Académique Documents
Professionnel Documents
Culture Documents
Training for
CCNA,CCNP,
CCNA SECURITY
CCIP,
MPLS, BGP, IPV6
NETWORK+, SEURITY+
https://www.facebook.com/Networkingwanschool
ASHOK TAMBE
Copyright 2013 NETworkingWANschool
figure 1
In the figure 1, you see the standard topology used in this chapter, except
instead of the VLAN trunk that you are used to seeing between switches S1 and
S2, there is a separate link for each subnet.
There are four separate links connecting switches S1 and S2, leaving
three fewer ports to allocate to end-user devices.
Each time a new subnetwork is considered, a new link is needed for each
switch in the network.
In the figure 2, the network topology shows a VLAN trunk connecting switches
S1 and S2 with a single physical link.
figure 2
Trunking protocol
To allow a switchport that connect two switches to carry more than one
VLAN, it must be configure as a trunk.
A Trunk in Action
1) In the figure, PC1 on VLAN 10 and PC3 on VLAN 30 send
broadcast frames to switch S2.
Trunking protocol
IEEE 802.1Q uses an internal tagging mechanism that modifies the original frame ,
recalculates the CRC value for the entire frame with the tag, and inserts the new
CRC value in a new FCS.
ISL, in comparison, wraps the original frame and adds a second FCS that is built
only on the header information but does not modify the original frame FCS.
IEEE 802.1p redefined the three most significant bits in the 802.1Q tag to allow for
prioritization of the Layer 2 frame.
802.1Q trunks define a native VLAN for frames that are not tagged by default.
Switches transmit any Layer 2 frames from a native VLAN on the trunk port
untagged, as shown in Figure
The receiving switch forwards all untagged packets to its native VLAN.
The native VLAN is the default VLAN configuration of the port. When the port is not
trunking, the access VLAN configuration defines the native VLAN.
In the case of Cisco switches, the default native VLAN is VLAN 1, and you can
configure any other VLAN as the native VLAN.
It is important that the 802.1Q trunk port between two devices have the same native
VLAN configuration on both sides of the link. If there is a native VLAN mismatch on
an 802.1Q link, CDP (if used and functioning) issues a Native VLAN Mismatch error.
On select versions of Cisco IOS Software, CDP might not be transmitted or will be
automatically turned off if VLAN1 is disabled on the trunk.
Trunking operation
or 802.1Q
Non-Trunk Links
Trunk Link
Non-Trunk Links
Configuring Trunking
Configuring Trunking
Configuring Trunking
802.1Q only
ISL only
No Trunk
If SwitchA can only be a 802.1.Q trunk and SwitchB can only be an ISL trunk,
these two switches will not be able to form a trunk.
Configuring Trunking
802.1Q
only
If SwitchA can only be a 802.1.Q trunk and SwitchB can be either ISL or
8021.Q trunk, configure SwitchB to be 802.1Q.
On switches that support both 802.1Q and ISL, the switchport trunk
encapsulation command must be done BEFORE the switchport mode
trunk command.
Understanding DTP
Understanding DTP
Default:
dynamic desirable
This link will become a trunking link unless one of the ports is
configured with as an access link, I.e. switchport mode access
This figure shows the various DTP trunking modes and the results of the
different combinations.
Selecting the right combination on the two ends of the link is important, as
some combinations should not be used as they will have unexpected
results.
One combination that could result in traffic being blocked from transmitting
the link is if one interface is in access mode and the neighboring interface is
in trunk mode.
The default DTP mode is Cisco IOS and platform dependent. To determine
the current DTP mode, use the show dtp interface command.
Note that this command is not available on Catalyst 2950 and 3550
switches, but is available on Catalyst 2960 and 3560 switches.
General best practice is to set the interface to trunk and nonegotiate
when a trunk link is required. DTP should be turned off on links where
trunking is not intended.
Port
Fa0/11
Mode
desirable
Encapsulation
802.1q
Status
trunking
Native vlan
99
Port
Fa0/11
Port
Fa0/11
Port
Fa0/11
ASHOK TAMBE
Copyright 2013 NETworkingWANschool
ASHOK TAMBE
Copyright 2013 NETworkingWANschool
You need to reconfigure the trunk mode of the Fast Ethernet F0/3
ports on switches S1 and S3.
The top right output from switch S3 shows the commands used to
reconfigure the port and the results of the show interfaces trunk
command, revealing that interface F0/3 has been reconfigured as a
trunk.
The output from computer PC4 indicates that PC4 has regained
connectivity to the WEB/TFTP server found at IP address
172.17.10.30.
ASHOK TAMBE
Copyright 2013 NETworkingWANschool
ASHOK TAMBE
Copyright 2013 NETworkingWANschool
ASHOK TAMBE
Copyright 2013 NETworkingWANschool
Objective
Assign the PCs to their own virtual LAN (VLAN), and learn how to provide connectivity
between devices across a switched LAN using trunking. For this lab, your network
design will include two PC workstations, P1PC1 and P2PC2, and four switches,
P1ASW1, P1DSW1, P2ASW2, and P2DSW2. P1ASW1 and P2ASW2 are Access layer
switches. P1DSW1 and P2DSW2 are Distribution layer switches. The Access and
Distribution layers are two of the three layers in the Cisco three-layer hierarchical
network model, which also includes the Core layer.
Lab Topology
On each ASW, assign to VLAN 1 all the ports that connect to the DSWs.
2. On each DSW, assign to VLAN 1 all the ports that connect to the ASWs.
3. On each DSW, assign to VLAN 1 all the ports that connect to the other DSW.
4. On each ASW, turn on trunking for each port that connects to the DSWs. The ASWs are 2900
series switches, which use 802.1Q trunking by default.
5. On each DSW, turn on trunking for each port that connects to the ASWs. The DSWs are 3500
series switches; configure these switches to use 802.1Q trunking.
6. On each DSW, enable trunking for each port that connects to its neighboring DSW. Use 802.1Q
trunking.
7. Issue the show interfaces interface-id switchport command to verify the trunk confi guration.
8. Configure all trunk ports to carry only VLANs 1, 99, and 10021005.
9. Issue the show interfaces interface-id switchport command to verify that VLANs 1, 99, and 1002
1005 are allowed on all trunk ports.