Baik mari kita mulai membangun jaringan VLAN pertama kita. Pada skenario kita kali ini, VLAN
yang kita bangun terdiri dari :
- 6 buah Cisco Switch 2950 dan 1 Buah Cisco Router
- 15 Host yang masing-masing Switch terkoneksi dengan 3 host
Berikut Data lengkap Alokasi IP address dari Network VLAN yang kita bangun
Switch
name
Switch A
Switch B
Switch C
Switch D
Switch E
Main Switch
Hostname
Vlan
Members
A_2950
Host_A
Host_B
Host_C
B_2950
Host_D
Host_E
Host_F
C_2950
Host_G
Host_H
Host_I
D_2950
Host_J
Host_K
Host_L
E_2950
Host_M
Host_N
Host_O
Main_Switch
VLAN 1
VLAN 2
VLAN 4
VLAN 3
VLAN 1
VLAN 2
VLAN 5
VLAN 3
VLAN 1
VLAN 4
VLAN 2
VLAN 5
VLAN 1
VLAN 3
VLAN 4
VLAN 2
VLAN 1
VLAN 5
VLAN 3
VLAN 4
VLAN 1
Router
Sub
interface
0 / 0.1
0 / 0.2
0 / 0.3
0 / 0.4
0 / 0.5
VLAN Members
Marketing
Finance
Support
Operation
IP addres
Subnet
Mask
Gateway
172.16.10.3
192.168.20.2
192.168.40.3
192.168.30.3
172.16.10.4
192.168.20.4
192.168.50.3
192.168.30.4
172.16.10.5
192.168.40.4
192.168.20.5
192.168.50.4
172.16.10.6
192.168.30.5
192.168.40.5
192.168.20.6
172.16.10.7
192.168.50.5
192.168.30.6
192.168.40.6
172.16.10.2
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
172.16.10.1
192.168.20.1
192.168.40.1
192.168.30.1
172.16.10.1
192.168.20.1
192.168.50.1
192.168.30.1
172.16.10.1
192.168.40.1
192.168.20.1
192.168.50.1
172.16.10.1
192.168.30.1
192.168.40.1
192.168.20.1
172.16.10.1
192.168.50.1
192.168.30.1
192.168.40.1
172.16.10.1
VLAN Gateway
VLAN_Switch
VLAN 2
VLAN 3
VLAN 4
VLAN 5
VLAN ID
VLAN 2
VLAN 3
VLAN 4
VLAN 5
IP address
172.16.10.1
192.168.20.1
192.168.30.1
192.168.40.1
192.168.50.1
Subnet mask
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
255.255.255.0
Network
192.168.20.0
192.168.30.0
192.168.40.0
192.168.50.0
Sebenarnya konfigurasi VLAN cukup sederhana anda hanya mengikuti konfigurasi seperti dibawah
ini. tapi sekali lagi pemahaman mendasar tentang konsep yang berhubungan dengan VLAN seperti
trunking, protokol ISL atau IEE 802.1Q (dot1q) cukup membantu dalam trobleshooting ke depan
Mari kita mulai konfigurasi Network VLAN kita :
Gambar Topologi VLAN yang akan dibangun
Router>enable
% Incomplete command.
Router#configure terminal
% Incomplete command.
Router(config)#hostname Route_VLAN
Route_VLAN(config)#enable secret fery
Route_VLAN(config)#line console 0
Route_VLAN(config-line)#password fery
Route_VLAN(config-line)#login
Route_VLAN(config-line)#exit
Route_VLAN(config)#line vty 0 4
Route_VLAN(config-line)#password fery
Route_VLAN(config-line)#login
Route_VLAN(config-line)#exit
Route_VLAN(config)#service password-encryption
Route_VLAN(config)#interface fastethernet 0/0
Route_VLAN(config-if)#no ip address
Route_VLAN(config-if)#no shutdown
03:37:51 %LINK-3-UPDOWN: Interface Fastethernet0/0, changed state to up
03:37:51 %LINEPROTO-5-UPDOWN: Line protocol on Interface Fastethernet0/0, changed state
to up
Route_VLAN(config-if)#exit
Route_VLAN(config)#interface fastethernet 0/0.1
Route_VLAN(config-subif)#encapsulation dot1Q 1
Route_VLAN(config-subif)#ip address 172.16.10.1 255.255.255.0
Route_VLAN(config-subif)#exit
Route_VLAN(config)#interface fastethernet 0/0.2
Route_VLAN(config-subif)#encapsulation dot1Q 2
Route_VLAN(config-subif)#ip address 192.168.20.1 255.255.255.0
Route_VLAN(config-subif)#exit
Route_VLAN(config)#interface fastethernet 0/0.3
Route_VLAN(config-subif)#encapsulation dot1Q 3
Route_VLAN(config-subif)#ip address 192.168.30.1 255.255.255.0
Route_VLAN(config-subif)#exit
Route_VLAN(config)#interface fastethernet 0/0.4
Route_VLAN(config-subif)#encapsulation dot1Q 4
Route_VLAN(config-subif)#ip address 192.168.40.1 255.255.255.0
Route_VLAN(config-subif)#exit
Route_VLAN(config)#interface fastethernet 0/0.5
Route_VLAN(config-subif)#encapsulation dot1Q 5
Route_VLAN(config-subif)#ip address 192.168.50.1 255.255.255.0
Route_VLAN(config-subif)# --->CTRL+Z
Route_VLAN#copy running-config startup-config
Destination filename [startup-config]?
Building configuration...
[OK]
Route_VLAN#
switch>enable
% Incomplete command.
switch#configure terminal
% Incomplete command.
switch(config)#hostname 2950-MainSwitch
2950-MainSwitch(config)#enable secret fery
2950-MainSwitch(config)#line console 0
2950-MainSwitch(config-line)#password fery
2950-MainSwitch(config-line)#login
2950-MainSwitch(config-line)#exit
2950-MainSwitch(config)#line vty 0 15
2950-MainSwitch(config-line)#password fery
2950-MainSwitch(config-line)#login
2950-MainSwitch(config-line)#exit
2950-MainSwitch(config)#service password-encryption
2950-MainSwitch(config)#interface fastethernet 0/6
2950-MainSwitch(config-if)#switchport mode trunk
2950-MainSwitch(config-if)#description Trunking to Router-VLAN
2950-MainSwitch(config-if)#exit
2950-MainSwitch(config)#interface fastethernet 0/1
2950-MainSwitch(config-if)#switchport mode trunk
2950-MainSwitch(config-if)#description Trunking to A_2950
2950-MainSwitch(config-if)#exit
2950-MainSwitch(config)#interface fastethernet 0/2
VLAN 3 added:
Name: Finance
2950-MainSwitch(VLAN)#VLAN 4 name Support
VLAN 4 added:
Name: Support
2950-MainSwitch(VLAN)#VLAN 5 name Operation
VLAN 5 added:
Name: Operation
2950-MainSwitch(VLAN)#apply
2950-MainSwitch(VLAN)#exit
APPLY completed.
Exiting....
2950-MainSwitch#show VLAN
VLAN Name
Status Ports
default
active
Marketing
active
Finance
active
Support
active
Operation
active
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ -----1
enet 100001
1500 -
Ports
10
11
12
13
14
C_2950(config-if)#exit
C_2950(config)#interface fastethernet 0/7
C_2950(config-if)#switchport access VLAN 5
C_2950(config)#vtp mode client
Aetting device to VTP CLIENT mode.
C_2950(config)#vtp domain jetcoms
Changing VTP domain name from NULL to jetcoms
C_2950(config)#apply
C_2950(config)#exit
C_2950#copy running-config startup-config
Destination filename [startup-config]?
Building configuration...
[OK]
C_2950#
15
switch(config)#hostname D_2950
D_2950(config)#enable secret fery
D_2950(config)#line console 0
D_2950(config-line)#password fery
D_2950(config-line)#exit
D_2950(config)#line vty 0 15
D_2950(config-line)#password fery
D_2950(config-line)#exit
D_2950(config)#service password-encryption
D_2950(config)#interface VLAN 1
D_2950(config-if)#ip address 172.16.10.6 255.255.255.0
D_2950(config-if)#no shutdown
D_2950(config-if)#exit
D_2950(config)#ip default-gateway 172.16.10.1
D_2950(config)#interface fastethernet 0/1
D_2950(config-if)#description Trunking to MainSwitch_2950
D_2950(config-if)#exit
D_2950(config)#interface fastethernet 0/5
D_2950(config-if)#switchport access VLAN 3
D_2950(config-if)#exit
16
17
switch(config)#hostname E_2950
E_2950(config)#enable secret fery
E_2950(config)#line console 0
E_2950(config-line)#password fery
E_2950(config-line)#exit
E_2950(config)#line vty 0 15
E_2950(config-line)#password fery
E_2950(config-line)#exit
E_2950(config)#service password-encryption
E_2950(config)#interface VLAN 1
E_2950(config-if)#ip address 172.16.10.7 255.255.255.0
E_2950(config-if)#no shutdown
E_2950(config-if)#exit
E_2950(config)#ip default-gateway 172.16.10.1
E_2950(config)#interface fastethernet 0/1
E_2950(config-if)#description Trunking to MainSwitch_2950
E_2950(config-if)#exit
E_2950(config)#interface fastethernet 0/5
E_2950(config-if)#switchport access VLAN 5
E_2950(config-if)#exit
E_2950(config)#interface fastethernet 0/6
18
19
20
21
!
interface FastEthernet0/12
switchport mode access
!
interface VLAN1
ip address 172.16.10.3 255.255.255.0
no ip route-cache
!
ip default-gateway 172.16.10.1
ip http server
!
!
line con 0
password $1$u76B$IOFVJ7VxfVXYVpGDrFTcI0
login
line vty 0 15
password $1$u76B$IOFVJ7VxfVXYVpGDrFTcI0
login
!
end
22
A_2950#show VLAN
VLAN Name
Status Ports
default
active
Marketing
active
Fa0/5
Finance
active
Fa0/7
Support
active
Fa0/6
Operation
active
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ -----1
enet 100001
1500 -
enet 100002
1500 -
enet 100003
1500 -
enet 100004
1500 -
enet 100005
1500 -
Ports
A_2950#
23
B_2950#ping 172.16.10.1
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 172.16.10.1, timeout is 2 seconds:
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 4/4/4 ms
B_2950#show running-config
Building configuration...
Current configuration : 866 bytes
!
version 12.1
no service single-slot-reload-enable
no service pad
service timestamps debug uptime
service timestamps log uptime
service password-encryption
!
hostname B_2950
!
enable secret 5 $1$u76B$IOFVJ7VxfVXYVpGDrFTcI0
24
25
26
B_2950#show VLAN
VLAN Name
Status Ports
default
active
Marketing
active
Finance
active
Support
active
Operation
Fa0/5
Fa0/7
active
Fa0/6
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ -----1
enet 100001
1500 -
enet 100002
1500 -
enet 100003
1500 -
enet 100004
1500 -
enet 100005
1500 -
Ports
27
28
29
interface FastEthernet0/9
switchport mode access
!
interface FastEthernet0/10
switchport mode access
!
interface FastEthernet0/11
switchport mode access
!
interface FastEthernet0/12
switchport mode access
!
interface VLAN1
ip address 172.16.10.5 255.255.255.0
no ip route-cache
!
ip default-gateway 172.16.10.1
ip http server
!
!
line con 0
password fery
login
line vty 0 15
password fery
login
!
30
C_2950#show VLAN
VLAN Name
Status Ports
default
active
Marketing
active
Finance
active
Support
active
Operation
Fa0/6
Fa0/5
active
Fa0/7
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ -----1
enet 100001
1500 -
enet 100002
1500 -
enet 100003
1500 -
enet 100004
1500 -
enet 100005
1500 -
Ports
31
32
33
34
D_2950#show VLAN
VLAN Name
Status Ports
default
active
Marketing
active
Fa0/7
Finance
active
Fa0/5
Support
active
Fa0/6
Operation
active
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ -----1
enet 100001
1500 -
enet 100002
1500 -
enet 100003
1500 -
enet 100004
1500 -
enet 100005
1500 -
Ports
35
36
37
38
E_2950#show VLAN
VLAN Name
Status Ports
default
active
Marketing
active
Finance
active
Fa0/6
Support
active
Fa0/7
Operation
active
Fa0/5
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
enet 100001
1500 -
enet 100002
1500 -
enet 100003
1500 -
enet 100004
1500 -
enet 100005
1500 -
Ports
E_2950#
39
40
41
42
2950-MainSwitch#show VLAN
VLAN Name
Status Ports
default
active
Marketing
active
Finance
active
Support
active
Operation
active
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ -----1
enet 100001
1500 -
enet 100002
1500 -
enet 100003
1500 -
enet 100004
1500 -
enet 100005
1500 -
Ports
43
44
45
Route_VLAN#
46
Untuk verifikasi selanjutnya lakukan hal yang sama dengan di atas. Coba cek ping ke setiap host
pada network yang berbeda :
- Network 192.168.20.0
- Network 192.168.30.0
- Network 192.168.40.0
- Network 192.168.50.0
Selamat anda baru saja menjalani langkah demi langkah bagaimana melakukan
setting pada
Terima Kasih
Jakarta, 18-04-2007
Fery Junaedi
47