulation dot1q switchport mode access switchport mode trunk Sample Cisco IOS Configuration

Trunk Mode with VLAN Filtering ! Define our VLAN’s: ! Restricted Trunk Port: vlan 10,20,30 interface GigabitEthernet1/0/24 switchport trunk encapsulation dot1q … switchport trunk allowed vlan 10,20 switchport mode trunk Sample Cisco IOS Configuration

Trunk Mode with Native VLAN ! Define our VLAN’s: ! Transitional Trunk Port: vlan 10,20,30 interface GigabitEthernet1/0/24 switchport trunk encapsulation dot1q … switchport trunk native vlan 10 switchport mode trunk Sample Cisco IOS Configuration

VLAN Support – Linux Similar mechanism to virtual interfaces (e.g. eth0:1) Parent interface (e.g. eth0) will send/receive untagged frames on native VLAN Define a separate child interface (e.g. eth0.10) per VLAN These interfaces will send/receive tagged frames for those specific VLANs Tagging done at kernel level; no direct user-level manipulation

VLAN Setup – Linux Commands vconfig add eth0 10 … or … ip link add link eth0 name eth0.10 type vlan id 10 nmcli con add type vlan ifname VLAN10 dev eth0 id 10 Sample Linux Commands for VLAN Configuration

VLAN Setup – Red Hat ifcfg File # /etc/sysconfig/network-scripts/ifcfg-eth0.10 DEVICE=eth0.10 VLAN=yes BOOTPROTO=none ONBOOT=yes IPADDR=192.168.1.1 PREFIX=24 NETWORK=192.168.1.0 … Sample Red Hat Linux ifcfg Script for VLAN Configuration

VLAN Setup – Debian interfaces # /etc/network/interfaces auto eth0.10 iface eth0.10 inet static address 10.10.10.1 netmask 255.255.255.0 vlan-raw-device eth0 … Sample Debian / Ubuntu Linux interfaces File for VLAN Configuration

VLAN Setup – Linux / Gnome3 open the Network window, click the plus symbol, and select VLAN from the list select the parent interface from the drop-down list enter the VLAN ID enter a VLAN interface name Save… Sample Gnome NetworkManager Dialogue for VLAN Configuration

Further Reading https://www.thomas-krenn.com/en/wiki/VLAN_Basics https://en.wikipedia.org/wiki/IEEE_802.1Q https://en.wikipedia.org/wiki/Multiple_Registration_Protocol https://www.cisco.com/c/en/us/tech/lan-switching/virtual-lans-vlan-trunking-protocol-vlans-vtp/tech-configuration-examples-list.html https://www.cyberciti.biz/tips/howto-configure-linux-virtual-local-area-network-vlan.html https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/networking_guide/ch-configure_802_1q_vlan_tagging https://wiki.debian.org/NetworkConfiguration#Howto_use_vlan_.28dot1q.2C_802.1q.2C_trunk.29_.28Etch.2C_Lenny.29

This work is available under the Creative Commons Attribution-NonCommercial-ShareAlike 2.5 Canada (CC BY-NC-SA 2.5 CA) license