實驗目的:PC_3與PC_5屬於同一部門 PC_4與PC_6屬於同一部門
爲了通信的安全性,也爲了避免廣播報文氾濫,因此需要使用Vlan技術來隔離流量
同一Vlan之間才能進行互通 不同Vlan不互通即PC_3與PC_5互通,PC_4與PC_6互通且PC_3 PC_5與PC_4 PC_6不互相干擾
實施步驟:
1:創建Vlan100 Vlan200
2:把端口加入到對應Vlan
3:設置Vlan IP與掩碼
4:將交換機互聯端口改爲中繼
5:爲終端設置IP
S1命令:
Sy
Vlan 100
Vlan 200
Quit
In g 1/0/1
Port acc vlan 100
Quit
In g 1/0/2
Port acc vlan 200
Quit
In vlan 100
Ip add 192.168.100.1 255.255.255.0
Quit
In vlan 200
Ip add 192.168.200.1 255.255.255.0
quit
in g 1/0/3
port link-t t
port t per vlan 100 200
S2命令:
Sy
Vlan 100
Vlan 200
Quit
In g 1/0/1
Port acc vlan 100
Quit
In g 1/0/2
Port acc vlan 200
Quit
In vlan 100
Ip add 192.168.100.2 255.255.255.0
Quit
In vlan 200
Ip add 192.168.200.2 255.255.255.0
quit
in g 1/0/3
port link-t t
port t per vlan 100 200
![]
S1截圖
S2截圖
終端IP設置:
PC_3
IP:192.168.100.3
掩碼:255.255.255.0
網關:192.168.100.1
PC_4
IP:192.168.200.3
掩碼:255.255.255.0
網關:192.168.200.1
PC_5
IP:192.168.100.4
掩碼:255.255.255.0
網關:192.168.100.2
PC_6
IP:192.168.200.4
掩碼:255.255.255.0
網關:192.168.200.2
實驗結果:
Pc_3可以訪問pc_5 不能訪問pc_6
Pc_4可以訪問pc_6 不能訪問pc_5