Oct 12, 2004CS573: Network Protocols and Standards1 Virtual LANs Network Protocols and Standards Autumn 2004-2005.

Slides:



Advertisements
Similar presentations
© 2006 Cisco Systems, Inc. All rights reserved. ICND v2.3—2-1 Extending Switched Networks with Virtual LANs Introducing VLAN Operations.
Advertisements

Application Guide For Mesh AP – MAP-3120 How to setup VLAN for different services in MAP-3120? F/W:
VLANs and GVRP Curtis Simonson Bridge Functions Consortium InterOperability Lab July, 2000.
Sept 28, 2004CS573: Network Protocols and Standards D – Selective Multicast Network Protocols and Standards Autumn
802.1D – Selective Multicast
Oct 09, 2004CS573: Network Protocols and Standards1 GARP (Part 2) Network Protocols and Standards Autumn
Sept 23, 2004CS573: Network Protocols and Standards D – Expedited Traffic Network Protocols and Standards Autumn
Jan 01, 2008CS573: Network Protocols and Standards D – Selective Multicast Network Protocols and Standards Winter
VLANs (Virtual LANs) CS 158B Elaine Lim Allison Nham.
Internetworking Devices that connect networks are called Internetworking devices. A segment is a network which does not contain Internetworking devices.
Jan 10, 2008CS573: Network Protocols and Standards1 Virtual LANs Network Protocols and Standards Winter
1 25\10\2010 Unit-V Connecting LANs Unit – 5 Connecting DevicesConnecting Devices Backbone NetworksBackbone Networks Virtual LANsVirtual LANs.
Virtual LANs. VLAN introduction VLANs logically segment switched networks based on the functions, project teams, or applications of the organization regardless.
Connecting LANs, Backbone Networks, and Virtual LANs
Virtual LAN (VLAN) W.lilakiatsakun.
Group Management n Introduction n Internet Group Management Protocol (IGMP) n Multicast Listener Discovery (MLD) protocol.
Virtual LAN Design Switches also have enabled the creation of Virtual LANs (VLANs). VLANs provide greater opportunities to manage the flow of traffic on.
IEEE 802.1q - VLANs Nick Poorman.
Semester 3, v Chapter 3: Virtual LANs
VLAN Trunking Protocol (VTP)
15.1 Chapter 15 Connecting LANs, Backbone Networks, and Virtual LANs Copyright © The McGraw-Hill Companies, Inc. Permission required for reproduction or.
VLAN Suman Pandey. References D. Passmore, and J. Freeman, “The Virtual LAN Technology Report”, March, 1997 IEEE.
VLAN V irtual L ocal A rea N etwork VLAN Network performance is a key factor in the productivity of an organization. One of the technologies used to.
March th IETF - Prague1 TRILL Working Group From draft 03 to draft 04 Dinesh Dutt, Cisco Silvano Gai, Nuova Radia Perlman, Sun.
Chapter 8: Virtual LAN (VLAN)
Cisco 3 - LAN Perrine. J Page 110/20/2015 Chapter 8 VLAN VLAN: is a logical grouping grouped by: function department application VLAN configuration is.
© 2002, Cisco Systems, Inc. All rights reserved..
1 Kyung Hee University Chapter 15 Connecting LANs, Backbone Networks, and Virtual LANs.
15.1 Chapter 15 Connecting LANs, Backbone Networks, and Virtual LANs Copyright © The McGraw-Hill Companies, Inc. Permission required for reproduction or.
Computer Networks 15-1 Chapter 15. Connecting LANs, Backbone Networks, and Virtual LANs 15.1 Connecting devices 15.2 Backbone networks 15.3 Virtual LANs.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 9 Virtual Trunking Protocol.
Cisco S3C3 Virtual LANS. Why VLANs? You can define groupings of workstations even if separated by switches and on different LAN segments –They are one.
1 © 2003, Cisco Systems, Inc. All rights reserved. CCNA 3 v3.0 Module 8 Virtual LANs Cisco Networking Academy.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 VLANs LAN Switching and Wireless – Chapter 3.
Chapter 3 - VLANs. VLANs Logical grouping of devices or users Configuration done at switch via software Not standardized – proprietary software from vendor.
STORE AND FORWARD & CUT THROUGH FORWARD Switches can use different forwarding techniques— two of these are store-and-forward switching and cut-through.
15.1 Chapter 15 Connecting LANs, Backbone Networks, and Virtual LANs Copyright © The McGraw-Hill Companies, Inc. Permission required for reproduction or.
Switching Topic 2 VLANs.
McGraw-Hill©The McGraw-Hill Companies, Inc., 2004 Chapter 16 Connecting LANs, Backbone Networks, and Virtual LANs.
Virtual LAN (VLAN) W.lilakiatsakun. VLAN Overview (1) A VLAN allows a network administrator to create groups of logically networked devices that act as.
Virtual Local Area Networks (VLANs) Part II
Configuring VLAN Chapter 14 powered by DJ 1. Chapter Objectives At the end of this Chapter you will be able to:  Understand basic concept of VLAN  Configure.
Chapter 4 Version 1 Virtual LANs. Introduction By default, switches forward broadcasts, this means that all segments connected to a switch are in one.
W&L Page 1 CCNA CCNA Training 2.5 Describe how VLANs create logically separate networks and the need for routing between them Jose Luis.
1 VLANs Relates to Lab 6. Short module on basics of VLAN switching.
Chapter 16 Connecting LANs, Backbone Networks, and Virtual LANs
Ethernet Virtual LANs Hubs versus Switches –Hubs broadcast bits out all ports –Switches usually send a frame out a one port More fundamentally –In unicasting,
IEEE MEDIA INDEPENDENT HANDOVER DCN: Title: Use of MAC addresses in MIH protocol Date Submitted: June 19,
15.1 Chapter 15 Connecting LANs, Backbone Networks, and Virtual LANs Copyright © The McGraw-Hill Companies, Inc. Permission required for reproduction or.
LAN Switching Virtual LANs. Virtual LAN Concepts A LAN includes all devices in the same broadcast domain. A broadcast domain includes the set of all LAN-connected.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 VLANs.
Virtual Local Area Networks In Security By Mark Reed.
Ethernet Packet Filtering - Part1 Øyvind Holmeide Jean-Frédéric Gauvin 05/06/2014 by.
Virtual Local Area Networks (VLAN) Group 3 Shade Alabsa, Blayne Cohran, Betty Kretlow, Sayali Joshi, Siva Kalyan Chakravarthy.
Introduction to Computer Networks Virtual Bridged LANs (IEEE 802.1Q) All rights reserved. No part of this publication and file may be reproduced, stored.
© 2002, Cisco Systems, Inc. All rights reserved.
Virtual Local Area Networks or VLANs
HELLO WORLD!!! Run Project 2: WELCOME Subject: Virtual LAN’s
Instructor Materials Chapter 6: VLANs
Networking Devices.
Virtual Local Area Networks (VLANs) Part I
Chapter 17 Connecting Devices And Virtual LANs 17.# 1
Marc Holness Version May 2016
VLANs: Virtual Local Area Networks
Virtual LANs.
Routing and Switching Essentials v6.0
Network Virtualization
Chapter 16 Connecting LANs, Backbone Networks, and Virtual LANs
Virtual LAN VLAN Trunking Protocol and Inter-VLAN Routing
Presentation transcript:

Oct 12, 2004CS573: Network Protocols and Standards1 Virtual LANs Network Protocols and Standards Autumn

Oct 12, 2004CS573: Network Protocols and Standards2 VLANs Motivation Increased Bandwidth on LAN segments Larger LAN switches (more ports) Larger subnetworks Geographical scope Number of users Same bridged LAN (or extended LAN) capable of serving several logical groups of users Groups defined according to attributes Corporate divisions Higher Layer protocols Collection of servers they share, etc.

Oct 12, 2004CS573: Network Protocols and Standards3 Definition A virtual LAN (VLAN) is a collection of LAN segments and the stations/devices connected to them within a bridged LAN that has exactly the same properties of an independent LAN In a bridged LAN comprising several VLANs, traffic belonging to a VLAN is restricted from reaching users in other VLANs

Oct 12, 2004CS573: Network Protocols and Standards4 Advantages Flexibility in user locations and logical groups of stations Facilitating easy administration of: moves adds changes in group membership Restricting traffic on portion of network where stations belonging to a VLAN are present implying an increase in performance and in the level of security Providing priorities for Ethernet Goal: Compatibility with existing bridges and end-stations

Oct 12, 2004CS573: Network Protocols and Standards5 VLAN Tags Differentiation among traffic belonging to different VLANs is accomplished by the addition of VLAN tags (VLAN ID or VID) to frames Used by bridges to appropriately filter frames Figure 9.4 page 67 of 802.1Q USER PRIORITY CFIVID Bits CFI: Canonical Format Indicator VID: VLAN Identifier

Oct 12, 2004CS573: Network Protocols and Standards6 Tagged and Untagged Frames Legacy stations and bridges do not handle tags and are VLAN-unaware Interoperability of VLAN-aware and VLAN-unaware devices requires the ability to handle mixture of tagged and untagged frames

Oct 12, 2004CS573: Network Protocols and Standards7 VLAN Registration Static VLAN registration entries: explicitly configured by management action for a given VID specify for each port whether the registration for the VID is: Fixed (meaning “forward”) Forbidden (meaning “filter” or “do not forward”) Normal registration (by GVRP) specify for each port whether frames on that VLAN (VID) are to be tagged or untagged when forwarded through the port

Oct 12, 2004CS573: Network Protocols and Standards8 VLAN Registration Dynamic VLAN registration entries: VID of the LAN port map with a control element for each outbound port specifying whether the VLAN is registered on that port Uses GARP VLAN Registration Protocol (GVRP) to create and propagate dynamic VLAN registration entries

Oct 12, 2004CS573: Network Protocols and Standards9 GVRP Operation of GVRP defines a single attribute type – the VLAN ID (VID) attribute type What is the value of the attribute? A list containing VIDs

Oct 12, 2004CS573: Network Protocols and Standards10 Member Set and Untagged set for a VLAN The Member set consists of the set of Ports through which members of the VLAN can currently be reached Set of ports where frames will be forwarded The Untagged set consists of the set of ports through which frames that are transmitted shall be sent untagged Set of ports where frames will be forwarded only after removing the tags

Oct 12, 2004CS573: Network Protocols and Standards11 Example 1

Oct 12, 2004CS573: Network Protocols and Standards12 Example 2

Oct 12, 2004CS573: Network Protocols and Standards13 Ingress Rules Identify the VID associated with a frame If a VLAN tag exists, use the VID in the tag If a VLAN tag exists with VID = 0 or if a VLAN tag does not exist, use a pre-assigned Port VID (PVID) Default PVID = 1 If the Enable Ingress Filtering parameter is set, then frames are discarded if the Port is not in the member set Only a member will be able to send the messages. Compare this with Open Host Group Concept!

Oct 12, 2004CS573: Network Protocols and Standards14 Egress Rules Determine whether or not a frame is forwarded on a port take into account VLAN info A frame is filtered if: The transmission port is not in the member set for the VID (determined by the Ingress Rules) Port is in the untagged set and the bridge does not support the ability to translate from the canonical format to the format appropriate to the medium access method for the output port

Oct 12, 2004CS573: Network Protocols and Standards15 Learning Process Learning is done independently on each VLAN For each VLAN, the port through which particular end stations can be reached is determined Takes into account VID information (as determined by the Ingress Rules) If the Member Set for a VID is empty, an entry is not created in the Filtering Database The reason for this is that, in any case, you would not forward a frame on this port since it is not in the member set for this VID

Oct 12, 2004CS573: Network Protocols and Standards16 Example 3 In our example, it is easy to see that if D sends a message to C using VID = 2 in the Tag header then, the bridges B1 and B2 will have an entry in their filtering database for D saying that it is located respectively on ports 2 and 1 Nevertheless, as it has just been said, this entry is specific to this particular VID. So, if B sends a message to D using VID = 3 in the Tag header, the bridge B1 would not know where to forward the message and would send it to ports 1 and 2 (assuming that there is no entry for this VLAN) To prevent these extra forwardings, it is possible to define a FID (a set of VID on which the learning process is shared). We would have FID = 2, 3 in our case. This way, the entry in the filtering database will be shared for both VLANs

Oct 12, 2004CS573: Network Protocols and Standards17 Filtering Database Static and Dynamic entries FID Identifies a set of VLANs amongst which shared VLAN learning takes place Two different FIDs identify two sets of VLANs on which independent learning takes place Allocation of VIDs to FIDs Member Set Untagged Set

Oct 12, 2004CS573: Network Protocols and Standards18 Implications on GMRP In the absence of VLANs, GMRP data units are propagated throughout the entire spanning tree This is referred to as the Base Spanning Tree Context With VLANs, it is possible to allow GMRP registrations be made specific to a VLAN. This is simply accomplished by: Considering that within each participant, there is an applicant and a registrar per VLAN, identified by the VID of the VLAN Tagging GMRP PDUs with the VID corresponding to the VLAN to which they apply Applying the same Ingress Rule to received GMRP PDUs as to VLAN tagged frames Applying the same Egress Rule to GMRP PDUs to be transmitted on a port as to VLAN tagged frames

Oct 12, 2004CS573: Network Protocols and Standards19 Implications on GMRP The main implications of the above are: The registration information is not allowed to reach outside the subtree corresponding to the VLAN All VLAN members hear sources of multicast in that subtree Sources outside the VLAN subtree, however, may or may not be heard by VLAN members depending on the default group filtering behavior set at ports outside the VLAN