O’zbekiston respublikasi axborot texnologiyalari va kommunikatsiyalarini rivojlantirish vazirligi muhammad al-xorazmiy nomidagi toshkent axborot texnologiyalari



Download 4,13 Mb.
bet16/72
Sana14.07.2022
Hajmi4,13 Mb.
#799383
1   ...   12   13   14   15   16   17   18   19   ...   72
Bog'liq
METODICHKA Tarmoq xavfsizligi

Swl#show vlan brief

VLAN

Name

Status

Ports










i

default

active

Fa0/8,

FaO/S,

Fa0/10, FaO/11










FaO/12,

FaO/13, FaO/14,

FaO/15










FaO/16,

FaO/17, FaO/18,

FaO/19










Fa0/20,

FaO/21, FaO/22,

Fa0/23










FaO/24,

GiqO/

1, GigO/2




10

bugalteriya

active

Fa0/1,

FaO/2







20

student

active

Fa0/3,

Fa0/4







30

dekanat

active

FaO/5,

FaO/6







1002

fddi-default

active













1003

token-ring-default

active













1004

fddinet-default

active













1005

trnet-default

active
















Sw1 va Sw2 kommutatorlar o'rtasida trunk rejimini sozlash va magistral


liniya bo'yicha aniq VLAN ID ta’yinlash.
Sw1(config)#interface fastEthernet 0/7 Sw1(config-if)#switchport mode trunk Sw1(config-if)#switchport trunk allowed vlan 10,20,30 Sw1 (config-if #end Sw1#show running-config
interface FastEthernetO/7 switchport trunk allowed vlan 10,2 0/30 switchport mode trunk
Yuqorida keltirilgan buyruq bitta kommutatorga sozlansa yetarli boladi, sababi 2 chi kommutator 1 chi kommutatorga ulangan interfeysini (fa0/7) avtomatik trank rejimini otkazadi
VLAN lar o„rtasida marshrutizatsiyani sozlash
Lokal tarmoqda yaratilgan VLAN lar o‘rtasida marshrutizatsiyani sozlashning 3 xil usuli mavjud:

  • Demonstrating the legacy inter-VLAN routing.

  • Router-on-a-Stick

  • Switch Based Inter Vlan Routing

Bu laboratoriya ishida VLAN lar o‘rtasida marshrutizatsiyani Router-on-a- stick (ROS) usulidan foydalanamiz.






  1. rasm. VLAN o‘rtasida marshrutizatsiyalashning ROS usuli

Sw1(config)#interface fastEthernet 0/8 Sw1(config-if)#switchport mode trunk
Router>enable Router#conf t
Router(config)#interface fastEthernet 0/1 Router(config-if)#no shutdown Router(config)#interface fastEthernet 0/1.10 Router(config-subif)#encapsulation dot1Q 10 Router(config-subif)#ip address 192.168.10.254 255.255.255.0 Router(config-subif)#exit Router(config)#interface fastEthernet 0/1.20 Router(config-subif)#encapsulation dot1Q 20 Router(config-subif)#ip address 192.168.20.254 255.255.255.0 Router(config-subif)#exit Router(config)#interface fastEthernet 0/1.30 Router(config-subif)#encapsulation dot1Q 30 Router(config-subif)#ip address 192.168.30.254 255.255.255.0 Router(config-subif)#exit






  1. - topshiriq bo'yicha qisqacha nazariy ma’lumot

VTP (ingliz. VLAN Trunking Protocol) - lokal hisoblash tarmog'i protokoli bo'lib, tanlangan trank portda VLAN haqida axborot almashish uchun xizmat qiladi. VTP - vlan larni dinamik tarzda sinxronizatsiyalash uchun ishlatiladi;

  1. xil rejimi mavjud:

  1. Client - VLAN larni o'zgartirish, o'chirish, yaratish mumkin emas;

  2. Transparent - bunda, switch da sinxronizatsiya amalga oshirilmaydi, switch faqat o'tkazuvchi vazifasini bajaradi;

  3. Server - VLAN bilan istalgan funktsiyalarni bajarish mumkin;

Vtp serverda vlan yaratiladi Clientlar avtomatik serverda yaratilgan VLAN larni qabul qiladi. Xavfsizlik ta ‘minlash maqsadida bu protokolda Client switch vlan yarata olmaydi, faqat foydalanuvchilarni o'zlariga biriktira oladi. Tarmoqda qandaydir o’zgarish yuz bersa (masalan yangi vlan qo'shilishi yoki olib tashlash) faqat VTP server orqali amalga oshiriladi.
VTP-da uchta xabar turi mavjud:

  1. Advertisement requests

Summary Advertisement Alert uchun mijozdan serverga so'rov taqdim etadi

  1. Summary advertisements

Ushbu standart xabar server har 5 daqiqada yoki konfiguratsiyani o'zgartirgandan so'ng darhol yuboradi.

  1. Subset advertisements

VLAN konfiguratsiyasini o'zgartirgandan so'ng, shuningdek, ogohlantirish so'rovidan keyin darhol yuboriladi.
VLAN ma'lumotlar bazasining yangi versiyasi serverdan olgan mijoz uni boshqa barcha trank portlarga uzatadi, agar uning orqasida yana VTP Client lari va VTP Transparent lari bo'lsa, ular ham ushbu yangilanishlarni oladi.
VTP protokolining bazaviy sozlamasi
switch(config)#vtp mode - bu yerda kerakli rejim tanlanadi: server, client, transparent yoki off.
Protokol versiyasi tanlanadi:
Switch(config)# vtp version 2
Domen va parol kiritiladi:
Switch(config)# vtp domain - domen nomi Switch(config)# vtp password parol [hidden | secret]
Kerakli rejimga o ‘tiladi:
Switch(config)# vtp mode server | client | transparent | off
Yuqoridagi buyruqlardan so‘ng VTP yoqiladi, biroq, zarur vaqtda uni ma ’lum bir interfeyslarda o‘chirib qo ‘yish ham mumkin:
Switch(config-if) # no vtp
Protokol sozlamalarini ko ‘rish uchun quyidagi buyruqlarni kiritish kerak: Switch# show vtp status Switch# show vtp devices Switch# show vtp interface
Ishni bajarish tartibi

  1. rasmda keltirilgan topologiyani yarating. O‘zingiz uchun topologiyadagi qaysi kommutatorlar Client, Transparent, Server ekanligini belgilab oling.

Ч60-24Т
SwitchO vtp server



vtp Transparent

vtp Transparent
FaO/Ir24^1
owifchl
Fa 0/31

vtp dient

vtp dient


Laptop-PT
Laptop5

Laptop-PTLaptopO









Laptop-PT

Laptop-PT

Laptop!

Laptop^

Laptop-PT
Laptop2

Laptop-PT
Laptop3

vlan 30

vlan 10



  1. v an 10rasm. VTP bo'yicha tuzilgan tarmoq topologiyasi

VTP SERVER
Switch(config)#vtp version 2 Switch(config)#vtp mode server Switch(config)#vtp domain tuit
Switch(config)#vtppassword cisco Switch(config)#vlan 10 Switch(config)#name student Switch(config-vlan)#exit Switch(config)#vlan 20 Switch(config)#name kafedra Switch(config-vlan)#exit Switch(config)#vlan 30 Switch(config-vlan)#name test Switch(config-vlan)#exit Switch(config)#interface range fastEth 0/1-2 Switch(config-if-range)#switchport mode trunk
VTP Transparent
Switch(config)#vtp version 2 Switch(config)#vtp mode transparent Switch(config)#vtp domain tuit Switch(config)#vtppassword cisco Switch(config)#vlan 10 Switch(config)#name student Switch(config-vlan)#exit Switch(config)#vlan 20 Switch(config)#name kafedra Switch(config-vlan)#exit Switch(config)#vlan 30 Switch(config-vlan)#name test Switch(config-vlan)#exit Switch(config)#interface fastEthernet 0/2 Switch(config-if-range)#switchport mode trunk
VTP client
Switch(config)#vtp version 2 Switch(config)#vtp mode client Switch(config)#vtp domain tuit Switch(config)#vtppassword cisco Switch(config)#interface fastEthernet 0/1 Switch(config-if)#switchport mode access Switch(config-if)#switchport access vlan 10 Switch (config-if) #exit Switch(config)#interface fastEthernet 0/2 Switch(config-if)#switchport mode access Switch(config-if)#switchport access vlan 20 Switch (config-if) #exit Switch(config)#interface fastEthernet 0/4



Switch#show vtp status

VTP Version

2

Configuration Revision

4

yiaximum VLANs supported locally

255

Humber of existing VLANs

8

VTP Operating Mode


Download 4,13 Mb.

Do'stlaringiz bilan baham:
1   ...   12   13   14   15   16   17   18   19   ...   72




Ma'lumotlar bazasi mualliflik huquqi bilan himoyalangan ©hozir.org 2024
ma'muriyatiga murojaat qiling

kiriting | ro'yxatdan o'tish
    Bosh sahifa
юртда тантана
Боғда битган
Бугун юртда
Эшитганлар жилманглар
Эшитмадим деманглар
битган бодомлар
Yangiariq tumani
qitish marakazi
Raqamli texnologiyalar
ilishida muhokamadan
tasdiqqa tavsiya
tavsiya etilgan
iqtisodiyot kafedrasi
steiermarkischen landesregierung
asarlaringizni yuboring
o'zingizning asarlaringizni
Iltimos faqat
faqat o'zingizning
steierm rkischen
landesregierung fachabteilung
rkischen landesregierung
hamshira loyihasi
loyihasi mavsum
faolyatining oqibatlari
asosiy adabiyotlar
fakulteti ahborot
ahborot havfsizligi
havfsizligi kafedrasi
fanidan bo’yicha
fakulteti iqtisodiyot
boshqaruv fakulteti
chiqarishda boshqaruv
ishlab chiqarishda
iqtisodiyot fakultet
multiservis tarmoqlari
fanidan asosiy
Uzbek fanidan
mavzulari potok
asosidagi multiservis
'aliyyil a'ziym
billahil 'aliyyil
illaa billahil
quvvata illaa
falah' deganida
Kompyuter savodxonligi
bo’yicha mustaqil
'alal falah'
Hayya 'alal
'alas soloh
Hayya 'alas
mavsum boyicha


yuklab olish