SlideShare a Scribd company logo
Layer2 Network Technology
VLAN Principle and Configuration
VLAN Principle and Configuration
Main Content
Common Technology Courses
• After learning, Tom mastered the communication process between two PCs and showed greater interest in
network technologies. The customer raised new requirements in this project: There are offices of both the
technical department and financial department on the fifth and sixth floors, mutual communication is required
inside departments, but communication of the technical department and that of the financial department need to
be isolated from each other.
Layer-2 switch
Layer-2 switch
Layer-3 switch
Technical
department
Technical
department
Financial
department
Financial
department
1 2
3 1
2
3
24 24
2
1
Common Technology Courses
• At a glance of this topology, Tom thought of implementing isolation between the technical department and the
financial department on the same switch first.
• Tom recalled the IPv4 address knowledge and remembered that only hosts in the same network segment could
communicate with each other directly. So, Tom thought that IP addresses in different network segments could be
allocated to PCs to implement isolation.
Layer-2 switch
Technical
department
Financial
department
1 2
3
Technical department: 192.168.1.0/24
Financial department: 192.168.2.0/24
Common Technology Courses
• Tom told the manager his idea. The manager praised his idea but also reminded Tom that ARP Request packets
would be broadcast in PC communication and the switch flooded the broadcast packets, which could cause junk
traffic. In addition, the idea may put security in risks. If a staff in the technical department changes his/her IP
address to be in the same network segment as IP addresses of the Financial department, he could access PCs of
the Financial department.
• Tom thought that the manager's consideration was right and comprehensive. The manager told Tom that VLANs
and trunks were important features on the layer-2 switch and they could be a good solution.
Layer-2 switch
Technical
department
Financial
department
ARP Request
ARP Request
VLAN Principle and Configuration
• Virtual Local Area Network (VLAN)
• A VLAN is a logical network configured on a physical network. Each VLAN is identified by a numeral ID ranging from 1 to
4094. Different VLANs configured on a layer-2 switch are physically isolated and cannot communicate with each other.
• On the switch, each port can be added to a VLAN. Physical ports with the same VLAN ID belong to the same VLAN and hosts
connected to such ports are in the same network. Physical ports with different VLAN IDs belong to different networks. Hosts
connected to such ports cannot communicate with each other even if their IP addresses are in the same network segment.
Each VLAN is equivalent to an independent switch.
• All ports on a switch belong to VLAN 1 by default.
VLAN 10 VLAN 20
Layer-2 switch
Technical
department
Financial
department
1 2
3
VLAN Principle and Configuration
• Configuring VLANs
• Step 1: Create VLANs.
• Step 2: Add ports to VLANs on the switch.
RG-S2652G(config)#vlan 10 //Creating a VLAN.
RG-S2652G(config-vlan)# name Technical //Naming the VLAN for VLAN description.
RG-S2652G(config)#vlan 20
RG-S2652G(config-vlan)# name Financial
RG-S2652G(config)#interface range f0/1-2
RG-S2652G(config-if-range)#switchport access vlan 10 //Adding this port to VLAN 10.
RG-S2652G(config)#interface f0/3
RG-S2652G(config-if)#switchport access vlan 20
VLAN 10 VLAN 20
Layer-2 switch
Technical
department
Financial
department
1 2
3
VLAN Principle and Configuration
• Displaying VLAN Configuration Results
• Run the show vlan command to display VLAN information and ports contained in
each VLAN.
Ruijie#show vlan
VLAN Name Status Ports
---- -------------------------------- --------- -----------------------------------
1 VLAN0001 STATIC Fa0/4, Fa0/5, Fa0/6, Fa0/7
Fa0/8, Fa0/9, Fa0/10, Fa0/11
Fa0/12, Fa0/13, Fa0/14, Fa0/15
Fa0/16, Fa0/17, Fa0/18, Fa0/19
Fa0/20, Fa0/21, Fa0/22, Fa0/23
Fa0/24, Gi0/25, Gi0/26
10 VLAN0010 STATIC Fa0/1, Fa0/2
20 VLAN0020 STATIC Fa0/3
VLAN 10 VLAN 20
Layer-2 switch
Technical department Financial department
1 2
3
VLAN Principle and Configuration
• Displaying the MAC Address Table of the Switch
• The MAC address table contains VLAN information. The switch forwards data only
between ports belonging to the same VLAN.
VLAN 10 VLAN 20
Layer-2 switch
Technicaldepartment Financial department
1 2
3
Ruijie#sh mac-address-table
Vlan MAC Address Type Interface
---------- -------------------- -------- -------------------
10 001a.a919.414d DYNAMIC FastEthernet 0/1
10 000d.9dd2.6587 DYNAMIC FastEthernet 0/2
20 0016.d32c.2070 DYNAMIC FastEthernet 0/3
…
VLAN Principle and Configuration
• Summary
• After study, Tom mastered the functions of VLANs and how to configure and display VLANs. It
is an optimal way to isolate communication of the two departments via VLANs.
• Tom added ports to different VLANs by department on the switch. The PCs of different
departments could not communicate with each other even if their IP addresses are in the
same network segment. Therefore, VLANs are really useful.
• Exercises
• What is the function of VLANs? Can physical ports in different VLANs on a layer-2 switch
communicate with each other?
• What are the steps for configuring VLANs?
• How to display the mappings between VLANs and ports? Which VLAN is the default one of
ports on the switch?
THANKS
Ruijie Networks Co., Ltd.
Address: Floor 11, East Wing, Zhongyipengao Plaza, No. 29 Fuxing Road, Haidian District, Beijing, China
Post Code: 100036
Tel: (8610) 5171-5996
Fax: (8610) 5171-5872
www.ruijienetworks.com

More Related Content

PDF
欧洲杯比赛投注官网-欧洲杯比赛投注官网网站-欧洲杯比赛投注官网|【​网址​🎉ac123.net🎉​】
PDF
2024欧洲杯最好的投注软件-2024欧洲杯最好的投注软件网址-2024欧洲杯最好的投注软件|【​网址​🎉ac123.net🎉​】
PDF
欧洲杯比赛投注官网-欧洲杯比赛投注官网网站-欧洲杯比赛投注官网|【​网址​🎉ac123.net🎉​】
PDF
2024欧洲杯平台-2024欧洲杯平台网址-2024欧洲杯平台|【​网址​🎉ac123.net🎉​】
PDF
欧洲杯投注app-欧洲杯投注app推荐-欧洲杯投注app| 立即访问【ac123.net】
PDF
9.VLAN+Principle - Network - ruijie.pdf (
PDF
欧洲杯投注网站-欧洲杯投注网站推荐-欧洲杯投注网站| 立即访问【ac123.net】
DOC
Final exam ccna exploration 3 lan switching and wireless
欧洲杯比赛投注官网-欧洲杯比赛投注官网网站-欧洲杯比赛投注官网|【​网址​🎉ac123.net🎉​】
2024欧洲杯最好的投注软件-2024欧洲杯最好的投注软件网址-2024欧洲杯最好的投注软件|【​网址​🎉ac123.net🎉​】
欧洲杯比赛投注官网-欧洲杯比赛投注官网网站-欧洲杯比赛投注官网|【​网址​🎉ac123.net🎉​】
2024欧洲杯平台-2024欧洲杯平台网址-2024欧洲杯平台|【​网址​🎉ac123.net🎉​】
欧洲杯投注app-欧洲杯投注app推荐-欧洲杯投注app| 立即访问【ac123.net】
9.VLAN+Principle - Network - ruijie.pdf (
欧洲杯投注网站-欧洲杯投注网站推荐-欧洲杯投注网站| 立即访问【ac123.net】
Final exam ccna exploration 3 lan switching and wireless

Similar to 07 VLAN Principle and Configuration.pdf (20)

DOC
Ch3 ccna exploration 3 lan switching and wireless
PDF
CRS328 as a Layer 2 Switch UK MUM 2018.pdf
PDF
Free CCNP switching workbook by networkershome pdf
DOC
Ccna 3 chapter 3 v4.0 answers 2011
DOCX
Ccna 3 v4.0 final-exam-17-07-2010
DOCX
Ccna 3 v 4.0 final-exam-17-07-2010
PDF
Tema3
PPT
DOC
Ccna 3 chapter 6 v4.0 answers 2011
PPT
Mod8 vlans
PPTX
Lesson 2 slideshow
PDF
Cisco Packet Tracer- SRWE_Module_4_Inter_VLAN.pdf
PPTX
08 VLAN Prىلتانىنinciples and Configuration.pptx
PPTX
08 VLAN Prىلتانىنinciples and Configuration.pptx
PPTX
10 Inter-VLتاتتاتتتAN Communication.pptx
PPTX
10 Inter-VLتاتتاتتتAN Communication.pptx
PPT
mod8-VLANs.ppt
PPTX
ENCOR_Capitulo 1.pptx
PDF
Ccna 4 Chapter 7 V4.0 Answers
Ch3 ccna exploration 3 lan switching and wireless
CRS328 as a Layer 2 Switch UK MUM 2018.pdf
Free CCNP switching workbook by networkershome pdf
Ccna 3 chapter 3 v4.0 answers 2011
Ccna 3 v4.0 final-exam-17-07-2010
Ccna 3 v 4.0 final-exam-17-07-2010
Tema3
Ccna 3 chapter 6 v4.0 answers 2011
Mod8 vlans
Lesson 2 slideshow
Cisco Packet Tracer- SRWE_Module_4_Inter_VLAN.pdf
08 VLAN Prىلتانىنinciples and Configuration.pptx
08 VLAN Prىلتانىنinciples and Configuration.pptx
10 Inter-VLتاتتاتتتAN Communication.pptx
10 Inter-VLتاتتاتتتAN Communication.pptx
mod8-VLANs.ppt
ENCOR_Capitulo 1.pptx
Ccna 4 Chapter 7 V4.0 Answers
Ad

More from HARRY CHAN PUTRA (20)

PPTX
Basic Switch dan Vlan 33333333333333333333
PDF
12 link aggregation configuration
PDF
11 mac address table characteristic configuration
PDF
05 interface appended characteristic configuration
PDF
Bdcom s2508 b hardware installation manual
PDF
Mplsvpn seminar
PDF
Firewall ip filter
DOC
Zxdsl 9210 guide
DOC
9210 commissioning manual
PDF
Bsd routers
PDF
Hacom%20pf sense%20quick start%20guide
PDF
Pfsense%20%20note
PDF
66 pf sensetutorial
PDF
Modul 1-instalasi
ODT
Modul 1-instalasi
PDF
Modul 0-pengantar
ODT
Modul 0-pengantar
PDF
Slimsinserver2go
PDF
Olivevme110usermanualid
PDF
Modul 10 vicon
Basic Switch dan Vlan 33333333333333333333
12 link aggregation configuration
11 mac address table characteristic configuration
05 interface appended characteristic configuration
Bdcom s2508 b hardware installation manual
Mplsvpn seminar
Firewall ip filter
Zxdsl 9210 guide
9210 commissioning manual
Bsd routers
Hacom%20pf sense%20quick start%20guide
Pfsense%20%20note
66 pf sensetutorial
Modul 1-instalasi
Modul 1-instalasi
Modul 0-pengantar
Modul 0-pengantar
Slimsinserver2go
Olivevme110usermanualid
Modul 10 vicon
Ad

Recently uploaded (20)

PDF
Enhancing Cyber Defense Against Zero-Day Attacks using Ensemble Neural Networks
PDF
BMEC211 - INTRODUCTION TO MECHATRONICS-1.pdf
PPTX
web development for engineering and engineering
PPTX
CARTOGRAPHY AND GEOINFORMATION VISUALIZATION chapter1 NPTE (2).pptx
PPTX
Safety Seminar civil to be ensured for safe working.
PPTX
M Tech Sem 1 Civil Engineering Environmental Sciences.pptx
PDF
keyrequirementskkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkk
PPT
Mechanical Engineering MATERIALS Selection
DOCX
573137875-Attendance-Management-System-original
PDF
Embodied AI: Ushering in the Next Era of Intelligent Systems
PPTX
Foundation to blockchain - A guide to Blockchain Tech
PDF
PPT on Performance Review to get promotions
PDF
The CXO Playbook 2025 – Future-Ready Strategies for C-Suite Leaders Cerebrai...
PPTX
UNIT 4 Total Quality Management .pptx
PDF
TFEC-4-2020-Design-Guide-for-Timber-Roof-Trusses.pdf
PDF
Well-logging-methods_new................
PPTX
additive manufacturing of ss316l using mig welding
PPTX
Internet of Things (IOT) - A guide to understanding
PPTX
FINAL REVIEW FOR COPD DIANOSIS FOR PULMONARY DISEASE.pptx
PDF
Unit I ESSENTIAL OF DIGITAL MARKETING.pdf
Enhancing Cyber Defense Against Zero-Day Attacks using Ensemble Neural Networks
BMEC211 - INTRODUCTION TO MECHATRONICS-1.pdf
web development for engineering and engineering
CARTOGRAPHY AND GEOINFORMATION VISUALIZATION chapter1 NPTE (2).pptx
Safety Seminar civil to be ensured for safe working.
M Tech Sem 1 Civil Engineering Environmental Sciences.pptx
keyrequirementskkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkkk
Mechanical Engineering MATERIALS Selection
573137875-Attendance-Management-System-original
Embodied AI: Ushering in the Next Era of Intelligent Systems
Foundation to blockchain - A guide to Blockchain Tech
PPT on Performance Review to get promotions
The CXO Playbook 2025 – Future-Ready Strategies for C-Suite Leaders Cerebrai...
UNIT 4 Total Quality Management .pptx
TFEC-4-2020-Design-Guide-for-Timber-Roof-Trusses.pdf
Well-logging-methods_new................
additive manufacturing of ss316l using mig welding
Internet of Things (IOT) - A guide to understanding
FINAL REVIEW FOR COPD DIANOSIS FOR PULMONARY DISEASE.pptx
Unit I ESSENTIAL OF DIGITAL MARKETING.pdf

07 VLAN Principle and Configuration.pdf

  • 1. Layer2 Network Technology VLAN Principle and Configuration
  • 2. VLAN Principle and Configuration Main Content
  • 3. Common Technology Courses • After learning, Tom mastered the communication process between two PCs and showed greater interest in network technologies. The customer raised new requirements in this project: There are offices of both the technical department and financial department on the fifth and sixth floors, mutual communication is required inside departments, but communication of the technical department and that of the financial department need to be isolated from each other. Layer-2 switch Layer-2 switch Layer-3 switch Technical department Technical department Financial department Financial department 1 2 3 1 2 3 24 24 2 1
  • 4. Common Technology Courses • At a glance of this topology, Tom thought of implementing isolation between the technical department and the financial department on the same switch first. • Tom recalled the IPv4 address knowledge and remembered that only hosts in the same network segment could communicate with each other directly. So, Tom thought that IP addresses in different network segments could be allocated to PCs to implement isolation. Layer-2 switch Technical department Financial department 1 2 3 Technical department: 192.168.1.0/24 Financial department: 192.168.2.0/24
  • 5. Common Technology Courses • Tom told the manager his idea. The manager praised his idea but also reminded Tom that ARP Request packets would be broadcast in PC communication and the switch flooded the broadcast packets, which could cause junk traffic. In addition, the idea may put security in risks. If a staff in the technical department changes his/her IP address to be in the same network segment as IP addresses of the Financial department, he could access PCs of the Financial department. • Tom thought that the manager's consideration was right and comprehensive. The manager told Tom that VLANs and trunks were important features on the layer-2 switch and they could be a good solution. Layer-2 switch Technical department Financial department ARP Request ARP Request
  • 6. VLAN Principle and Configuration • Virtual Local Area Network (VLAN) • A VLAN is a logical network configured on a physical network. Each VLAN is identified by a numeral ID ranging from 1 to 4094. Different VLANs configured on a layer-2 switch are physically isolated and cannot communicate with each other. • On the switch, each port can be added to a VLAN. Physical ports with the same VLAN ID belong to the same VLAN and hosts connected to such ports are in the same network. Physical ports with different VLAN IDs belong to different networks. Hosts connected to such ports cannot communicate with each other even if their IP addresses are in the same network segment. Each VLAN is equivalent to an independent switch. • All ports on a switch belong to VLAN 1 by default. VLAN 10 VLAN 20 Layer-2 switch Technical department Financial department 1 2 3
  • 7. VLAN Principle and Configuration • Configuring VLANs • Step 1: Create VLANs. • Step 2: Add ports to VLANs on the switch. RG-S2652G(config)#vlan 10 //Creating a VLAN. RG-S2652G(config-vlan)# name Technical //Naming the VLAN for VLAN description. RG-S2652G(config)#vlan 20 RG-S2652G(config-vlan)# name Financial RG-S2652G(config)#interface range f0/1-2 RG-S2652G(config-if-range)#switchport access vlan 10 //Adding this port to VLAN 10. RG-S2652G(config)#interface f0/3 RG-S2652G(config-if)#switchport access vlan 20 VLAN 10 VLAN 20 Layer-2 switch Technical department Financial department 1 2 3
  • 8. VLAN Principle and Configuration • Displaying VLAN Configuration Results • Run the show vlan command to display VLAN information and ports contained in each VLAN. Ruijie#show vlan VLAN Name Status Ports ---- -------------------------------- --------- ----------------------------------- 1 VLAN0001 STATIC Fa0/4, Fa0/5, Fa0/6, Fa0/7 Fa0/8, Fa0/9, Fa0/10, Fa0/11 Fa0/12, Fa0/13, Fa0/14, Fa0/15 Fa0/16, Fa0/17, Fa0/18, Fa0/19 Fa0/20, Fa0/21, Fa0/22, Fa0/23 Fa0/24, Gi0/25, Gi0/26 10 VLAN0010 STATIC Fa0/1, Fa0/2 20 VLAN0020 STATIC Fa0/3 VLAN 10 VLAN 20 Layer-2 switch Technical department Financial department 1 2 3
  • 9. VLAN Principle and Configuration • Displaying the MAC Address Table of the Switch • The MAC address table contains VLAN information. The switch forwards data only between ports belonging to the same VLAN. VLAN 10 VLAN 20 Layer-2 switch Technicaldepartment Financial department 1 2 3 Ruijie#sh mac-address-table Vlan MAC Address Type Interface ---------- -------------------- -------- ------------------- 10 001a.a919.414d DYNAMIC FastEthernet 0/1 10 000d.9dd2.6587 DYNAMIC FastEthernet 0/2 20 0016.d32c.2070 DYNAMIC FastEthernet 0/3 …
  • 10. VLAN Principle and Configuration • Summary • After study, Tom mastered the functions of VLANs and how to configure and display VLANs. It is an optimal way to isolate communication of the two departments via VLANs. • Tom added ports to different VLANs by department on the switch. The PCs of different departments could not communicate with each other even if their IP addresses are in the same network segment. Therefore, VLANs are really useful. • Exercises • What is the function of VLANs? Can physical ports in different VLANs on a layer-2 switch communicate with each other? • What are the steps for configuring VLANs? • How to display the mappings between VLANs and ports? Which VLAN is the default one of ports on the switch?
  • 11. THANKS Ruijie Networks Co., Ltd. Address: Floor 11, East Wing, Zhongyipengao Plaza, No. 29 Fuxing Road, Haidian District, Beijing, China Post Code: 100036 Tel: (8610) 5171-5996 Fax: (8610) 5171-5872 www.ruijienetworks.com