大家好 今天的实验是配置primary VLANsecondary VLAN
 
主附vlan一般用于一个网络段的情况,主vlan和子vlan间可以访问,
而子vlan之间是不能访问的。就比如说 总经理所在的vlan可以访问任何部门的vlan 而部门之间却不能互相访问。
具体实验步骤如下:
图片
SW1<Quidway>sys
Enter system view, return to user view with Ctrl+Z.
[Quidway]sysname dongli
[dongli]super password dongli
[dongli]user int vty 0 4
[dongli-ui-vty0-4]authentication-mode password
[dongli-ui-vty0-4]set authentication-mode password sim 222
[dongli-ui-vty0-4]user privilege 3
[dongli-ui-vty0-4]quit
[dongli]vlan 2
[dongli-vlan2]port e0/3
[dongli-vlan2]vlan 3
[dongli-vlan3]port e0/6
[dongli-vlan3]vlan 4
[dongli-vlan4]port e0/8
[dongli-vlan4]quit
[dongli]vlan 4
[dongli-vlan4]vlan 2
[dongli-vlan2]isolate-user-vlan enable———————设为主vlan
[dongli-vlan2]
[dongli-vlan2]quit
[dongli]isolate-user-vlan 2 secondary 3,4——————————设vlan34为辅vlan
[dongli]int e0/1
[dongli-Ethernet0/1]port link-type trunk
[dongli-Ethernet0/1]port trunk permit vlan all
[dongli-Ethernet0/1]quit
[dongli]
 
SW2
<Quidway>sys
Enter system view, return to user view with Ctrl+Z.
[Quidway]vlan 2
[Quidway-vlan2]port e0/3
[Quidway-vlan2]vlan 3
[Quidway-vlan3]port e0/6
[Quidway-vlan3]vlan 4
[Quidway-vlan4]port e0/8
[Quidway-vlan4]quit
[Quidway]vlan 2
[Quidway-vlan2]isolate-user-vlan enable
[Quidway-vlan2]quit
[Quidway]isolate-user-vlan 2 secondary 3,4
[Quidway]quit
<Quidway>sys
Enter system view, return to user view with Ctrl+Z.
[Quidway]int e0/1
[Quidway-Ethernet0/1]port link-type trunk
[Quidway-Ethernet0/1]port trunk permit vlan all
[Quidway-Ethernet0/1]quit
[Quidway]
PC1 192.168.1.1     PC2 192.168.1.2        PC3 192.168.1.3       PC4 192.168.1.4  PC5 192.168.1.5      PC6 192.168.1.6
 
实验结果:PC1root@PCA root]# ifconfig eth0 192.168.1.1 netmask 255.255.255.0
[root@PCA root]# ping 192.168.1.2
64 bytes from 192.168.1.1: icmp_seq=1 ttl=128 time=0.207 ms
64 bytes from 192.168.1.1: icmp_seq=1 ttl=128 time=0.100 ms
64 bytes from 192.168.1.1: icmp_seq=1 ttl=128 time=0.96 ms
64 bytes from 192.168.1.1: icmp_seq=1 ttl=128 time=0.96 ms
 
4packets transmitted, 4 received, 0% loss, time 2000ms
 
PC2root@PCB root]# ifconfig eth0 192.168.1.2 netmask 255.255.255.0
[root@PCB root]# ping 192.168.1.1
64 bytes from 192.168.1.2: icmp_seq=1 ttl=128 time=0.207 ms
64 bytes from 192.168.1.2: icmp_seq=1 ttl=128 time=0.100 ms
64 bytes from 192.168.1.2: icmp_seq=1 ttl=128 time=0.96 ms
64 bytes from 192.168.1.2: icmp_seq=1 ttl=128 time=0.96 ms
 
4packets transmitted, 4 received, 0% loss, time 2000ms
 
[root@PCB root]# ping 192.168.1.3
From 192.168.1.2 icmp_seq=1 Destination Host Unreachable
From 192.168.1.2 icmp_seq=1 Destination Host Unreachable
From 192.168.1.2 icmp_seq=1 Destination Host Unreachable
From 192.168.1.2 icmp_seq=1 Destination Host Unreachable
 
4packets transmitted, 0 received, 100% loss, time 2000ms
 
[root@PCB root]#
 
实验成功
今天就讲到着 有不明白的请加768865545飘云 支持华为 !!!!!!!!!!!!!!!!!!!!!!!