Halaman

Topology Network Vlan + DHCP + Static

        Iha implementasaun rede intranet, uzu VLAN (Virtual Local Area Network) hamutuk ho DHCP (Dynamic Host Configuration Protocol) no endereçu IP estátiku bele fó benefísiu boot.

        VLAN permite atu fó grupu hosi dispositivu sira iha rede iha rede lokal hosi maneira virtual. Hanesan ho ita hatene, VLAN bele kria segregasaun lógiku entre grupu husi dispositivu sira, mesmu se sira sei konektadu ba rede fiziku ida deit. Ho VLAN, ita bele estabelese rede ho seguransa Metin liután, konforma ita bele kria polítika sira ne'ebé limita komunikasaun entre VLAN sira.

        DHCP permite atu atribui automaticamente endereçu IP ba dispositivu sira iha rede. Prosesu ida ne'e hanesan atu hatene hosi DHCP server ne'ebé atribui endereçu IP ba dispositivu sira (hanesan cliente). Ho DHCP, ita bele simplifika hela administrasaun rede, hodi hakerek ekipamentu sira ho endereçu IP automátiku.

        Endereçu IP estátiku signifika atribuisaun manual hosi endereçu IP ba dispositivu. Ida ne'e hatudu katak ita aloka endereçu IP ba kada dispositivo deit no labele muda.

        Uzu endereçu IP estátiku bele fó kontrol kompletu ba endereçu IP sira iha rede, maibé bele sai laboriozu hodi mantén no atualiza endereçu IP sira manualmente no ita hanesan administrador fasil atu kontrola.

        Entaun, hodi implementa topolojia rede VLAN hamutuk ho DHCP no endereçu IP estátiku, ita bele halo hanesan tuir mai:

  1. Kriasaun VLANs: Define grupu sira ba dispositivu hanesan departamentu, unidade negósiu, ho seguransa ne'ebé sei utiliza VLAN.


  2. Kriasaun VLAN Interfaces: Kria interface VLAN ba kada VLAN sira iha router ne'ebé sei koneta ba rede interna. Interface VLAN sei atu hatudu ponto komeksaun ba kada VLAN ho roteador.


  3. Configurasaun DHCP Server: Kria DHCP server ne'ebé sei atribui endereçu IP ba dispositivu sira iha VLAN. Ita bele kria pool sira ba endereçu IP ne'ebé sei atribui ba kada VLAN.


  4. Kriasaun DHCP Relay (Se aplikavel): Se ita uza router ida ne'ebé iha VLAN sira ne'ebé sei liga ba DHCP server, presiza kria DHCP relay atu repasa pedido DHCP cliente sira ba servidor.


  5. Kriasaun Endereçu IP Estátiku (Se aplikavel): Atribui endereçu IP estátiku ba dispositivu sira ne'ebé presiza mantén endereçu IP permanente, hanesan servidores ka dispositivu sira ne'ebé uza servisu importante.


  6. Kriasaun VLAN Trunking (Se aplikavel): Se ita uza múltiplu switch sira ne'ebé konektadu ba roteador, presiza kriasaun VLAN trunking atu fasilita komunikasaun entre switch sira ho roteador ho mantein informasaun VLAN.

        Ho implementasaun ida ne'e, ita bele hetan kontrol kompletu ba maneira komunikasaun iha rede lokal, fó efisiénsia ba atribuisaun endereçu IP, no hatudu seguransa boot. Sa ita bele praktika ida-ne'e iha Cisco Packet Tracer hodi hatudu konseitu sira iha aksaun.



        Materia edisaun ida ne;e ita koko halo Konfigurasaun hanesan tuir mai ne;e :
Router DHCP, Server DHCP, Static IP  e Vlan, ita sei Halo topology ida deit, tuir Dezenho iha kraik ne;e;



 
1. Dezenho lai topology ida ne iha Cisco packet tracer,
2. Koloka ip tuir ida ida nia Network ka grupo ;

# Konfigurasaun iha Router 
#Router2

hostname Rtr002

!

ip dhcp pool vlan10

network 11.11.11.0 255.255.255.0

default-router 11.11.11.1

dns-server 40.40.40.2

ip dhcp pool vlan20

network 12.12.12.0 255.255.255.0

default-router 12.12.12.1

dns-server 40.40.40.2

ip dhcp pool vlan30

network 13.13.13.0 255.255.255.0

default-router 13.13.13.1

dns-server 40.40.40.2

!
!

interface Serial2/0

ip address 172.16.1.2 255.255.255.252

clock rate 2000000

!
!

interface GigabitEthernet6/0

ip address 30.30.30.1 255.255.255.240

duplex auto

speed auto

!

interface GigabitEthernet7/0

ip address 40.40.40.1 255.255.255.248

duplex auto

speed auto

!

interface GigabitEthernet8/0.1

encapsulation dot1Q 1 native

ip address 192.168.1.1 255.255.255.240

!

interface GigabitEthernet8/0.10

encapsulation dot1Q 10

ip address 11.11.11.1 255.255.255.0

!

interface GigabitEthernet8/0.20

encapsulation dot1Q 20

ip address 12.12.12.1 255.255.255.0

!

interface GigabitEthernet8/0.30

encapsulation dot1Q 30

ip address 13.13.13.1 255.255.255.0

!

ip classless

ip route 10.10.10.0 255.255.255.240 172.16.1.1

ip route 20.20.20.0 255.255.255.240 172.16.1.1

!

ip flow-export version 9

!

line con 0

!

line aux 0

!

line vty 0 4

login

!

!

end

============================================
# Router3
hostname Rtr001

!

ip dhcp pool Lantai-I

network 20.20.20.0 255.255.255.240

default-router 20.20.20.1

dns-server 40.40.40.2

ip dhcp pool lantai-III

network 20.20.20.0 255.255.255.240

default-router 20.20.20.1

dns-server 40.40.40.2

!

no ip cef

no ipv6 cef


interface Serial2/0

ip address 172.16.1.1 255.255.255.252

!


interface GigabitEthernet6/0

ip address 10.10.10.1 255.255.255.240

duplex auto

speed auto

!

interface GigabitEthernet7/0

ip address 20.20.20.1 255.255.255.240

duplex auto

speed auto

!

ip classless

ip route 11.11.11.0 255.255.255.0 172.16.1.2

ip route 12.12.12.0 255.255.255.0 172.16.1.2

ip route 13.13.13.0 255.255.255.0 172.16.1.2

ip route 30.30.30.0 255.255.255.240 172.16.1.2

ip route 40.40.40.0 255.255.255.248 172.16.1.2

!

ip flow-export version 9

!

!

line con 0

!

line aux 0

!

line vty 0 4

login

!

!

end
 ==================================
# Konfigurasaun iha Swt-Core
==================================

     Konfigurasaun ne'ebe  ita atu halo iha switch Core, diak liu switch port hirak neé   ita konfigura hotu   trunking ba vlan hirak  ne'ebe ita perpara iha ita nia LAN,  atu wainhira ita  halo ligasaun foun ruma ita hein liga fiu deit ou wainhira port ruma problema ita hein desliga husi port neé depois liga fali ba port seluk nuné hodi prevene down time labele kleur liu.



hostname swt-Core

spanning-tree mode pvst
!
interface FastEthernet0/1
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface FastEthernet0/2
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface FastEthernet0/3
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface FastEthernet0/4
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface FastEthernet0/5
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface FastEthernet0/6
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface FastEthernet0/7
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface FastEthernet0/8
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface FastEthernet0/9
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface FastEthernet0/10
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
!
interface FastEthernet0/24
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface GigabitEthernet0/1
!
interface GigabitEthernet0/2
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface Vlan1
ip address 192.168.1.2 255.255.255.240
!
line con 0
!
line vty 0 4
login
line vty 5 15
login
!
!
end


=========================================
Konfigurasasaun iha Switch Vlan10
========================================
hostname swt-vlan10
!
!
spanning-tree mode pvst
!
interface FastEthernet0/1
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/2
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/3
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/4
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/5
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/6
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/7
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/8
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/9
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/10
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/23
!
interface FastEthernet0/24
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface GigabitEthernet0/1
!
interface GigabitEthernet0/2
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface Vlan1
ip address 192.168.1.3 255.255.255.240
!
!
line con 0
!
line vty 0 4
login
line vty 5 15
login
!
!
end

=======================================
#Konfigurasaun iha Swt-Vlan20
================================
hostname swt-vlan20
!
spanning-tree mode pvst
!
interface FastEthernet0/1
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/2
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/3
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/4
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/5
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/6
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/7
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/8
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/9
switchport access vlan 10
switchport mode access
!
interface FastEthernet0/10
switchport access vlan 10
switchport mode access
!
interface GigabitEthernet0/1
!
interface GigabitEthernet0/2
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface Vlan1
no ip address
shutdown
!
!
line con 0
!
line vty 0 4
login
line vty 5 15
login
!
!
end

==================================
#Konfigursaun iha Swt-vlan30
 =================================
hostname swt-vlan30
!
!
spanning-tree mode pvst
!
interface FastEthernet0/1
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/2
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/3
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/4
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/5
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/6
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/7
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/8
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/9
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/10
switchport access vlan 30
switchport mode access
!
interface FastEthernet0/11
!
interface GigabitEthernet0/1
!
interface GigabitEthernet0/2
switchport trunk allowed vlan 1,10,20,30
switchport mode trunk
!
interface Vlan1
no ip address
shutdown
!
line con 0
!
line vty 0 4
login
line vty 5 15
login
!
!
end

 =======================================

        Atu fo hanoin  tan katak tuir dezenho ka topology iha leten ne'e,   konfigurasaun iha Router, switch, servidor, konfigura tuir port neébe liga ba ida-idak nia grupo,  karik iha failansu ruma entaun ita tenke chek diak lai nia ligasaun entre port ba port iha equipamento ida-idak tan nemak ita tenke verifa didiak.
Konfigurasaun kuando halo hotu ona entaun tenke koko test ping entre host ida ba network seluk, karik iha replay ba host ne;e entaun konfigurasaun neébe ita halo los.👏👏


===============================
 Area DHCP husi Servidor  network : 10.10.10.0/2
======================================
Konfigurasaun iha Router
interface GigabitEthernet7/0

ip address 20.20.20.1 255.255.255.240

duplex auto

speed auto
====================
Konfigurasaun iha Servidor :
1.  Loke Servidor  tau nia ip 



2. Atu activo DHCP hare tuir konfigurasaun ne tuir mai ne;e

3. keta haluha clik Save ==>>Click Add 


  1. Teste de Konfigurasaun:

    • Testa koneksaun ho ping entre host sira iha VLAN sira.
    • Se ping hetan resposta, signifika konfigurasaun ho suksesu.
    • Se la hetan resposta, tenke verifica ligasaun entre port ba port iha router no switch, no konfigurasaun VLAN, DHCP, no endereçu IP estátiku sira.

Liu husi prosesu ne'ebé hanesan ida, ita bele asegura katak rede intranet ho VLAN, DHCP, no endereçu IP estátiku halo ho efikas no estábel.

Tidak ada komentar:

Posting Komentar