Академический Документы
Профессиональный Документы
Культура Документы
Sumrio
Lab 1:
Lab 2:
Lab 3:
Lab 4:
Lab 5:
Lab 6:
Lab 7:
Lab 8:
Lab 9:
Lab 10:
Logar no DmSwitch como usurio privilegiado usando o login e senha padro de fbrica
Digite um ponto de interrogao ? no prompt para ter acesso a lista de comandos disponveis
com uma breve descrio.
DmSwitch3000#[?]
clear
Clear functions
clock
Manage the system clock
configure
Configure parameters
copy
Copy configuration or image data
debug
Enable process debugging
diff
Compare configurations
erase
Erase flash data
exit
Exit session
help
Obtain a description of the interactive help system
light
Light LEDs to show unit information
no
Override parameters
ping
Send echo messages
reboot
Perform a warm restart
select
Select startup firmware and configuration
show
Show running system information
telnet
Open a telnet connection
terminal
Set terminal line parameters
traceroute Traceroute to destination
unit
Select the default unit to be used in the terminal
1.3
Ou digite duas vezes a tecla TAB para ver a lista em um formato simplificado.
DmSwitch3000#[TAB][TAB]
clear
debug
clock
diff
configure
erase
copy
exit
1.4
help
light
no
ping
reboot
select
show
telnet
terminal
traceroute
unit
DmSwitch3000#con[ENTER]
DmSwitch3000(config)#
1.5
DmSwitch3000#co[TAB][TAB]
configure copy
DmSwitch3000#con[TAB]
DmSwitch3000#configure[ENTER]
DmSwitch3000(config)#
1.6
DmSwitch3000(config)#hostname [?]
<text> This system's hostname
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 3 de 35
Para visualizar os comandos j digitados, pressione [SETA PARA CIMA] ou Ctrl+P para ver os
comandos comeando com os mais recentes, [SETA PARA BAIXO] ou Ctrl+N para retornar, ou o
comando show history para ver todos j digitados.
SWA(config)#show history
1: configure
2: hostname SWA
3: show history
SWA(config)#
1.8
A sada do comando show <parmetro>, pode ser alterada para apresentar somente as linhas que
se deseja visualizar. O | (pipe) usado para modificar a sada.
DmSwitch3000(config)#show
Information of Eth 1/1
Basic information:
Port type:
MAC address:
Configuration:
Name:
Port admin:
Speed-duplex:
Capabilities:
Flow-control:
MDIX:
Slow Protocols MAC:
LACP:
OAM:
Loopback Detection:
Link-Flap Detection:
Current status:
Link status:
Basic information:
Port type:
--More--
100TX
1.10 A opo de paginao do terminal pode ser desabilitada. Para desabilitar uma configurao em
qualquer nvel de operao, digite um no na frente do comando que ativa essa opo.
DmSwitch3000(config)#no terminal paging
1.11 Configurar o timeout do terminal, ou seja, o tempo em que o terminal ficar inativo antes de
realizar o logoff do usurio. Por padro no h configurao de timeout, portanto o usurio
permanecer logado indefinidamente mesmo sem atividade.
DmSwitch3000#terminal timeout [?]
15-3600 Timeout in seconds
DmSwitch3000#terminal timeout 3600
Lab 2: SNMP
2.1
ACCESS
AUTHENTICATION
PRIVACY
VERSION
2c
AUTHENTICATION
USER
PRIVACY
Lab 3: ACLs
3.1
Permitir que apenas os endereos IP que pertenam a rede 192.168.0.0/24 possam gerenciar o
DmSwitch, com exceo do acesso via HTTP, HTTPS e SNMP que somente ser gerenciado pelo
endereo IP 192.168.0.1
Criar o usurio privilegiado nmc com senha d474c0m. Criar o usurio normal operador sem
senha de acesso.
Lab 5: VLAN
5.1
Criar o range de vlans de 2 a 200 e configurar a vlan de gerncia em todos os switches com id de
vlan 100, nome MANAGEMENT, endereo ip 10.0.100.x/24 ( Se hostname for SW1, ento x=1; se
hostname for SW2, ento x=2, etc.) e ajustar as portas que fazem o entroncamento dos switches
como tagged para a vlan 100;
Nos switches de acesso (SW4-3000 e SW5-3000), configurar uma interface que pertencer a vlan
100 de gerncia e verificar se na tabela de vlans consta a interface que foi associada a vlan 100
Ajustar as configuraes de rede TCP/IP das mquinas que estaro nas interfaces pertencentes a vlan
100 com ip na faixa 10.0.100.x/24, conectar as mesmas nas interfaces e testar conectividade (ping e
telnet) com os switches e outras mquinas na mesma vlan.
Seguindo o mesmo passo, ajuste as configuraes das vlans 10, 20, 30, 110, 120 e 130 em todos os
switches e faa testes de conectividade entre os mesmos e outras estaes.
Vlan
Vlan
Vlan
Vlan
Vlan
Vlan
10 = faixa 10.0.10.x/24
20 = faixa 10.0.20.x/24
30 = faixa 10.0.30.x/24
110 = faixa 10.0.110.x/24
120 = faixa 10.0.120.x/24
130 = faixa 10.0.130.x/24
Lab 6: RSTP
6.1
Por default, os switches DATACOM trabalham com o modo RSTP habilitado, no entanto possvel
habilitar os diferentes modos STP atravs do comando abaixo:
6.2
SW1-4004(config)#spanning-tree mode
mstp Specify spanning-tree mode as
rstp Specify spanning-tree mode as
stp
Specify spanning-tree mode as
6.3
[?]
MSTP
RSTP
STP
Crie uma situao de looping de rede fechando o anel entre os switches SW1, SW2 e SW3 e
verifique o processo de eleio do switch raiz da topologia RSTP e a reao do protocolo RSTP ao
detectar a presena de um looping de rede. A sada dos comandos abaixo demonstra o status do
RSTP:
SW1-4004# sh spanning-tree
- Role (first letter):
Members:
Bridge info:
Root info:
Bridge times:
Root times:
Topology changes:
Unit 3
VLAN group 1
32769.0004df10cfed, priority: 32768 + ID 1
32769.0004df104486, port: Eth 3/3, cost: 20000
hello: 2, forward: 15, max age: 20, max hops: 20
hello: 2, forward: 15, max age: 20
total: 1, last: 891s
8 10 12
df rf
1 3
9 11 13
SW2-4001#sh spanning-tree
8 10 12
ad rf
1 3
9 11 13
SW3-3000#sh spanning-tree
Spanning-tree 1 (RSTP01) information
-------------------------------------------------------------------------------Members:
VLAN group 1
Bridge info:
32769.0004df104486, priority: 32768 + ID 1
Root info:
This is the Root Bridge for RSTP01
Bridge times:
hello: 2, forward: 15, max age: 20, max hops: 20
Root times:
hello: 2, forward: 15, max age: 20
Topology changes:
total: 1, last: 856s
Unit 1
8 10 12 14 16 18 20 22 24 26 28
df
df
7 9 11 13 15 17 19 21 23 25 27
OBS: A anlise dos comandos deixa claro que o SW3-3000 foi eleito o switch raiz
(Root Bridge) da topologia RSTP. O processo de eleio foi feito aps troca de
BPDUs entre os switches e a constatao de que o BID (Bridge Id = Priority/MAC)
do SW3-3000 o menor dentre todos. Pelo fato do SW2-3000 ser o Bridge Root da
topologia RSTP, todas as suas portas so designadas e encotram-se em modo
forwarding (df). Os outros switches iro eleger a porta de menor custo at o
Root Bridge como a porta root (rf). Como apenas uma porta designada pode existir
por segmento, a porta 1 do SW1-4004 foi eleita designated port (df), e a porta 1
do SW2-4001 foi eleita alternative port (ad), estando esta em modo discarding.
Dessa forma loopings no ocorrero.
6.4
Defina o SW1-4004 como o Root Bridge da topologia RSTP e verifique a reconstruo da mesma. A
sada dos comandos abaixo demonstra a nova topologia aps o SW1-4004 se tornar o Root Bridge:
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 12 de 35
8 10 12
df df
1 3
9 11 13
SW2-4001#sh spanning-tree
Spanning-tree 1 (RSTP01) information
-------------------------------------------------------------------------------Members:
VLAN group 1
Bridge info:
32769.0004df10d07d, priority: 32768 + ID 1
Root info:
24577.0004df10cfed, port: Eth 1/1, cost: 20000
Bridge times:
hello: 2, forward: 15, max age: 20, max hops: 20
Root times:
hello: 2, forward: 15, max age: 20
Topology changes:
total: 2, last: 46s
Unit 1
8 10 12
rf ad
1 3
9 11 13
SW3-3000#sh spannin
Spanning-tree 1 (RSTP01) information
-------------------------------------------------------------------------------Members:
VLAN group 1
Bridge info:
32769.0004df104486, priority: 32768 + ID 1
Root info:
24577.0004df10cfed, port: Eth 1/25, cost: 20000
Bridge times:
hello: 2, forward: 15, max age: 20, max hops: 20
Root times:
hello: 2, forward: 15, max age: 20
Topology changes:
total: 3, last: 12s
Unit 1
8 10 12 14 16 18 20 22 24 26 28
dd
rf
7 9 11 13 15 17 19 21 23 25 27
Lab 7: MSTP
7.1
Em todos os switches do anel (SW1, 2 e 3), crie dois grupos de vlans (vlan-group 1 e 2) que faro
parte das instncias MSTP 1 e 2. Aps criar os grupos, defina o range de vlans de 1 a 100 para o
grupo 1 e de 101 a 200 para o grupo 2:
1
1 vlan range 1 100
2
2 vlan range 101 200
Em todos os switches do anel, crie as instncias MSTP 1 e 2 e associe os grupos de vlans criados s
mesmas:
SWx(config)#spanning-tree
SWx(config)#spanning-tree
SWx(config)#!
SWx(config)#spanning-tree
SWx(config)#spanning-tree
1
1 vlan-group 1
2
2 vlan-group 2
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 14 de 35
7.3
Em todos switches do anel, defina o nome da regio como REGION_DATACOM, o nmero de reviso
para 5 e por ltimo habilite o modo MSTP:
Verifique o status da topologia MSTP. A sada dos comandos abaixo mostrar que o SW3-3000 foi
eleito o Root Bridge da topologia MSTP tanto para a IST1 quanto para a IST2, e portanto, todas as
suas portas encontram-se em modo forwarding (df). possvel comprovar tambm que os outros
switches calcularam a porta de menor custo (rf) para o Root Bridge tanto para a IST1 quanto para a
IST2 e bloquearam uma de suas portas (ad) para evitar loopings.
SW1-4004#show spanning-tree
- Role (first letter):
8 10 12
df rf
1 3
9 11 13
8 10 12
df rf
1 3
9 11 13
8 10 12
df rf
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 15 de 35
3 5
...
9 11 13
SW2-4001#show spanning-tree
- Role (first letter):
8 10 12
ad rf
1 3
9 11 13
8 10 12
ad rf
1 3
9 11 13
8 10 12
ad rf
1 3
9 11 13
...
SW3-3000#sh spanning-tree
Spanning-tree 0 (CIST) information
-------------------------------------------------------------------------------Bridge info:
32768.0004df104486, priority: 32768 + ID 0
Root info:
This is the Root Bridge for CIST
Regional root info:
This is the Regional Root Bridge for CIST
Bridge times:
hello: 2, forward: 15, max age: 20, max hops: 20
Root times:
hello: 2, forward: 15, max age: 20
Topology changes:
total: 28, last: 2539s
Unit 1
8 10 12 14 16 18 20 22 24 26 28
df
df
7 9 11 13 15 17 19 21 23 25 27
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 16 de 35
8 10 12 14 16 18 20 22 24 26 28
df
df
7 9 11 13 15 17 19 21 23 25 27
7.5
8 10 12 14 16 18 20 22 24 26 28
df
df
7 9 11 13 15 17 19 21 23 25 27
Habilite o debug stp e force a eleio do SW1-4004 como o Root Bridge da topologia MSTP para
as instncias 1 e 2.
SW1-4004#debug stp
SW1-4004#conf
SW1-4004(config)#spanning-tree 1 root primary
ou
SW1-4004(config)#spanning-tree 1 priority 24576
...
SW1-4004(config)#spanning-tree 2 root primary
Ou
SW1-4004(config)#spanning-tree 2 priority 24576
7.6
A sada dos commandos abaixo demostra as alteraes da topologia MSTP aps o processo de
reeleio do Root Bridge para as IST1 e IST2:
SW1-4004#sh spanning-tree
- Role (first letter):
8 10 12
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 17 de 35
df rf
1 3
9 11 13
8 10 12
df df
1 3
9 11 13
8 10 12
df df
1 3
9 11 13
SW2-4001#sh spanning-tree
- Role (first letter):
8 10 12
ad rf
1 3
9 11 13
8 10 12
rf ad
1 3
9 11 13
Members:
Bridge info:
Regional root info:
Topology changes:
Unit 1
VLAN group 2
32770.0004df10d07d, priority: 32768 + ID 2
24578.0004df10cfed, port: Eth 1/1, cost: 20000
total: 16, last: 62s
8 10 12
rf ad
1 3
9 11 13
SW3-3000#sh spanning-tree
Spanning-tree 0 (CIST) information
-------------------------------------------------------------------------------Bridge info:
32768.0004df104486, priority: 32768 + ID 0
Root info:
This is the Root Bridge for CIST
Regional root info:
This is the Regional Root Bridge for CIST
Bridge times:
hello: 2, forward: 15, max age: 20, max hops: 20
Root times:
hello: 2, forward: 15, max age: 20
Topology changes:
total: 28, last: 2796s
Unit 1
8 10 12 14 16 18 20 22 24 26 28
df
df
7 9 11 13 15 17 19 21 23 25 27
8 10 12 14 16 18 20 22 24 26 28
df
rf
7 9 11 13 15 17 19 21 23 25 27
8 10 12 14 16 18 20 22 24 26 28
df
rf
7 9 11 13 15 17 19 21 23 25 27
OBS: A anlise dos comandos deixa claro que o SW1-4004 passou a ser o Root
Bridge da topologia MSTP para as instncias 1 e 2. Observa-se tambm que tanto o
SW2-4001 quanto o SW3-3000 escolheram as portas 1 e 25 respectivamente como root
port para as instncias 1 e 2. Assim sendo, todo trfego das vlans mapeadas para
as instncias 1 e 2 nos dois switches supramencionados sair por essas portas.
7.7
Atravs da manipulao do custo at o Root Bridge da topologia MSTP em anel, defina que todo
trfego da instncia 1 nos switches dever seguir um percurso anti-horrio at o Root Bridge, ao
passo que o trfego da instncia 2 dever seguir um percurso horrio. Dessa forma, estaremos
distribuindo o trfego da instncias de vlans atravs do anel, no deixando nenhuma parte do
mesmo ociosa. A sada dos comandos abaixo demostra a manipulao dos custos e como a
topologia MSTP reagiu aps a mudana dos mesmos.
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 19 de 35
SW2-4001(config)#interface ethernet 1
SW2-4001(config-if-eth-1/1)#spanning-tree 2 cost 40001
SW2-4001#sh spanning-tree
- Role (first letter):
8 10 12
ad rf
1 3
9 11 13
8 10 12
rf df
1 3
9 11 13
8 10 12
ad rf
1 3
9 11 13
...
SW3-3000(config)#interface ethernet 25
SW3-3000(config-if-eth-1/25)#spanning-tree 1 cost 400001
SW3-3000#sh spanning-tree
Spanning-tree 0 (CIST) information
-------------------------------------------------------------------------------Bridge info:
32768.0004df104486, priority: 32768 + ID 0
Root info:
This is the Root Bridge for CIST
Regional root info:
This is the Regional Root Bridge for CIST
Bridge times:
hello: 2, forward: 15, max age: 20, max hops: 20
Root times:
hello: 2, forward: 15, max age: 20
Topology changes:
total: 28, last: 3099s
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 20 de 35
Unit 1
8 10 12 14 16 18 20 22 24 26 28
df
df
7 9 11 13 15 17 19 21 23 25 27
8 10 12 14 16 18 20 22 24 26 28
rf
ad
7 9 11 13 15 17 19 21 23 25 27
8 10 12 14 16 18 20 22 24 26 28
df
rf
7 9 11 13 15 17 19 21 23 25 27
OBS: A anlise dos comandos deixa claro que no SW2-4001 o trfego das vlans
mapeadas para a instncia 1 sair pela root port 1, ao passo que o trfego das
vlans mapeadas para a instncia 2 sair pela root port 3. J no SW3-3000, o
trfego das vlans mapeadas para a instncia 1 sair pela root port 26, ao passo
que o trfego das vlans mapeadas para a intncia 2 sair pela root port 25.
7.8
Aps este laboratrio, exclua as configuraes MSTP de todos os switches usando os comandos
abaixo e por ltimo, habilite o modo default RSTP.
SWx(config)#no
SWx(config)#no
SWx(config)#no
SWx(config)#no
SWx(config)#no
SWx(config)#no
SWx(config)#no
spanning-tree
spanning-tree
spanning-tree
spanning-tree
spanning-tree
vlan-group 1
vlan-group 2
mst name
mst revision
0
1
2
SWx(config)#vlan-group 1
SWx(config)#vlan-group 1 vlan all
SWx(config)#spanning-tree 1
SWx(config)#spanning-tree 1 vlan-group 1
SWx(config)#spanning-tree mode rstp
Lab 8: EAPS
8.1
Em todos os switches do anel EAPS, crie os grupos de vlans que sero protegidas pelos domnios
EAPS 1 e 2. O domnio EAPS 1 (DM1) ir fazer a proteo do vlan-group 1 onde estaro mapeadas
as vlans de 1 a 100 e, o domnio EAPS 2 (DM2) ir fazer a proteo do vlan-group 2 onde estaro
mapeadas as vlans de 101 a 200.
SWx(config)#vlan-group 1
SWx(config)#vlan-group 1 vlan range 1 100
SWx(config)#vlan-group 2
SWx(config)#vlan-group 2 vlan range 101 200
8.2
Em todos os switches do anel EAPS, crie as vlans de controles EAPS. A vlan de controle do domnio
EAPS 1 (DM1) ser a vlan 4001 e receber o nome CONTROL_DM1. A vlan de controle do domnio
EAPS 2 (DM2) ser a vlan 4002 e receber o nome CONTROL_DM2. No esquea de inserir como
tagged as vlans que circularo pelo anel nos links que entrocam o switches.
Em todos os switches do anel, crie os domnios EAPS 1 e 2 e, atribua o nome DM1 e DM2
respectivamente:
SWx(config)#eaps
SWx(config)#eaps
SWx(config)#eaps
SWx(config)#eaps
8.4
1
1 name DM1
2
2 name DM2
Defina o switch SW1-4004 como o MASTER do anel EAPS para os domnios 1 e 2 e, deixe os outros
switches no modo default TRANSIT:
Em todos os switches do anel, associe a vlan de controle 4001 ao anel domnio EAPS 1 e a vlan de
controle 4002 ao domnio EAPS 2:
Em todos os switches do anel, defina a porta primria e secundria do anel EAPS para os domnios
EAPS 1 e 2, de tal maneira que as portas primrias do domnio EAPS 1 sigam o sentido horrio, ao
passo que as portas primrias do domnio EAPS 2 sigam o sentido anti-horrio. Dessa forma,
estaremos fazendo a distribuio do trfego das vlans atravs de todo anel, no deixando partes
ociosas do mesmo.
1
1
2
2
port
port
port
port
SW3-3000(config)#eaps
SW3-3000(config)#eaps
SW3-3000(config)#eaps
SW3-3000(config)#eaps
1
1
2
2
port
port
port
port
primary ethernet 25
secondary ethernet 26
primary ethernet 26
secondary ethernet 25
8.8
SW1-4004#sh eaps
ID
Domain
State
M
Pri
Sec
Ctrl
Protected#
--- --------------- --------------- --- ----- ----- ------ ----------1
DM1
Complete
M
3/1
3/3
4001
1
2
DM2
Complete
M
3/3
3/1
4002
1
SW1-4004#sh eaps detail
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
...
1
DM1
Complete
Master
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 3/3, Thu Jan 1 10:10:31 1970
Eth3/1
Port status: Up
Eth3/3
Port status: Blocked
4001
1
2
DM2
Complete
Master
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 3/1, Thu Jan 1 10:10:31 1970
Eth3/3
Port status: Up
Eth3/1
Port status: Blocked
4002
2
SW2-4001#sh eaps
ID
Domain
State
M
Pri
Sec
Ctrl
Protected#
--- --------------- --------------- --- ----- ----- ------ ----------1
DM1
Links-Up
T
1/3
1/1
4001
1
2
DM2
Links-Up
T
1/1
1/3
4002
1
SW2-4001#sh eaps detail
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
1
DM1
Links-Up
Transit
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 1/1, Thu Jan 1 10:10:54 1970
Eth1/3
Port status: Up
Eth1/1
Port status: Up
4001
1
Domain ID:
Domain Name:
2
DM2
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 25 de 35
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
...
Links-Up
Transit
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 1/3, Thu Jan 1 10:10:54 1970
Eth1/1
Port status: Up
Eth1/3
Port status: Up
4002
2
SW3-3000#sh eaps
ID
Domain
State
M
Pri
Sec
Ctrl
Protected#
--- --------------- --------------- --- ----- ----- ------ ----------1
DM1
Links-Up
T
1/25 1/26 4001
1
2
DM2
Links-Up
T
1/26 1/25 4002
1
SW3-3000#sh eaps detail
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
1
DM1
Links-Up
Transit
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 1/26, Wed Jan 7 13:49:53 1970
Eth1/25
Port status: Up
Eth1/26
Port status: Up
4001
1
2
DM2
Links-Up
Transit
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 1/25, Wed Jan 7 13:49:53 1970
Eth1/26
Port status: Up
Eth1/25
Port status: Up
4002
2
OBS: Conforme a sada dos comandos, constatado que o status do anel est
completo (complete state)e todos os links esto funcionais (up).
8.10 Habilite a depurao do EAPS no SW1-4004 (MASTER) de modo a verificar a troca de mensagens de
controle (Type=HEALTH_CHECK) que iro garantir o status operacional do anel e em seguida
derrube a interface 3/1 (Porta primria do domnio EAPS 1 e secundria do domnio EAPS 2). Ser
observado que o status do anel passar para o modo failed no switch MASTER do anel EAPS
tanto para o domnio EAPS 1 quanto para o 2, embora a redundncia esteja garantida pelo caminho
do anel que no foi interrompido.
SW1-4004#debug eaps
...
SW1-4004(config)#interface ethernet 3/1
SW1-4004(config-if-eth-3/1)#shut
...
SW1-4004(config)#sh eaps
ID
Domain
State
M
Pri
Sec
Ctrl
Protected#
--- --------------- --------------- --- ----- ----- ------ ----------Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 26 de 35
1
2
DM1
DM2
Failed
Failed
M
M
3/1
3/3
3/3
3/1
4001
4002
1
1
2
DM2
Failed
Master
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 3/1, Thu Jan 1 10:22:06 1970
Eth3/3
Port status: Up
Eth3/1
Port status: Down
4002
2
SW2-4001#sh eaps
ID
Domain
State
M
Pri
Sec
Ctrl
Protected#
--- --------------- --------------- --- ----- ----- ------ ----------1
DM1
Links-Down
T
1/3
1/1
4001
1
2
DM2
Links-Down
T
1/1
1/3
4002
1
SW2-4001#sh eaps detail
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
...
1
DM1
Links-Down
Transit
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 1/1, Thu Jan 1 10:28:04 1970
Eth1/3
Port status: Up
Eth1/1
Port status: Down
4001
1
2
DM2
Links-Down
Transit
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 1/3, Thu Jan 1 10:28:29 1970
Eth1/1
Port status: Down
Eth1/3
Port status: Up
4002
2
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 27 de 35
SW3-3000#sh eaps
ID
Domain
State
M
Pri
Sec
Ctrl
Protected#
--- --------------- --------------- --- ----- ----- ------ ----------1
DM1
Links-Up
T
1/25 1/26 4001
1
2
DM2
Links-Up
T
1/26 1/25 4002
1
SW3-3000#sh eaps detail
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
1
DM1
Links-Up
Transit
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 1/26, Wed Jan 7 13:49:53 1970
Eth1/25
Port status: Up
Eth1/26
Port status: Up
4001
1
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
2
DM2
Links-Up
Transit
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 1/25, Wed Jan 7 13:49:53 1970
Eth1/26
Port status: Up
Eth1/25
Port status: Up
4002
2
9.1
Em todos os switches do cenrio de rede, crie a vlan 200 com o nome de METRO_TAG. A vlan 200
ser a Double tagging vlan. Em seguida, insira como tagged na vlan 200 as interfaces que
entroncam os switches do cenrio e habilite o modo vlan qinq globalmente.
SWx-400x#sh qinq
Port
Mode
TPID
QinQ Tag
Membership
---------------------------------------------------------3/ 1
Internal
0x8100
1
untagged
3/ 2
Internal
0x8100
1
untagged
3/ 3
Internal
0x8100
1
untagged
...
3/11
Internal
0x8100
1
untagged
3/12
Internal
0x8100
1
untagged
3/13
Internal
0x8100
1
untagged
SW4-3000#sh qinq
Port
Mode
TPID
QinQ Tag
Membership
------------------------------------------------------------1/ 1
External
0x8100
1
untagged
1/ 2
External
0x8100
1
untagged
1/ 3
External
0x8100
1
untagged
1/ 4
External
0x8100
1
untagged
1/ 5
External
0x8100
200
1/ 6
External
0x8100
1
untagged
...
1/25
Internal
0x8100
1
untagged
1/26
Internal
0x8100
1
untagged
1/27
Internal
0x8100
1
untagged
1/28
Internal
0x8100
1
untagged
SW5-3000#sh qinq
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 30 de 35
Port
Mode
TPID
QinQ Tag
Membership
------------------------------------------------------------1/ 1
External
0x8100
1
untagged
1/ 2
External
0x8100
1
untagged
1/ 3
External
0x8100
1
untagged
1/ 4
External
0x8100
1
untagged
1/ 5
External
0x8100
200
1/ 6
External
0x8100
1
untagged
...
1/25
Internal
0x8100
1
untagged
1/26
Internal
0x8100
1
untagged
1/27
Internal
0x8100
1
untagged
1/28
Internal
0x8100
1
untagged
9.4
Conecte uma estao com ip na faixa 10.0.200.x/24 na interface 5 dos switches SW4-3000 e SW53000 e, verifique a conectividade entre ambas usando o comando ping.
Lab 10:
Link Aggregation
10.1 No segmento do anel EAPS entre os switches SW1-4004 e SW2-4001 ser inserido outro link de tal
maneira que os dois links faro parte de uma nica interface port-channel, totalizando um canal
de 2Giga. Para tanto, crie a interface port-channel 1em ambos switches do segmento, atrelando as
interfaces 3/1 e 3/2 do SW1-4004 e as interfaces 1 e 2 do SW2/4001 mesma. Antes de configurar o
port-channel, derrube as interfaces que faro parte do mesmo e em seguida configure-o.
SW1-4004(config)#interface ethernet 3/1
SW1-4004(config-if-eth-3/1)#shut
SW1-4004(config-if-eth-3/1)#interface ethernet 3/2
SW1-4004(config-if-eth-3/2)#shut
SW1-4004(config-if-eth-3/2)#interface port-channel 1
SW1-4004(config-if-port-ch-1)#set-member ethernet 3/1
SW1-4004(config-if-port-ch-1)#set-member ethernet 3/2
SW2-4001(config)#interface ethernet range 1 2
SW2-4001(config-if-eth-1/1-to-1/2)#shut
SW2-4001(config)#interface port-channel 1
SW2-4001(config-if-port-ch-1)#set-member ethernet range 1 2
10.2 Ajuste as configuraes de portas primrias e secundrias dos domnios EAPS criados, uma vez que
o segmento do anel agora ser identificado pela interface port-channel 1 e no mais pelas
interfaces fsicas.
SW1-4004(config)#no eaps 1 port primary
SW1-4004(config)#eaps 1 port primary port-channel 1
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 32 de 35
Flow control:
MDIX:
Members:
Disabled
Normal
Eth1/1 to Eth1/2
10.4 Verifique o status do anel EAPS e observe que o segmento entre os switches SW1-4004 e SW2-4001
ser agora identificado pela interface port-channel 1.
SW1-4004#sh eaps
ID
Domain
State
M
Pri
Sec
Ctrl
Protected#
--- --------------- --------------- --- ----- ----- ------ ----------1
DM1
Complete
M
Ch1
3/3
4001
1
2
DM2
Complete
M
3/3
Ch1
4002
1
SW1-4004#sh eaps detail
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
...
1
DM1
Complete
Master
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 3/3, Thu Jan 1 02:32:36 1970
PortCh1
Port status: Up
Eth3/3
Port status: Blocked
4001
1
2
DM2
Complete
Master
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, PortCh 1, Thu Jan 1 02:32:36 1970
Eth3/3
Port status: Up
PortCh1
Port status: Blocked
4002
2
SW2-4001#sh eaps
ID
Domain
State
M
Pri
Sec
Ctrl
Protected#
--- --------------- --------------- --- ----- ----- ------ ----------1
DM1
Links-Up
T
1/3
Ch1
4001
1
2
DM2
Links-Up
T
Ch1
1/3
4002
1
SW2-4001#sh eaps detail
Domain ID:
Domain Name:
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
1
DM1
Links-Up
Transit
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, PortCh 1, Thu Jan 1 03:47:08 1970
Eth1/3
Port status: Up
PortCh1
Port status: Up
4001
1
Domain ID:
Domain Name:
2
DM2
Av. Frana, 735 - Porto Alegre, RS - 90230-220
Suporte Tcnico: 51 3358 0122
www.datacom-telematica.com.br
Pgina 34 de 35
State:
Mode:
Hello Timer interval:
Fail Timer interval:
Pre-forwarding Timer:
Last update from:
Primary port:
Secondary port:
Control VLAN ID:
Protected VLAN group IDs:
Links-Up
Transit
1 sec
3 sec
6 sec (learned)
Remaining:
0 sec
00:04:DF:10:98:93, Eth 1/3, Thu Jan 1 03:47:08 1970
PortCh1
Port status: Up
Eth1/3
Port status: Up
4002
2
10.5 No SW1-4004, derrube a interface 3/1 e verifique se o anel continuar completo (complete state).
Aps, derrube a interface 3/2 e verifique que o anel ser interrompido (failed state). Em ambas as
situaes, deixe trfego rodando entre as vlans criadas e verifique que a redundncia ir assegurar o
fluxo do mesmo.