跳到主要內容

Hyper-V設定VLAN

~~考題~~


題目如下:
Hyper-V的Server,裡面有2台VM(原本還有做AD Domain,DFS,DNS,在這裡就先略過),分別為Win2012與Win7,都是全新安裝的狀態 ,而Hyper-V的Server接在L2 Switch的FA 0/1,要做以下設定

*VM1: Windows 2012 R2(DHCP)
IP:192.168.199.100/24
GW:192.168.199.254
DHCP Server 發放IP範圍 192.168.200.30~192.168.200.100

*VM2: Windows7(自動取得IP)
要取得192.168.200.0/24網段的IP


Switch:
L3 Switch要做VLAN的Routing
反正最後就是要Win7可以取得IP,並且Ping到Server


解答:
L2 Switch設定:
新增VLAN 199,200
要確認Port FA 0/1, FA 0/24 有沒有形成Trunk

L3 switch設定: (中間有一些設定已略過)
Core-3750# show running-config
Building configuration...

Current configuration : 4114 bytes
!
-----------中間略過--------------------------
!
!
!
!
no aaa new-model
switch 1 provision ws-c3750g-24t
system mtu routing 1546
ip routing
no ip domain-lookup
!
vlan internal allocation policy ascending
!
!
!
!
interface GigabitEthernet1/0/1
 switchport trunk encapsulation dot1q
 switchport mode trunk
!
-----------中間略過--------------------------
!
interface Vlan1
 no ip address
!
interface Vlan199
 ip address 192.168.199.254 255.255.255.0
 ip helper-address 192.168.199.100
!
interface Vlan200
 ip address 192.168.200.254 255.255.255.0
 ip helper-address 192.168.199.100
!

Hyper-V 網路的設定:





在VM1的2012 Server的網路介面上,設定VLAN199

在VM2 Win7Pro的網路介面卡,設定VLAN200
VM1的DHCP設定就不說明了~



後記:
他題目的重點在於L3 Switch的Routing功能,還有Hyper-V裡面VM設定VLAN

留言

  1. 網誌管理員已經移除這則留言。

    回覆刪除
  2. If you're trying to lose kilograms then you need to try this brand new personalized keto plan.

    To produce this service, licenced nutritionists, fitness couches, and top chefs have united to provide keto meal plans that are useful, decent, price-efficient, and delicious.

    Since their grand opening in 2019, hundreds of clients have already remodeled their figure and well-being with the benefits a proper keto plan can provide.

    Speaking of benefits; in this link, you'll discover eight scientifically-certified ones provided by the keto plan.

    回覆刪除

張貼留言

這個網誌中的熱門文章

使用Cisco L3 Switch做VLAN的Routing

目標: 讓VLAN100與VLAN200的電腦透過L3 Swtich做VLAN的Routing,並且可以互相存取資源與上網,另外再使用Windows Server 2012配發VLAN100,VLAN200的IP Firewall: 使用ASUS AP當Firewall,並設兩條Static Route Switch: Core Switch為Cisco 3750切VLAN 10,VLAN100,VLAN200,VLAN10為預設的VLAN,VLAN100為Sales,VLAN200為RD Edge Switch為Cisco 3750與2950,其中2950為VLAN100,3750為VLAN200,如果要By Port切VLAN也可以,這裡只是為了方便說明,所以Edge Switch都直接設為單一VLAN Core Switch的設定 原本我只想Show Running-config其中比較重要的設定,後來想想還是全部列出,用紅色標記重要的設定 Gi 1/0/1接2950 Gi 1/0/2接3750 Gi 1/0/24接Router Core-3750#show running-config Building configuration... Current configuration : 2436 bytes ! version 12.2 no service pad service timestamps debug datetime msec service timestamps log datetime msec no service password-encryption ! hostname Core-3750 ! boot-start-marker boot-end-marker ! ! ! ! no aaa new-model switch 1 provision ws-c3750g-24t system mtu routing 1546 ip routing no ip domain-lookup ! ! ! ! ! ! ! ! spanning-tree mode pvst spanning-tree portfas

HP A5120 Switch 基本設定

沒用過HP的Switch,指令跟Cisco完全不同,花了一些時間熟悉~ 1.啟動Spanning-Tree,預設沒有開啟 (黑色粗體是我敲的指令) <HP> system-view System View: return to User View with Ctrl+Z. [HP] stp enable [HP] %Apr 26 12:03:59:826 2000 HP MSTP/6/MSTP_ENABLE: STP is now enabled on the device. %Apr 26 12:03:59:918 2000 HP MSTP/6/MSTP_FORWARDING: Instance 0's GigabitEthernet1/0/17 has been set to forwarding state. %Apr 26 12:04:00:068 2000 HP MSTP/6/MSTP_DETECTED_TC: Instance 0's GigabitEthernet1/0/17 detected a topology change. #Apr 26 12:04:00:208 2000 HP MSTP/1/PFWD: hwPortMstiStateForwarding: Instance 0's Port 0.9437200 has been set to forwarding state! 2.DHCP Snooping   (黑色粗體是我敲的指令) 假設我的DHCP Server接在24 Port,其他Port不允許有DHCP Server <HP> system-view System View: return to User View with Ctrl+Z. [HP] dhcp-snooping  DHCP Snooping is enabled. [HP] interface GigabitEthernet 1/0/24 [HP-GigabitEthernet1/0/24 ]dhcp-snooping trust 若是沒有Port 設成dhcp-snooping trust,那麼這台Switch就沒有Client可以從DHCP Serv

Cisco Switch 發生Loopback

User告知網路無法使用,看了Switch的狀況後,發現那個Port的狀態是Error Disable,接著又看了Switch的log Feb  8 12:14:14 TW: %DHCP_SNOOPING-5-DHCP_SNOOPING_UNTRUSTED_PORT: DHCP_SNOOPING drop message on untrusted port, message type: DHCPNAK, MAC sa: 2c56.dc86.xxxx Feb  8 12:15:49 TW: %DHCP_SNOOPING-5-DHCP_SNOOPING_UNTRUSTED_PORT: DHCP_SNOOPING drop message on untrusted port, message type: DHCPNAK, MAC sa: 2c56.dc86.xxxx Feb  8 12:18:00 TW: %ETHCNTR-3-LOOP_BACK_DETECTED: Keepalive packet loop-back detected on FastEthernet0/10. Feb  8 12:18:00 TW: %PM-4-ERR_DISABLE: loopback error detected on Fa0/10, putting Fa0/10 in err-disable state Feb  8 12:18:01 TW: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/10, changed state to down Feb  8 12:18:02 TW: %LINK-3-UPDOWN: Interface FastEthernet0/10, changed state to down 應該是User私接設備,除了造成Loopback之外,又在隨便發放IP....... 不過因為那個User比較特殊,先教育了一下之後,再把那個Port shutdown , no shutdown,接著把Recovery設了上去,下次如果再遇到相同狀況,10分鐘後會自動恢復 xxxxx# show errdisable detect