The following steps should be used when configuring a VLAN on the EdgeXOS platform:

Similar documents
Lab 7.5.3: Troubleshooting the Wireless WRT300N

Chapter 5: Inter-VLAN Routing. Routing & Switching

Configuring VLANs. Understanding VLANs

Packet Tracer - Subnet Scenario 2 Topology

Lab 7.5.1: Basic Wireless Configuration

University of Jordan Faculty of Engineering & Technology Computer Engineering Department Advance Networks Laboratory Exp.4 Inter-VLAN Routing

Top-Down Network Design

Antonio Cianfrani. Virtual LAN (VLAN)

Configuring VLANs CHAPTER

Configuring Private VLANs

Cisco Networking Academy Curriculum - Semester Three Scope and Sequence

VLANs. LAN Switching and Wireless Chapter 3. Version Cisco Systems, Inc. All rights reserved. Cisco Public 1

Sybex CCENT Chapter 11: VLANs and Inter-VLAN Routing. Instructor & Todd Lammle

1. What type of network cable is used between a terminal and a console port? cross-over straight-through rollover patch cable 2.

Configuring VLANs. Understanding VLANs CHAPTER

Lab 6.4.2: Challenge Inter-VLAN Routing

Lab#01 - Introduction to Packet Tracer

Configuring Access and Trunk Interfaces

Packet Tracer - Subnet Scenario 2 (Instructor Version)

Switched Ethernet Virtual LANs

CCENT Study Guide. Chapter 11 VLANs and Inter-VLAN Routing

Configuring VLANs CHAPTER

Interconnecting Cisco Networking Devices Part1 ( ICND1) Exam.

VLANs Level 3 Unit 9 Computer Networks

Lab 5: Inter-VLANs Routing

Exam : Cisco Certified Network Associate(CCNA) Title : Version : DEMO

Chapter 6 Connecting Device

Implement Inter-VLAN Routing. LAN Switching and Wireless Chapter 6 Modified by Tony Chen 11/01/2008

Lab 1. CLI Navigation. Scenario. Initial Configuration for R1

Configuring Private VLANs

Configuring your VLAN. Presented by Gregory Laffoon

Lab Troubleshooting VTP Configuration

PT Activity 8.6.1: CCNA Skills Integration Challenge Topology Diagram

Introduction to the Packet Tracer Interface using a Hub Topology

Device Interface IP Address Subnet Mask Default Gateway

Configuring VLANs. Finding Feature Information. Prerequisites for VLANs

Configuring VLANs. Understanding VLANs CHAPTER

VLSM Static routing. Computer networks. Seminar 5

Question No : 1 Which three of these statements regarding 802.1Q trunking are correct? (Choose three.)

Switches running the LAN Base feature set support only static routing on SVIs.

Using Packet Tracer to Build a Network

Chapter 3: VLANs. Routing & Switching

Configuring BPDU tunneling

Lab 8.5.2: Troubleshooting Enterprise Networks 2

NETWORK LAB 2 Configuring Switch Desktop

VLAN Configuration. Understanding VLANs CHAPTER

PASS4TEST IT 인증시험덤프전문사이트

Cisco EXAM CCNA Cisco Certified Network Associate. Buy Full Product.

Lab 2.8.2: Challenge Static Route Configuration

Application Notes for Mirage Networks CounterPoint in an Avaya IP Telephony Infrastructure Issue 1.0

et Su cc es s in Passing Yourertification Exam at first

VLANs. Traditional Campus Networks. Performance Issues. Broadcast Issues. Bridges terminate collision domains

Lab - Troubleshooting VLAN Configurations (Instructor Version Optional Lab)

Configuring VLANs. Finding Feature Information. Prerequisites for VLANs

CCNA Cisco Certified Network Associate CCNA (v3.0)

Configuring VLANs. Understanding VLANs CHAPTER

VLANs. 2003, Cisco Systems, Inc. All rights reserved. 2-1

Exam : Cisco Title : Update : Demo. Cisco Certified Network Associate

VLANs. 2003, Cisco Systems, Inc. All rights reserved. 2-1

3. What could you use if you wanted to reduce unnecessary broadcast, multicast, and flooded unicast packets?


Lecture 9: Switched Ethernet Features: STP and VLANs

Table of Contents 1 VLAN Configuration 1-1

VLAN Configuration via CLI on 300/500 Series Managed Switches

Layer 2 Engineering VLANs

Lab 5.6.2: Challenge RIP Configuration

Configuring Private VLANs

Device Interface IP Address Subnet Mask Default Gateway. Ports Assignment Network

Chapter 3 Part 2 Switching and Bridging. Networking CS 3470, Section 1

Configuring VLANs. Understanding VLANs CHAPTER

Essential Elements of Medical Networks. D. J. McMahon rev cewood

Data Communications. Connecting Devices

HP0-Y49. Applying HP FlexNetwork Fundamentals.

Chapter 4 Configuring Switching

Configuring VLAN CHAPTER

Computer Science Department 2 nd semester- Lecture13

Lab Subnetting Network Topologies (Instructor Version)

LANs do not normally operate in isolation. They are connected to one another or to the Internet. To connect LANs, connecting devices are needed.

Troubleshooting LAN Switching Environments

Department Of Computer Science

Computer Networking. December 2004 CEN CN

Lab - Configuring VLANs and Trunking

Application Notes for Mirage Networks Endpoint Controller in an Avaya IP Telephony Infrastructure Issue 1.0

A specific IP with specific Ports and Protocols uses a dedicated WAN (Load Balance Policy).

Lab - Configuring VLANs and Trunking

Cisco CCNA Basic IP Routing Part I

Routing Between VLANs Overview

Lab 9.6.2: Challenge EIGRP Configuration Lab

Chapter 2. Switch Concepts and Configuration. Part I

Lab 6-1 Configuring a WLAN Controller

Deployment Modes Citrix Product Documentation docs.citrix.com January 3, 2019

Chapter 4 Lab 4-1, Inter-VLAN Routing with an External Router

Chapter 2 Review Questions

Configuring VLANs. Understanding VLANs CHAPTER

Routing Between VLANs Overview

Configuring VLANs. Understanding VLANs CHAPTER

Starting Interface Configuration (ASA 5505)

Top-Down Network Design

Gigabit Networks, VLANs & Wireless LANs

EdgeXOS Platform QuickStart Guide

Transcription:

EdgeXOS VLANs

VLAN Overview This document provides an overview of what a VLAN is and how it is configured on the EdgeXOS platform. Use the step-by-step guide below to configure a VLAN on the Edge appliance and see how it is configured with other devices. What Is A VLAN? IEEE 802.1Q (also known as VLAN Tagging) was a project in the IEEE 802 standards process to develop a mechanism to allow multiple bridged networks to transparently share the same physical network link without leakage of information between networks (i.e. trunking). IEEE 802.1Q is also the name of the standard issued by this process, and in common usage the name of the encapsulation protocol used to implement this mechanism over Ethernet networks. A virtual LAN, commonly known as a VLAN, is a group of hosts with a common set of requirements that communicate as if they were attached to the same wire, regardless of their physical location. A VLAN has the same attributes as a physical LAN, but it allows for end stations to be grouped together even if they are not located on the same LAN segment. Network reconfiguration can be done through software instead of physically relocating devices. A VLAN can be thought of as a broadcast domain that exists within a defined set of switches. Ports on a switch can be grouped into VLANs in order to limit traffic flooding since it is limited to ports belonging to that VLAN and its trunk ports. Any switch port can belong to a VLAN. Packets are forwarded and flooded only to stations in the same VLAN. Each VLAN is a logical network, and packets destined for stations that do not belong to the same VLAN must be forwarded through a routing device. Each VLAN can also run a separate instance of the spanning-tree protocol (STP). VLANs are created to provide the segmentation services traditionally provided by routers in LAN configurations. VLANs address issues such as scalability, security, and network management. Routers in VLAN topologies provide broadcast filtering, security, address summarization, and traffic flow management. By definition, switches may not bridge IP traffic between VLANs as it would violate the integrity of the VLAN broadcast domain.

How To Configure A VLAN: The following steps should be used when configuring a VLAN on the EdgeXOS platform: 1) Select the Interfaces tab This is the tab at the top of the web GUI titled Interfaces. 2) Select VLAN Tagging Navigate to the drop-down menu and select the VLAN Tagging menu option. 3) Enter the VLAN Network Type in the network address to be used for this VLAN. This must essentially be the gateway address which the VLAN will be using. 4) Subnet Mask Enter the correct subnet mask in / notation. Example: A Class C network is a /24. 5) Enter the VLAN Tag ID This is the identifier for this specific VLAN. All packets coming in using this VLAN will be tagged with this ID. The following screen demonstrates the initial VLAN configuration screen: Example: For example if we are terminating a VLAN using ID 2, and the network on this VLAN was using 10.0.0.0/24 with the gateway being 10.0.0.1.

How To Configure With A Cisco: Cisco conf to configure the port you want to use as the trunk: conf t interface FastEthernet0/2 (it doesn t have to be 0/2) duplex full speed 100 switchport trunk encapsulation dot1q switchport trunk allowed vlan 2 switchport mode trunk This conf will do the following: Set the port to full duplex mode; force the port to 100Mb mode; Set the port VLAN encapsulation to support 802.1Q; Tell the switch that the port is allowed to run VLANs through (even if you set just VLAN 2, Cisco will automatically add VLAN 1 and VLAN 1002-1005) to the port and set the port to trunk mode as well. Important: Trunk mode tells the switch that a number of VLANS can go through it. This last line is usually the mother of all screw-ups. If you forget that, you won't get your VLAN working. Now configure some other port to be used as the destination for the VLAN: conf t interface FastEthernet0/1 duplex half speed 10 switchport access vlan 2 end Here we tell the switch to force the port 1 to half duplex 10Mb mode (normal 10 Mb NIC) and only traffic from interface VLAN 2 can go through this port. also you can use a number of ports with VLAN 2, like a HUB) You should now connect some other device to port 1. Let it have an IP of 10.0.0.2 mask 255.255.255.0 GW 10.0.0.1 Then attempt a ping to the gateway to confirm that the VLAN is working. ping -s 100 10.0.0.1 ping -s 1476 10.0.0.1 If both pings work then everything should work fine, if the first ping works, but the second does not, contact XRoads Networks support.

Firewall Issues With A VLAN: The easiest way to setup VLANs is with no firewall enabled. However if you want security between VLAN networks, then the firewall must be enabled. The image below shows how the Firewall is enabled under the Firewall > L7 Firewall Control menu: If you want to allow all VLAN access out to the WAN, but control VLAN access between each other, then the following example is a good place to start. In this example we have two networks, 192.168.25.0/24 and 192.168.27.0/24 on VLANs 2 and 3 respectively. In order to block access between these VLANs we add the following rules (see image). We MUST use the WAN+ designator as the LAN designator is only used for the primary LAN interface, not the VLANs. Troubleshooting: Some users have reported issues when connecting to certain switches, if you are experiencing an issue, try setting the LAN interface to 0.0.0.0 and using a DMZ port for management, this has been found to fix certain switch issues.