Inter-Vlan adalah suatu routing untuk mengkoneksikan segmen ip didalam satu vlan dengan segmen ip vlan yang lain. Karena switch layer 2 tidak dapat mengkoneksikan segmen ip yang berbeda dengan networknya, maka untuk mengkoneksikan segmen ip didalam satu vlan dengan vlan yang lain membutuhkan bantuan perangkat layer 3 yaitu Router, dengan cara membuat sub-interface di salah satu interface fisik Router atau dapat juga di sebut dengan Router On Stick.
Berikut topologi yang akan digunakan dalam tutorial ini.
Dalam tutorial ini saya menggunakan ios gns3 versi :
- Router : Cisco IOS Software, 7200 Software (C7200-ADVENTERPRISEK9-M), Version 12.4(15)T5, RELEASE SOFTWARE (fc4)
- Switch : Cisco IOS Software, 3700 Software (C3745-ADVENTERPRISEK9-M), Version 12.4(25d), RELEASE SOFTWARE (fc1)
1. Konfigurasi ROUTER
ROUTER#conf t
Enter configuration commands, one per line. End with CNTL/Z.
ROUTER(config)#int fa0/0
ROUTER(config-if)#no shutdown
ROUTER(config-subif)#exit
ROUTER(config)#int fa0/0.10
ROUTER(config-subif)#encapsulation dot1Q 10
ROUTER(config-subif)#ip add 192.168.10.254 255.255.255.0
ROUTER(config-subif)#no shutdown
ROUTER(config-subif)#exit
ROUTER(config)#int fa0/0.20
ROUTER(config-subif)#encapsulation dot1Q 20
ROUTER(config-subif)#ip add 192.168.20.254 255.255.255.0
ROUTER(config-subif)#no shutdown
ROUTER(config-subif)#exit
ROUTER(config)#int fa0/0.30
ROUTER(config-subif)#encapsulation dot1Q 30
ROUTER(config-subif)#ip add 192.168.30.254 255.255.255.0
ROUTER(config-subif)#no shutdown
ROUTER(config-subif)#exit
ROUTER(config-if)#end
ROUTER#wr
Building configuration...
[OK]
ROUTER#
2. Konfigurasi SWITCH
SWITCH#vlan database
SWITCH(vlan)#vlan 10 name vlan10
VLAN 10 added:
Name: vlan10
SWITCH(vlan)#vlan 20 name vlan20
VLAN 20 added:
Name: vlan20
SWITCH(vlan)#vlan 30 name vlan30
VLAN 30 added:
Name: vlan30
SWITCH(vlan)#exit
APPLY completed.
Exiting....
SWITCH#
SWITCH#conf t
Enter configuration commands, one per line. End with CNTL/Z.
SWITCH(config)#int fa1/0
SWITCH(config-if)#switchport mode trunk
SWITCH(config-if)#exit
SWITCH(config)#int fa1/1
SWITCH(config-if)#switchport mode access
SWITCH(config-if)#switchport access vlan 10
SWITCH(config-if)#exit
SWITCH(config)#int fa1/2
SWITCH(config-if)#switchport mode access
SWITCH(config-if)#switchport access vlan 20
SWITCH(config-if)#exit
SWITCH(config)#int fa1/3
SWITCH(config-if)#switchport mode access
SWITCH(config-if)#switchport access vlan 30
SWITCH(config-if)#end
SWITCH#wr
Building configuration...
[OK]
SWITCH#
3. Konfigurasi komputer client VLAN10
VLAN10> ip 192.168.10.1/24 192.168.10.254
Checking for duplicate address...
PC1 : 192.168.10.1 255.255.255.0 gateway 192.168.10.254
VLAN10> sh ip
NAME : VLAN10[1]
IP/MASK : 192.168.10.1/24
GATEWAY : 192.168.10.254
DNS :
MAC : 00:50:79:66:68:00
LPORT : 10018
RHOST:PORT : 127.0.0.1:10019
MTU: : 1500
VLAN10>
4. Konfigurasi komputer client VLAN20
VLAN20> ip 192.168.20.1/24 192.168.20.254
Checking for duplicate address...
PC1 : 192.168.20.1 255.255.255.0 gateway 192.168.20.254
VLAN20> sh ip
NAME : VLAN20[1]
IP/MASK : 192.168.20.1/24
GATEWAY : 192.168.20.254
DNS :
MAC : 00:50:79:66:68:01
LPORT : 10020
RHOST:PORT : 127.0.0.1:10021
MTU: : 1500
VLAN20>
5. Konfigurasi komputer client VLAN30
VLAN30> ip 192.168.30.1/24 192.168.30.254
Checking for duplicate address...
PC1 : 192.168.30.1 255.255.255.0 gateway 192.168.30.254
VLAN30> sh ip
NAME : VLAN30[1]
IP/MASK : 192.168.30.1/24
GATEWAY : 192.168.30.254
DNS :
MAC : 00:50:79:66:68:02
LPORT : 10022
RHOST:PORT : 127.0.0.1:10023
MTU: : 1500
VLAN30>
6. Verifikasi Konfigurasi ROUTER dan SWITCH
ROUTER#sh ip int br
Interface IP-Address OK? Method Status Protocol
FastEthernet0/0 unassigned YES unset up up
FastEthernet0/0.10 192.168.10.254 YES manual up up
FastEthernet0/0.20 192.168.20.254 YES manual up up
FastEthernet0/0.30 192.168.30.254 YES manual up up
ROUTER#
ROUTER#sh ip arp
Protocol Address Age (min) Hardware Addr Type Interface
Internet 192.168.10.1 76 0050.7966.6800 ARPA FastEthernet0/0.10
Internet 192.168.10.254 - ca01.0f54.0000 ARPA FastEthernet0/0.10
Internet 192.168.20.1 75 0050.7966.6801 ARPA FastEthernet0/0.20
Internet 192.168.20.254 - ca01.0f54.0000 ARPA FastEthernet0/0.20
Internet 192.168.30.1 75 0050.7966.6802 ARPA FastEthernet0/0.30
Internet 192.168.30.254 - ca01.0f54.0000 ARPA FastEthernet0/0.30
ROUTER#
SWITCH#sh vlan-switch
VLAN Name Status Ports
---- -------------------------------- --------- -------------------------------
1 default active Fa1/4, Fa1/5, Fa1/6, Fa1/7
Fa1/8, Fa1/9, Fa1/10, Fa1/11
Fa1/12, Fa1/13, Fa1/14, Fa1/15
10 vlan10 active Fa1/1
20 vlan20 active Fa1/2
30 vlan30 active Fa1/3
1002 fddi-default active
1003 token-ring-default active
1004 fddinet-default active
1005 trnet-default active
VLAN Type SAID MTU Parent RingNo BridgeNo Stp BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1 enet 100001 1500 - - - - - 1002 1003
10 enet 100010 1500 - - - - - 0 0
20 enet 100020 1500 - - - - - 0 0
30 enet 100030 1500 - - - - - 0 0
1002 fddi 101002 1500 - - - - - 1 1003
1003 tr 101003 1500 1005 0 - - srb 1 1002
1004 fdnet 101004 1500 - - 1 ibm - 0 0
VLAN Type SAID MTU Parent RingNo BridgeNo Stp BrdgMode Trans1 Trans2
---- ----- ---------- ----- ------ ------ -------- ---- -------- ------ ------
1005 trnet 101005 1500 - - 1 ibm - 0 0
SWITCH#
SWITCH#sh interface trunk
Port Mode Encapsulation Status Native vlan
Fa1/0 on 802.1q trunking 1
Port Vlans allowed on trunk
Fa1/0 1-1005
Port Vlans allowed and active in management domain
Fa1/0 1,10,20,30
Port Vlans in spanning tree forwarding state and not pruned
Fa1/0 1,10,20,30
SWITCH#
SWITCH#sh interface status
Port Name Status Vlan Duplex Speed Type
Fa1/0 connected trunk a-full a-100 10/100BaseTX
Fa1/1 connected 10 a-full a-100 10/100BaseTX
Fa1/2 connected 20 a-full a-100 10/100BaseTX
Fa1/3 connected 30 a-full a-100 10/100BaseTX
Fa1/4 notconnect 1 auto auto 10/100BaseTX
Fa1/5 notconnect 1 auto auto 10/100BaseTX
Fa1/6 notconnect 1 auto auto 10/100BaseTX
Fa1/7 notconnect 1 auto auto 10/100BaseTX
Fa1/8 notconnect 1 auto auto 10/100BaseTX
Fa1/9 notconnect 1 auto auto 10/100BaseTX
Fa1/10 notconnect 1 auto auto 10/100BaseTX
Fa1/11 notconnect 1 auto auto 10/100BaseTX
Fa1/12 notconnect 1 auto auto 10/100BaseTX
Fa1/13 notconnect 1 auto auto 10/100BaseTX
Fa1/14 notconnect 1 auto auto 10/100BaseTX
Fa1/15 notconnect 1 auto auto 10/100BaseTX
SWITCH#
7. Tes koneksi dari komputer client vlan 10 ke komputer client vlan20, dan vlan30.
VLAN10> ping 192.168.20.1
84 bytes from 192.168.20.1 icmp_seq=1 ttl=63 time=21.001 ms
84 bytes from 192.168.20.1 icmp_seq=2 ttl=63 time=12.000 ms
84 bytes from 192.168.20.1 icmp_seq=3 ttl=63 time=12.001 ms
84 bytes from 192.168.20.1 icmp_seq=4 ttl=63 time=20.002 ms
84 bytes from 192.168.20.1 icmp_seq=5 ttl=63 time=14.001 ms
VLAN10> ping 192.168.30.1
84 bytes from 192.168.30.1 icmp_seq=1 ttl=63 time=20.000 ms
84 bytes from 192.168.30.1 icmp_seq=2 ttl=63 time=20.002 ms
84 bytes from 192.168.30.1 icmp_seq=3 ttl=63 time=19.001 ms
84 bytes from 192.168.30.1 icmp_seq=4 ttl=63 time=20.001 ms
84 bytes from 192.168.30.1 icmp_seq=5 ttl=63 time=19.001 ms
VLAN10>
8. Tes koneksi dari komputer client vlan 20 ke komputer client vlan10, dan vlan30.
VLAN20> ping 192.168.10.1
84 bytes from 192.168.10.1 icmp_seq=1 ttl=63 time=11.000 ms
84 bytes from 192.168.10.1 icmp_seq=2 ttl=63 time=20.001 ms
84 bytes from 192.168.10.1 icmp_seq=3 ttl=63 time=20.001 ms
84 bytes from 192.168.10.1 icmp_seq=4 ttl=63 time=19.002 ms
84 bytes from 192.168.10.1 icmp_seq=5 ttl=63 time=19.001 ms
VLAN20> ping 192.168.30.1
84 bytes from 192.168.30.1 icmp_seq=1 ttl=63 time=20.000 ms
84 bytes from 192.168.30.1 icmp_seq=2 ttl=63 time=20.002 ms
84 bytes from 192.168.30.1 icmp_seq=3 ttl=63 time=20.000 ms
84 bytes from 192.168.30.1 icmp_seq=4 ttl=63 time=20.001 ms
84 bytes from 192.168.30.1 icmp_seq=5 ttl=63 time=12.001 ms
VLAN20>
9. Tes koneksi dari komputer client vlan 30 ke komputer client vlan20, dan vlan10.
VLAN20> ping 192.168.10.1
84 bytes from 192.168.10.1 icmp_seq=1 ttl=63 time=11.000 ms
84 bytes from 192.168.10.1 icmp_seq=2 ttl=63 time=20.001 ms
84 bytes from 192.168.10.1 icmp_seq=3 ttl=63 time=20.001 ms
84 bytes from 192.168.10.1 icmp_seq=4 ttl=63 time=19.002 ms
84 bytes from 192.168.10.1 icmp_seq=5 ttl=63 time=19.001 ms
VLAN20> ping 192.168.30.1
84 bytes from 192.168.30.1 icmp_seq=1 ttl=63 time=20.000 ms
84 bytes from 192.168.30.1 icmp_seq=2 ttl=63 time=20.002 ms
84 bytes from 192.168.30.1 icmp_seq=3 ttl=63 time=20.000 ms
84 bytes from 192.168.30.1 icmp_seq=4 ttl=63 time=20.001 ms
84 bytes from 192.168.30.1 icmp_seq=5 ttl=63 time=12.001 ms
VLAN20>
Terima kasih atas kunjunganya, semoga bermanfaat..
Bardzo fajnie napisane. Jestem pod wrażeniem i pozdrawiam.
ReplyDeleteThank you very much bro...
Delete