æšãããçŸããã°ã©ãã
éèŠãªããããã£ãæã€ããªãŒ
ã«ãŒãããªãŒæ¥ç¶ã§ãã
å¿ ãã¹ãã³ããå¿ èŠãããããªãŒ
ãããã£ãŠããã±ããã¯ãã¹ãŠã®LANã«å°éã§ããŸãã
ãŸããã«ãŒããéžæããå¿ èŠããããŸãã
IDã«ãããéžåºãããŸãã
ã«ãŒãããã®æå°ã³ã¹ããã¹ããã¬ãŒã¹ãããŸãã
ããªãŒã§ã¯ããããã®ãã¹ãé 眮ãããŸãã
ã¡ãã·ã¥ã¯ç§ã®ãããªäººã ã«ãã£ãŠäœãããŠããŸãã
ãã®åŸãæ©ã¯ã¹ããã³ã°ããªãŒãèŠã€ããŸãã
-ã©ãã£ã¢ãžã§ã€ããŒã«ãã³
ãã¹ãŠã®åé¡
6.æå°ã®ãããã¯ãŒã¯ã ããŒã6 åçã«ãŒãã£ã³ã°
5.æå°ã®ãããã¯ãŒã¯ïŒããŒã5ã NATããã³ACL
4.æå°ã®ãããã¯ãŒã¯ïŒããŒã4ã STP
3.æå°ã®ãããã¯ãŒã¯ïŒããŒã3ã éçã«ãŒãã£ã³ã°
2.æå°ã®ãããã¯ãŒã¯ã ããŒã2 æŽæµ
1.æå°ã®ãããã¯ãŒã¯ã ããŒã1 Ciscoæ©åšã«æ¥ç¶ãã
0.æå°ã®ãããã¯ãŒã¯ã ããŒããŒãã èšç»äž
åå·ã§ã¯ãéçã«ãŒãã£ã³ã°ã«ã€ããŠèª¬æããŸããã 次ã«ãäžæ©èžã¿èŸŒãã§ããããã¯ãŒã¯ã®å®å®æ§ã®åé¡ã«ã€ããŠè°è«ããå¿ èŠããããŸãã
ãã€ãŠããLift mi UpããšããäŒç€Ÿã®å¯äžã®ãããã¯ãŒã¯ç®¡çè ã§ããããªããåæ¥åã«å°ãããšãçªç¶ãµãŒããŒãšã®æ¥ç¶ãèœã¡ããã£ã¬ã¯ã¿ãŒã¯ããã€ãã®éèŠãªæçŽãåãåããŸããã§ããã çããå ·äœçãªã¹ã©ãã·ã³ã°ã®åŸãåé¡ã®åå ãçªãæ¢ããŸãããäžæ³šæã«ããããµãŒããŒã«ãŒã å ã®ã¹ã€ããã«ã€ãªããå¯äžã®ã±ãŒãã«ãã³ãã¯ã¿ããå€ããŠããããšãããããŸããã 2åã§ä¿®æ£ã§ããããŸãã¯å®å šã«åé¿ã§ããå°ããªåé¡ããä»æã®åå ¥ãšæé·ã®æ©äŒã«å€§ããªåœ±é¿ãäžããŸããã
ããã§ãä»æ¥ç§ãã¡ã¯è°è«ããŠããŸãïŒ
- ãããŒããã£ã¹ãã¹ããŒã ã®åé¡
- STPãããã³ã«ã®æäœãšæ§æãããã³ãã®å€æŽïŒRSTPãMSTPãPVSTãPVST +ïŒ
- ã€ã³ã¿ãŒãã§ãŒã¹éçŽæè¡ãšãããã®éã®è² è·åæ£
- å®å®æ§ãšã»ãã¥ãªãã£ã®åé¡
- 誰ãã幞ãã«ãªãããã«æ¢åã®ãããã¯ãŒã¯ã®ã¹ããŒã ãå€æŽããæ¹æ³
OSIã¢ãã«ïŒã¹ã€ããïŒã®ç¬¬2ã¬ãã«ã§åäœããæ©åšã¯ã3ã€ã®æ©èœãå®è¡ããå¿ èŠããããŸããã¢ãã¬ã¹ã®èšæ¶ããã±ããã®ãªãã€ã¬ã¯ãïŒã¹ã€ããã³ã°ïŒããããã¯ãŒã¯ã®ã«ãŒãã«å¯Ÿããä¿è·ã§ãã åæ©èœããã€ã³ãã§åæããŸãããã
ã¢ãã¬ã¹ã®ä¿åãšãã±ããã®è»¢é ïŒåè¿°ããããã« ãåã¹ã€ããã«ã¯MACã¢ãã¬ã¹ãšããŒãããããã³ã°ããããã®ããŒãã«ïŒå¥åCAMããŒãã«-é£æ³ã¡ã¢ãªããŒãã«ïŒããããŸãã ã¹ã€ããã«æ¥ç¶ãããããã€ã¹ããããã¯ãŒã¯ã«ãã¬ãŒã ãéä¿¡ãããšãã¹ã€ããã¯éä¿¡è ã®MACã¢ãã¬ã¹ãšãã¬ãŒã ã®åä¿¡å ã®ããŒãã調ã¹ããã®æ å ±ãããŒãã«ã«è¿œå ããŸãã 次ã«ããã¬ãŒã ã«ã¢ãã¬ã¹ã瀺ãããŠããåä¿¡è ã«ãã¬ãŒã ãéä¿¡ããå¿ èŠããããŸãã çè«çã«ã¯ãåãCAMããŒãã«ãããã¬ãŒã ãéä¿¡ããããŒãã«é¢ããæ å ±ãååŸããŸãã ããããã¹ã€ããããªã³ã«ãªã£ãã°ããã§ïŒããŒãã«ã空ã§ïŒãã¬ã·ãŒããŒãã©ã®ããŒãã«æ¥ç¶ãããŠããã®ãããããªããšããŸãã ãã®å Žåãåä¿¡å ãé€ããã¹ãŠã®ããŒãã«åä¿¡ãã¬ãŒã ãéä¿¡ããŸãã ãã®ãã¬ãŒã ãåä¿¡ãããšããã¹ãŠã®ãšã³ãããã€ã¹ã¯å®å MACã¢ãã¬ã¹ã確èªããå®å ã§ãªãå Žåã¯ç Žæ£ããŸãã åä¿¡è ããã€ã¹ã¯éä¿¡è ã«å¿çããéä¿¡è ãã£ãŒã«ãã«ã¢ãã¬ã¹ãèšå®ããŸããã¹ã€ããã¯ãã®ãããªã¢ãã¬ã¹ããã®ãããªããŒãã«ããããšãæ¢ã«èªèããŠããïŒããŒãã«ã«ãšã³ããªãäœæããŸãïŒã次ã«ãã®ããã€ã¹ã«ã¢ãã¬ã¹æå®ããããã¬ãŒã ã転éããŸãããã®ããŒãã®ã¿ã CAMããŒãã«ã®å 容ã衚瀺ããã«ã¯ã show mac address-tableã³ãã³ãã䜿çšããŸãã ããŒãã«ã«æ ŒçŽããããšãæ å ±ã¯äžçããã«æ®ããŸãããã³ã³ãã³ãã¯çµ¶ããæŽæ°ãããç¹å®ã®MACã¢ãã¬ã¹ã300ç§éã¢ã¯ã»ã¹ãããªãå ŽåïŒããã©ã«ãïŒããã®ã¬ã³ãŒãã¯åé€ãããŸãã
ããã§ãã¹ãŠãæ確ã«ãªãã¯ãã§ãã ãããããªãã«ãŒãã«å¯Ÿããä¿è·ãªã®ã§ããããïŒ ãããŠãããã¯äœã«ã€ããŠã§ããïŒ
ãããŒããã£ã¹ãã¹ããŒã
å€ãã®å Žåãã¹ã€ããéã®æ¥ç¶ã®åé¡ïŒããŒãé害ãæç·ïŒã®å Žåã«ãããã¯ãŒã¯ã®å®å®æ§ã確ä¿ããã«ã¯ãåé·ãªã³ã¯ïŒè¿œå ã®æ¥ç¶ïŒã䜿çšããŸãã ã¢ã€ãã¢ã¯åçŽã§ããäœããã®çç±ã§ã¹ã€ããéã§1ã€ã®ãªã³ã¯ãæ©èœããªãå Žåã¯ãäºåã®ãªã³ã¯ã䜿çšããŸãã ãã¹ãŠãæ£ããããã«èŠããŸããããã®ãããªç¶æ³ãæ³åããŠãã ããã2ã€ã®ã¹ã€ããã2æ¬ã®ã¯ã€ã€ã§æ¥ç¶ãããŠããŸãïŒfa0 / 1ãšfa0 / 24ãæ¥ç¶ãããŠãããšããŸãããïŒã

圌ãã®ç æ£ã®1ã€-ã¯ãŒã¯ã¹ããŒã·ã§ã³ïŒããšãã°ãPC1ïŒãçªç¶ããããŒããã£ã¹ããã¬ãŒã ïŒããšãã°ãARPèŠæ±ïŒãéä¿¡ããè¡åã«é§ãããŸããã ãããŒããã£ã¹ããããšãåä¿¡å ã®ããŒããé€ããã¹ãŠã®ããŒãã«ãã«ã¡ãããå±ããŸãã

2çªç®ã®ã¹ã€ããã¯2ã€ã®ããŒãã§ãã¬ãŒã ãåä¿¡ãããããŒããã£ã¹ããããŠããããšã確èªãããã¹ãŠã®ããŒãã«éä¿¡ããŸãããåä¿¡ããããŒãã«æ»ããŸãïŒfa0 / 24ããã®ãã¬ãŒã ã¯fa0 / 1ã«éä¿¡ããããã®éãåæ§ã§ãïŒã

æåã®ã¹ã€ããã¯ãŸã£ããåãããšãè¡ããŸãããã®çµæããããŒããã£ã¹ãã¹ããŒã ãçºçãããããã¯ãŒã¯ãå³å¯ã«ãããã¯ããŸããããã¯ãã¹ã€ãããäºãã«åããã¬ãŒã ãéä¿¡ããã ãã§ããããã§ãã

ã©ãããã°ãããåé¿ã§ããŸããïŒ çµå±ã®ãšãããäžæ¹ã§ã¯ãããã¯ãŒã¯å ã«ã¹ããŒã ãå¿ èŠã§ã¯ãªããä»æ¹ã§ã¯åé·æ¥ç¶ã®å©ããåããŠãã©ãŒã«ããã¬ã©ã³ã¹ãåäžããããã®ã§ããããïŒ ããã¯ãSTPïŒã¹ããã³ã°ããªãŒãããã³ã«ïŒãå©ãã«ãªãå Žæã§ãã
STP
STPã®äž»ãªç®çã¯ã第2ã¬ãã«ã§ã«ãŒããçºçããã®ãé²ãããšã§ãã ã©ããã£ãŠããã®ïŒ ã¯ããå¿ èŠã«ãªããŸã§ãã¹ãŠã®åé·ãªã³ã¯ãåãåããŸãã ããã§å€ãã®è³ªåãããã«çºçããŸãïŒ2ã€ïŒãŸãã¯3ã€ãŸãã¯4ã€ïŒã®ãªã³ã¯ã¯åãèœãšãããŸããïŒ ã¡ã€ã³ãªã³ã¯ãèœã¡ãããšãå€æããæ¹æ³ãšãã¹ãã¢ãå«ããæéã§ãã ãããã¯ãŒã¯ã§ã«ãŒãã圢æãããããšãã©ã®ããã«ç解ããŸããïŒ ãããã®è³ªåã«çããã«ã¯ãSTPã®ä»çµã¿ãç解ããå¿ èŠããããŸãã
STPã¯ã¹ããã³ã°ããªãŒã¢ã«ãŽãªãºã ïŒSTAïŒã䜿çšããŸãããã®çµæã¯ãããªãŒåœ¢åŒã®ã°ã©ãã§ãïŒæ¥ç¶ããã åçŽãªã«ãŒããªãïŒ
ã¹ã€ããã¯ãç¹å¥ãªããã±ãŒãžã䜿çšããŠãã¹ã€ããéã§æ å ±ã亀æããŸããããããBPDUïŒBridge Protocol Data UnitsïŒã§ãã BPDUã«ã¯ãæ§æBPDUãšãããã¯ãAAAãããããžãå€æŽãããŸããïŒãTCNïŒããããžå€æŽéç¥BPDUïŒã®2çš®é¡ããããŸãã åè ã¯ã«ãŒãã¹ã€ããã«ãã£ãŠå®æçã«é åžããïŒä»ã®äººã«ãã£ãŠäžç¶ããïŒãããããžã®æ§ç¯ã«äœ¿çšãããŸããåŸè ã¯ãååã瀺ããšããããããã¯ãŒã¯ããããžã®å€æŽïŒã€ãŸããã¹ã€ããã®æ¥ç¶/åæïŒã®å Žåã«éä¿¡ãããŸãã æ§æBPDUã«ã¯ããã€ãã®ãã£ãŒã«ããå«ãŸããŠããŸããæãéèŠãªãã®ã«çŠç¹ãåœãŠãŸãã
- éä¿¡è IDïŒããªããžIDïŒ
- ã«ãŒãããªããžID
- ãã±ããã®éä¿¡å ããŒãã®èå¥åïŒããŒãIDïŒ
- ã«ãŒãã¹ã€ãããžã®ã«ãŒãã®ã³ã¹ãïŒã«ãŒããã¹ã³ã¹ãïŒ
ããããã¹ãŠã§ããããªããããå¿ èŠãªã®ããããå°ã詳ãã説æããŸãã ããã€ã¹ã¯é£äººãç¥ããªãããç¥ããããªãã®ã§ãäºããšã®é¢ä¿ïŒé£æ¥/è¿é£ïŒã確ç«ããŸããã ãã¹ãŠã®åäœããŒããããã«ããã£ã¹ãã€ãŒãµãããã¢ãã¬ã¹01-80-c2-00-00-00 ïŒããã©ã«ãã§ã¯2ç§ããšïŒã«BPDUãéä¿¡ããSTPãæå¹ã«ãªã£ãŠãããã¹ãŠã®ã¹ã€ããããªãã¹ã³ããŸãã
ããã§ã¯ãã«ãŒãã®ãªãããããžãŒã¯ã©ã®ããã«åœ¢æãããã®ã§ããããïŒ
æåã«ãããããã«ãŒãããªããžãéžæãããŸãã ããã¯ãSTPãåç §ãã€ã³ãããããã¯ãŒã¯ã®äžå¿ãšèŠãªãããã€ã¹ã§ãã STPããªãŒå šäœãããã«åæããŸãã éžæã¯ãã¹ã€ããèå¥åïŒããªããžIDïŒãªã©ã®æŠå¿µã«åºã¥ããŠããŸãã ããªããžIDã¯ãããªããžãã©ã€ãªãªãã£ïŒåªå é äœã0ã65535ãããã©ã«ã32768 + vlançªå·ãŸãã¯ãããã³ã«å®è£ ã«å¿ããMSTPã€ã³ã¹ã¿ã³ã¹ïŒãããã³ããã€ã¹ã®MACã¢ãã¬ã¹ã§æ§æããã8ãã€ãã®æ°å€ã§ãã éžåºã®éå§æã«ãåã¹ã€ããã¯ããèªäœãã«ãŒããšèŠãªããŸããããã¯ãBPDUã䜿çšããŠä»ã®å šå¡ã宣èšãããã®ã§ãã«ãŒãã¹ã€ããã®IDãšããŠèå¥åãæ瀺ããŸãã ãã ããBridge IDãããå°ããBPDUãåä¿¡ããå Žåã圌ã¯èªåã®ããšãèªæ ¢ããã®ããããåä¿¡ããBridge IDãã«ãŒããšããŠå¿ å®ã«çºè¡šããŸãã ãã®çµæãã«ãŒãã¯ããªããžIDãæå°ã®ã¹ã€ããã«ãªããŸãã
ãã®ã¢ãããŒãã¯ãããªãæ·±å»ãªåé¡ãåŒãèµ·ãããŸãã å®éã«ã¯ãåãåªå é äœå€ïŒããã³äœãå€æŽããªãå Žåã¯çããïŒã§ãæãå€ãã¹ã€ãããã«ãŒãã¹ã€ãããšããŠéžæãããŸããããã¯ãã±ã·ã®ã¢ãã¬ã¹ãé 次ãããã¯ã·ã§ã³ã«ç»é²ããããããã±ã·ãå°ããã»ã©ããã€ã¹ãå€ãïŒåœç¶ãæã£ãŠããå ŽåïŒ 1ã€ã®ãã³ããŒã®ãã¹ãŠã®æ©åšïŒã ãã¡ãããããã¯ãããã¯ãŒã¯ããã©ãŒãã³ã¹ã®äœäžã«ã€ãªãããŸããå€ãããã€ã¹ã¯ååãšããŠææªã®ããã©ãŒãã³ã¹ãæã£ãŠããããã§ãã ãã®ãããã³ã«ã®åäœã¯ãå®éã®éšåã§ãããã«ã€ããŠãç®çã®ã«ãŒãã¹ã€ããã«æåã§åªå 床ã®å€ãèšå®ããããšã«ãããæå¶ããå¿ èŠããããŸãã
ããŒãã®åœ¹å²
ã¹ã€ãããideã枬å®ããã«ãŒãããªããžãéžæããåŸãä»ã®åã¹ã€ããã¯ãã«ãŒãã¹ã€ããã«ã€ãªããããŒãã1ã€ã ãèŠã€ããå¿ èŠããããŸãã ãã®ããŒãã¯ã«ãŒãããŒããšåŒã°ããŸã ã ã©ã®ããŒããæé©ã«äœ¿çšãããããç解ããããã«ãåéã«ãŒãã¹ã€ãããåããŒãããã«ãŒãã¹ã€ãããžã®ã«ãŒãã®ã³ã¹ãã決å®ããŸãã ãã®ã³ã¹ãã¯ãã«ãŒãã¹ã€ããã«å°éããããã«ãã¬ãŒã ãééããå¿ èŠããããã¹ãŠã®ãªã³ã¯ã®ã³ã¹ãã®åèšã«ãã£ãŠæ±ºãŸããŸãã åæ§ã«ããªã³ã¯ã®ã³ã¹ãã¯ãåã«é床ã«ãã£ãŠæ±ºãŸããŸãïŒé床ãéãã»ã©ãã³ã¹ãã¯äœããªããŸãïŒã ã«ãŒãã®ã³ã¹ãã決å®ããããã»ã¹ã¯ãBPDUã®ãã«ãŒããã¹ã³ã¹ãããã£ãŒã«ãã«é¢é£ä»ãããã次ã®ããã«é²ã¿ãŸãã
- ã«ãŒãã¹ã€ããã¯ãã«ãŒããã¹ã³ã¹ããã£ãŒã«ãããŒãã®BPDUãéä¿¡ããŸã
- æãè¿ãã¹ã€ããã¯ãBPDUãæ¥ãããŒãã®é床ã調ã¹ãè¡šã«åŸã£ãŠå€ãè¿œå ããŸã
ããŒãé床 STPã³ã¹ãïŒ802.1dïŒ 10 Mbps 100 100 Mbps 19 1 gbps 4 10 gbps 2 - ããã«ããã®2çªç®ã®ã¹ã€ããã¯ããã®BPDUãããŠã³ã¹ããªãŒã ã¹ã€ããã«éä¿¡ããŸãããæ°ããã«ãŒããã¹ã³ã¹ãå€ã䜿çšããŠãããã«ãã§ãŒã³ãäžã£ãŠãããŸãã
åäžã®ã³ã¹ããããå ŽåïŒãã®äŸã®ããã«2ã€ã®ã¹ã€ãããšãããã®éã«2ã€ã®ã¯ã€ã€ãããå Žå-åãã¹ã®ã³ã¹ãã¯19ïŒ-å°ããããŒããã«ãŒããšããŠéžæãããŸãã
次ã«ã æå®ããŒããéžæãããŸãã ç¹å®ã®åãããã¯ãŒã¯ã»ã°ã¡ã³ããããã«ãŒãã¹ã€ãããžã®ãã¹ã¯1ã€ã ãã§ããå¿ èŠããããŸããããã§ãªãå Žåã¯ã«ãŒãã§ãã ãã®å Žåãããã®ãªãçŸä»£ã®ãããã¯ãŒã¯ã§ã¯ãç©çã»ã°ã¡ã³ããæå³ããŸãã倧ãŸãã«èšãã°ãããã¯åãªãã¯ã€ã€ã§ãã æå®ããŒãã¯ããã®ã»ã°ã¡ã³ãã§æé©ãªå€ãæã€ããŒããéžæããŸãã ã«ãŒãã¹ã€ããã«ã¯ãã¹ãŠã®ããŒããå²ãåœãŠãããŠããŸãã
ãããŠä»ãã«ãŒããšå²ãåœãŠãããããŒããéžæãããåŸãæ®ãã®ããŒãã¯ãããã¯ãããã«ãŒããå£ããŸãã

*åçã§ã¯ãã«ãŒã¿ãŒã¯ã¹ã€ãããšããŠæ©èœããŸãã å®éã«ã¯ãããã¯è¿œå ã®ã¹ã€ããããŒãã䜿çšããŠå®è¡ã§ããŸãã
ããŒãã®ç¶æ
å°ãåã«ããŒãããããã³ã°ã®ç¶æ ã«ã€ããŠèª¬æããŸãããã次ã«ããããäœãæå³ããã®ããSTPã§èããããä»ã®ããŒãç¶æ ã«ã€ããŠèª¬æããŸãã ãããã£ãŠãéåžžã®ïŒ802.1DïŒSTPã«ã¯ã5ã€ã®ç°ãªãç¶æ ããããŸãã
- ããããã³ã°ïŒãããã¯ãããããŒãã¯äœãéä¿¡ããŸããã ãã®ç¶æ ã¯ãåè¿°ã®ããã«ããããã¯ãŒã¯ã®ã«ãŒããé²ãããšãç®çãšããŠããŸãã ããã«ããããããããããã¯ãããããŒãã¯BPDUããªãã¹ã³ããŸãïŒã€ãã³ãã«é ããªãããã«ãããããå¿ èŠã«å¿ããŠããã¯ã解é€ããŠäœæ¥ãéå§ã§ããŸãïŒ
- ãªã¹ãã³ã°ïŒããŒãã¯ãªãã¹ã³ããBPDUèªäœã®éä¿¡ãéå§ããŸããããŒã¿ãå«ããã¬ãŒã ã¯éä¿¡ããŸããã
- åŠç¿ïŒããŒãã¯BPDUããªãã¹ã³ããŠéä¿¡ããCAMããŒãã«ãå€æŽããŸãããããŒã¿ã¯ãªãã€ã¬ã¯ãããŸããã
- ãªãã€ã¬ã¯ã·ã§ã³\転éïŒããã¯ãã¹ãŠãè¡ãããšãã§ããŸãïŒBPDUã®éåä¿¡ãããŒã¿ã®æäœãããã³MACã¢ãã¬ã¹ããŒãã«ã®ç¶æã«åå ããŸãã ã€ãŸããããã¯çŸçšããŒãã®éåžžã®ç¶æ ã§ãã
- ç¡å¹ïŒç®¡çäžã®ããŠã³ç¶æ ã ã·ã£ããããŠã³ã³ãã³ãã§ç¡å¹ã æ確ãªããžãã¹ãæåã§ãªã³ã«ãããŸã§äœãã§ããŸããã
ç¶æ ã®åæã®é åºã¯å¶ç¶ã§ã¯ãããŸãããé»æºãå ¥ãããšïŒãŸããæ°ããã¯ã€ã€ãå·®ã蟌ããšïŒãSTPãåããããã€ã¹ã®ãã¹ãŠã®ããŒãã¯ãã®é åºã§äžèšã®ç¶æ ãééããŸãïŒç¡å¹ãªããŒããé€ãïŒã è«ççãªçåãçããŸãïŒãªããã®ãããªå°é£ãªã®ã§ããïŒ ãããŠãSTPã ããæ éã§ãã çµå±ã®ãšãããããŒãã«åŒã£ããã£ãã°ããã®ã¯ã€ã€ã®ããäžæ¹ã®ç«¯ã«ã¯ãã¹ã€ãããååšããå¯èœæ§ããããããã¯æœåšçãªã«ãŒãã§ãã ãã®ãããæåã®15ç§ïŒããã©ã«ãïŒã®ããŒãã¯ãªã¹ãã³ã°ã¹ããŒãã«ãªããŸã-ããŒãã«èœã¡ãBPDUã確èªãããããã¯ãŒã¯äžã®ãã®äœçœ®ãèŠã€ããŸã-äœãèµ·ãã£ãŠããããã«15ç§éãã¬ãŒãã³ã°ã«é²ã¿ãŸã-ã©ã®mac-ãªã³ã¯ã§ã䜿çšäžãã«å¯ŸåŠãããã®åŸããããäœãå£ããªãããšã確èªããŠããã§ã«äœæ¥ãéå§ããŸãã æ¥ç¶ãããããã€ã¹ãé£æ¥ããã€ã¹ãšæ å ±ã亀æã§ããããã«ãªããŸã§ã«ãåèšã§æ倧30ç§ã®ããŠã³ã¿ã€ã ããããŸãã ææ°ã®ã³ã³ãã¥ãŒã¿ãŒã¯30ç§ãããé«éã«ããŒããããŸãã ããã§ã¯ãã³ã³ãã¥ãŒã¿ãŒãèµ·åããæ¢ã«ãããã¯ãŒã¯ã«æ¥ç¶ãããŠããããDHCPãµãŒããŒãããªãã¯ããã§ãªããIPã¢ãã¬ã¹ãæäŸãããã©ããããšãããããã¯ã«ã€ããŠãã¹ããªãã¯ã§ãã åœç¶ã®ããšãªããããã®ãããªæŒç¿ã®åŸã誰ããããã¯ãŒã¯äžã§åœŒã®è©±ãèãããšã¯ãããŸããã169.254.xxã§ãããŒã«ã«ã§ã¯ãªããããã§ããããã¯ãã¹ãŠåœãŠã¯ãŸããªãããšã¯æããã§ããããããã©ã®ããã«åé¿ã§ããŸããïŒ
Portfast
ãã®ãããªå Žåãç¹å¥ãªããŒãã¢ãŒã-portfastã䜿çšãããŸãã ããã€ã¹ããã®ãããªããŒãã«æ¥ç¶ãããšãäžé段éããã€ãã¹ããŠãããã«ãã©ã¯ãŒãã£ã³ã°ã¹ããŒãã«ãªããŸãã ãã¡ãããportfastã¯ããšã³ãããã€ã¹ïŒã¯ãŒã¯ã¹ããŒã·ã§ã³ããµãŒããŒãé»è©±ãªã©ïŒã«ã€ãªããã€ã³ã¿ãŒãã§ãŒã¹ã§ã®ã¿æå¹ã«ããä»ã®ã¹ã€ããã§ã¯æå¹ã«ããªãã§ãã ããã
ã€ã³ã¿ãŒãã§ã€ã¹ã³ã³ãã£ã®ã¥ã¬ãŒã·ã§ã³ã¢ãŒãã«ã¯ããšã³ãããã€ã¹ãå«ãŸããããŒãã§å¿ èŠãªæ©èœãæå¹ã«ããéåžžã«äŸ¿å©ãªã³ãã³ãããããŸãïŒ switchport host ã ãã®ã³ãã³ãã¯ãPortFastãäžåºŠã«æå¹ã«ããããŒããã¢ã¯ã»ã¹ã¢ãŒãã«ãïŒã¹ã€ããããŒãã¢ãŒãã¢ã¯ã»ã¹ãšåæ§ïŒãPAgPãããã³ã«ãç¡å¹ã«ããŸãïŒãã®ãããã³ã«ã®è©³çŽ°ã«ã€ããŠã¯ãã»ã¯ã·ã§ã³ãã£ãã«ã¢ã°ãªã²ãŒã·ã§ã³ãåç §ïŒã
STPã®çš®é¡
STPã¯ããªãå€ããããã³ã«ã§ããã1ã€ã®LANã»ã°ã¡ã³ãã§åäœããããã«äœæãããŸããã ããããè€æ°ã®VLANãæã€ãããã¯ãŒã¯ã«å®è£ ãããå Žåã¯ã©ãã§ããããïŒ
ã¹ã€ããã³ã°ã«é¢ããèšäºã§èª¬æãã802.1Qæšæºã¯ããã©ã³ã¯å ã§VLANãéä¿¡ãããæ¹æ³ãå®çŸ©ããŠããŸãã ããã«ããã¹ãŠã®VLANã«å¯ŸããŠ1ã€ã®STPããã»ã¹ãå®çŸ©ããŸãã ãã©ã³ã¯BPDUã¯ãã¿ã°ãªãã§ïŒãã€ãã£ãVLANã§ïŒéä¿¡ãããŸãã ãã®STPã®ããªã¢ã³ãã¯ã CST ïŒCommon Spanning TreeïŒãšããŠç¥ãããŠããŸãã ãã¹ãŠã®vlaneã«å¯ŸããŠ1ã€ã®ããã»ã¹ã®ã¿ãååšãããšãæ§æãå€§å¹ ã«ç°¡çŽ åãããã¹ã€ããããã»ããµã軜æžãããŸãããCSTã«ã¯æ¬ ç¹ããããŸãïŒãã¹ãŠã®vlanã§ã¹ã€ããéã®åé·ãªã³ã¯ããããã¯ããããããåžžã«åãå ¥ããããããã§ã¯ãªããããŒããã©ã³ã·ã³ã°ã«äœ¿çšã§ããŸããã
ã·ã¹ã³ã«ã¯ãSTPã«é¢ããç¬èªã®èŠè§£ãšãç¬èªã®ãããã³ã«å®è£ ã§ããPVST ïŒVLANããšã®ã¹ããã³ã°ããªãŒïŒããããè€æ°ã®VLANãæã€ãããã¯ãŒã¯ã§åäœããããã«èšèšãããŠããŸãã PVSTã«ã¯ãåVLANã«ç¬èªã®STPããã»ã¹ããããåVLANã®ããŒãºãç¬ç«ããŠæè»ã«èª¿æŽã§ããŸãããæãéèŠãªããšã¯ãç¹å®ã®ç©çãªã³ã¯ã1ã€ã®VLANã§ãããã¯ãããŠãå¥ã®VLANã§æ©èœãããããããŒããã©ã³ã·ã³ã°ã䜿çšã§ããããšã§ãã ãã¡ããããã®å®è£ ã®æ¬ ç¹ã¯ãããã©ã€ãšã¿ãªã§ããPVSTãæ©èœããã«ã¯ãã¹ã€ããéã«ãããã©ã€ãšã¿ãªãªISLãã©ã³ã¯ãå¿ èŠã§ãã
ãã®å®è£ ã®2çªç®ã®ããŒãžã§ã³ã PVST +ããããŸããããã«ãããCSTãšPVSTã䜿çšããŠã¹ã€ããéã®æ¥ç¶ã確ç«ã§ããISLãã©ã³ã¯ãš802.1qã®äž¡æ¹ã§åäœããŸãã PVST +ã¯ãCiscoã¹ã€ããã®ããã©ã«ããããã³ã«ã§ãã
Rstp
ãã®èšäºã®ååã§èª¬æããããšã¯ãã¹ãŠã1985幎ã«Radia Perlmanã«ãã£ãŠéçºãããSTPãããã³ã«ã®æåã®å®è£ ã«é¢ãããã®ã§ãïŒåœŒå¥³ã®è©©ã¯ãšãã°ã©ããšããŠäœ¿çšãããŠããŸããïŒã 1990幎ã«ããã®å®è£ ã¯IEEE 802.1Dæšæºã«å«ãŸããŸããã ãã®åŸãæéããã£ãããšæµãã30ã50ç§ïŒ!!!ïŒããã£ãSTPããããžã®åæ§ç¯ãå šå¡ã«é©ããŸããã ããããæ代ã¯å€åããŠããã10幎åŸã®2001幎ã«IEEEã¯æ°ããRSTPèŠæ ŒïŒå¥å802.1wãå¥åRapid Spanning Tree Protocolãå¥åFaââst STPïŒãå°å ¥ããŸããã åã®è³æãæ§æããéåžžã®STPïŒ802.1dïŒãšRSTPïŒ802.1wïŒã®éãã確èªããããã«ãäž»ãªäºå®ãå«ãè¡šãåéããŸãã
STPïŒ802.1dïŒ | RSTPïŒ802.1wïŒ |
æ¢åã®ããããžã§ã¯ãã«ãŒãã¹ã€ããã®ã¿ãBPDUãéä¿¡ããæ®ãã®ãªã¬ãŒã¯ | ãã¹ãŠã®ã¹ã€ããã¯ãhelloã¿ã€ããŒã«åŸã£ãŠBPDUãéä¿¡ããŸãïŒããã©ã«ãã§ã¯2ç§ïŒ |
ããŒãã®ç¶æ | |
-ããããã³ã°
-ãªã¹ãã³ã°ïŒãªã¹ãã³ã°ïŒ -åŠç¿ -ãªãã€ã¬ã¯ã\転éïŒè»¢éïŒ -ç¡å¹ | -ç Žæ£ã眮ãæããç¡å¹åããããã¯ããªã¹ãã³ã°
-åŠç¿ -転é |
ããŒãã®åœ¹å² | |
-ã«ãŒãïŒã«ãŒãïŒãããŒã¿ã®è»¢éã«é¢äžããã«ãŒãã¹ã€ããã«ã€ãªãã
-æå®ïŒæå®ïŒãæ©èœããã«ãŒãã¹ã€ããããã®ãªãŒã -æå®ãªããããŒã¿è»¢éã«åå ããŸãã | -ã«ãŒãïŒã«ãŒãïŒãããŒã¿ã®è»¢éã«é¢äž
-æå®ïŒæå®ïŒãæ©èœããŸã -è¿œå ïŒä»£æ¿ïŒãããŒã¿è»¢éã«ã¯åå ããŸãã -ããã¯ã¢ããïŒããã¯ã¢ããïŒãå«ãŸããŸãã |
ä»äºã®ä»çµã¿ | |
ã¿ã€ããŒã䜿çšããŸãïŒ
ããã«ã¡ã¯ïŒ2ç§ïŒ æ倧幎霢ïŒ20ç§ïŒ 転éé 延ã¿ã€ããŒïŒ15ç§ïŒ | ææ¡ãšåæããã»ã¹ã䜿çšããŸã |
ããããžã®å€æŽãæ€åºããã¹ã€ããã¯ã«ãŒãã¹ã€ããã«éç¥ããŸããããã«ããã転éé 延ã¿ã€ããŒäžã«ä»ã®å šå¡ãçŸåšã®ããããžãšã³ããªãã¯ãªã¢ããå¿ èŠããããŸãã | ããããžã®å€æŽã®æ€åºã«ã¯ãã¬ã³ãŒãã®å³æã¯ãªãŒã³ã¢ãããå¿ èŠã§ã |
éã«ãŒãã¹ã€ãããMax Ageäžã«ã«ãŒãããhelloãã±ãããåä¿¡ããªãå Žåãæ°ããéžæãéå§ããŸã | 3 helloééå ã«BPDUãåä¿¡ããªãå Žåã«æå¹ã«ãªããŸã |
ããããã³ã°ç¶æ ãéãã·ãªã¢ã«ããŒãã®ééïŒ20ç§ïŒ-ãªã¹ãã³ã°ïŒ15ç§ïŒ-åŠç¿ïŒ15ç§ïŒ-転é | p2pããã³ãšããžããŒãã®è»¢éãžã®ã¯ã€ãã¯ã¹ã€ãã |
ã芧ã®ãšãããã«ãŒããå²ãåœãŠãªã©ã®ããŒãã®åœ¹å²ã¯RSTPã«æ®ãããããã¯ããã圹å²ã¯2ã€ã®æ°ãã圹å²ïŒä»£æ¿ãšããã¯ã¢ããïŒã«åå²ãããŸããã 代æ¿ã¯ããã¯ã¢ããã«ãŒãããŒãã§ãããããã¯ã¢ããã¯ããã¯ã¢ããæå®ããŒãã§ãã åé·ããŒãã®ãã®æŠå¿µã«ã¯ãé害çºçæã®è¿ éãªåãæ¿ãã®çç±ã®1ã€ããããŸãã ããã«ãããã·ã¹ãã å šäœã®åäœãå€æŽãããŸãããªã¢ã¯ãã£ãïŒåé¡ã®è§£æ±ºçã®æ€çŽ¢ãéå§ãããåŸã®ã¿ïŒã®ä»£ããã«ãã·ã¹ãã ã¯ããã¢ã¯ãã£ãã«ãªããåé¡ãçºçããåã§ãããšã¹ã±ãŒãã«ãŒãããäºåèšç®ããŸãã æå³ã¯ç°¡åã§ããã¡ã€ã³ã®é害ãçºçããå Žåã«ããã¯ã¢ãããªã³ã¯ã«åãæ¿ããããã«ãRSTPã¯ããããžãåèšç®ããå¿ èŠã¯ãªãã以åã«èšç®ããäºåã®ããããžã«åãæ¿ããã ãã§ãã
以åã¯ãããŒããããŒã¿è»¢éã«åå ã§ããããã«ããããã«ãã¿ã€ããŒãå¿ èŠã§ããã ã¹ã€ããã¯æ瀺ãããæéã ãååçã«åŸ æ©ããBPDUããªãã¹ã³ããŠããŸããã RSTPã®äž»èŠãªæ©èœã¯ããªã³ã¯ã¢ãŒãã«åºã¥ãããŒãã¿ã€ãã®æŠå¿µã®å°å ¥ã§ãããå šäºéãŸãã¯åäºéïŒããããp2pãŸãã¯å ±æããŒãã¿ã€ãïŒãããã³ãšã³ãããã€ã¹ã®ãšããžããŒãïŒãšããžp2pã¿ã€ãïŒã®æŠå¿µã§ãã åãšåæ§ã«ãå¢çããŒãã¯spanning-tree portfastã³ãã³ãã«ãã£ãŠå²ãåœãŠãããŸãããããã®ããŒãã䜿çšãããšãåç·ããªã³ã«ãããšããã«è»¢éç¶æ ã«ãªããåäœããŸãã å ±æããŒãã¯ãBLK-LIS-LRN-FWDç¶æ ãééããå€ãã¹ããŒã ã«åŸã£ãŠåäœããŸãã ãã ããp2pããŒãã§ã¯ãRSTPã¯ææ¡ããã³åæããã»ã¹ã䜿çšããŸãã 詳现ã«èª¬æããããšãªããã¹ã€ããã¯æ¬¡ã®ããã«èª¬æã§ããŸãããªã³ã¯ãå šäºéã¢ãŒãã§åäœããå¢çç·ãšããŠæå®ãããŠããªãå Žåãã¹ã€ããã¯2ã€ã®ããã€ã¹ïŒã¹ã€ãããšä»ã®ã¹ã€ããïŒã®ã¿ã§ãããšæ£ããå€æããŸãã çä¿¡BPDUãåŸ æ©ãã代ããã«ã圌èªèº«ãç¹å¥ãªBPDUææ¡ã䜿çšããŠãã¯ã€ã€ã®ãã®ç«¯ã®ã¹ã€ããã«æ¥ç¶ããããšããŸããããã«ã¯ããã¡ãããã«ãŒãã¹ã€ãããžã®ã«ãŒãã®ã³ã¹ãã«é¢ããæ å ±ãå«ãŸããŸãã 2çªç®ã®ã¹ã€ããã¯ãåä¿¡ããæ å ±ãçŸåšã®æ å ±ãšæ¯èŒããæåã®ã¹ã€ãããåæBPDUãä»ããŠéç¥ããããã©ããã決å®ããŸãã çŸåšããã®ããã»ã¹å šäœã¯ã¿ã€ããŒã«é¢é£ä»ããããŠããªããããéåžžã«è¿ éã«çºçããŸãïŒæ°ããã¹ã€ãããæ¥ç¶ããã ãã§ãïŒãã»ãŒããã«äžè¬çãªããããžã«é©åããŠåäœããŸãïŒãããªã®éåžžã®STPãšæ¯èŒããŠãã¹ã€ããã³ã°é床ãèªåã§æšå®ã§ããŸãïŒã ã·ã¹ã³ã®äžçã§ã¯ãRSTPã¯PVRSTïŒPer-Vlan Rapid Spanning TreeïŒãšåŒã°ããŠããŸãã
MSTP
ããå°ãäžã«ãPVNã«ã€ããŠèª¬æããŸãããPVSTã§ã¯ãåVLANã«ç¬èªã®STPããã»ã¹ããããŸãã Vlanaã¯å€ãã®ç®çã«ãšã£ãŠéåžžã«äŸ¿å©ãªããŒã«ã§ãããããã£ãŠãäžèŠæš¡ã®çµç¹ã§ãã£ãŠããéåžžã«å€ãã®ããŒã«ãååšããå¯èœæ§ããããŸãã ãŸããPVSTã®å Žåãããããã«ç¬èªã®ããããžãèšç®ãããããã»ããµæéãšã¹ã€ããã¡ã¢ãªãæ¶è²»ãããŸãã ããããå¿ èŠãªå Žæã2ã€ã®ã¹ã€ããéã®ããã¯ã¢ãããªã³ã¯ã ãã§ããå Žåã500åãã¹ãŠã®VLANã®STPãèšç®ããå¿ èŠããããŸããïŒ ããã§MSTPã圹ç«ã¡ãŸãã ãã®äžã§ãåVLANã¯ç¬èªã®STPããã»ã¹ãæã€å¿ èŠã¯ãªããããããçµã¿åãããããšãã§ããŸãã ããšãã°ãããã«ã¯500åã®VLANãããããããã®ååã1ã€ã®ãªã³ã¯ïŒ2çªç®ã¯ãããã¯ãããŠäºåã«ãªã£ãŠããïŒã§åäœãã2çªç®ã¯ãã1ã€ã®ãªã³ã¯ã§åäœããããã«è² è·ãåæ£ããŸãã ããã¯éåžžã®STPã䜿çšããŠå®è¡ã§ãã1ã€ã®ã«ãŒãã¹ã€ãããVLAN 1ã250ã®ç¯å²ã«å²ãåœãŠããã1ã€ã250ã500ã®ç¯å²ã«å²ãåœãŠãŸãã ãã ãããããã®ããã»ã¹ã¯500ã®VLANããšã«åå¥ã«æ©èœããŸãïŒãã ããååããšã«ãŸã£ããåãããã«åäœããŸãïŒã ããã§ã¯2ã€ã®ããã»ã¹ã§ååã§ããããšã¯è«ççã§ãã MSTPã䜿çšãããšãè«çããããžïŒãã®äŸã§ã¯2ïŒãããã ãã®STPããã»ã¹ãäœæãããããã®éã§VLANãé åžã§ããŸãã ãã®èšäºã®ãã¬ãŒã ã¯ãŒã¯å ã§MSTPã®çè«ãšå®è·µãæãäžããããšã¯çã«ããªã£ãŠããªããšæããŸãïŒçè«ãçŽ æŽãããããïŒ ãèå³ããã人ã¯ãªã³ã¯ããã©ãããšãã§ããŸãã
ãªã³ã¯ã¢ã°ãªã²ãŒã·ã§ã³
ãããã䜿çšããŠããSTPã®ããŒãžã§ã³ã«é¢ä¿ãªãããããã«ããŠããªã³ã¯ãå£ããŠããŸãã 䞊åãªã³ã¯ãå®å šã«äœ¿çšããåæã«ã«ãŒããåé¿ããããšã¯å¯èœã§ããïŒ ã¯ããTsiskaã§å¿çããEtherChannelã®è©±ãå§ããŸãã
ãã以å€ã®å Žåããªã³ã¯ã¢ã°ãªã²ãŒã·ã§ã³ããªã³ã¯ãã³ããªã³ã°ãNICããŒãã³ã°ãããŒãtrunkinkgãšåŒã°ããŸã
ãã£ãã«ã®éçŽïŒã¢ãœã·ãšãŒã·ã§ã³ïŒãã¯ãããžãŒã¯2ã€ã®æ©èœãå®è¡ããŸãïŒäžæ¹ã§ã¯ãããã¯ããã€ãã®ç©çãªã³ã¯ã®åž¯åå¹ ã®çµåã§ãããä»æ¹ã§ã¯ãæ¥ç¶ã®ãã©ãŒã«ããã¬ã©ã³ã¹ãä¿èšŒããŸãïŒ1ã€ã®ãªã³ã¯ãããããããå Žåãè² è·ã¯æ®ãã®ãªã³ã¯ã«è»¢éãããŸãïŒã ãªã³ã¯ã®ããŒãžã¯ãæåïŒéçéçŽïŒãŸãã¯ç¹å¥ãªãããã³ã«LACPïŒãªã³ã¯éçŽå¶åŸ¡ãããã³ã«ïŒããã³PAgPïŒããŒãéçŽãããã³ã«ïŒã䜿çšããŠå®è¡ã§ããŸãã IEEE 802.3adèŠæ Œã§å®çŸ©ãããŠããLACPã¯ãªãŒãã³èŠæ Œã§ããã€ãŸããæ©åšã®ãã³ããŒã«äŸåããŸããã ãããã£ãŠãPAgPã¯ç¬èªã®tsiskovskoyéçºã§ãã
æ倧8ã€ã®ããŒãã1ã€ã®ãã£ãã«ã«çµåã§ããŸãã è² è·åæ£ã¢ã«ãŽãªãºã ã¯ãåä¿¡è ãšéä¿¡è ã®IP / MACã¢ãã¬ã¹ãããŒããªã©ã®ãã©ã¡ãŒã¿ãŒã«åºã¥ããŠããŸãã ãããã£ãŠããããããªããããªã«ãã©ã³ã¹ãæªãã®ïŒããšããçåãçããå ŽåããŸããã©ã³ã¹ã¢ã«ãŽãªãºã ãèŠãŠãã ããã
ãã£ã³ãã«éçŽã®ãããã¯ã¯ãå¥ã®èšäºããŸãã¯æ¬ã«å€ããã®ã§ãèå³ãããã°ãªã³ã¯ã詳ãã説æããŸããã
ããŒãã»ãã¥ãªãã£
次ã«ãOSIã®ç¬¬2ã¬ãã«ã§ãããã¯ãŒã¯ã»ãã¥ãªãã£ã確ä¿ããæ¹æ³ã«ã€ããŠç°¡åã«èª¬æããŸãã èšäºã®ãã®éšåã§ã¯ãçè«ãšå®éã®æ§æãçµã¿åããããŠããŸãã æ®å¿µãªãããPacket Tracerã¯ãã®ã»ã¯ã·ã§ã³ã§èª¬æããã³ãã³ãããŸã£ããèªèããŠããªãããããã¹ãŠã®å³ãšãã§ãã¯ã¯ãããŸããã
æåã«ãç¹å®ã®ã¹ã€ããããŒãã§ã®ä¿è·ãå«ãswitchport port-securityã€ã³ã¿ãŒãã§ã€ã¹ã³ã³ãã£ã®ã¥ã¬ãŒã·ã§ã³ã³ãã³ãã«èšåããå¿ èŠããããŸãã 次ã«ã switchport port-security maximum 1ã䜿çšããŠããã®ããŒãã«é¢é£ä»ããããMACã¢ãã¬ã¹ã®æ°ãå¶éã§ããŸãïŒã€ãŸãããã®äŸã§ã¯ããã®ããŒãã§åäœã§ããMACã¢ãã¬ã¹ã¯1ã€ã ãã§ãïŒã ããã§ãèš±å¯ãããã¢ãã¬ã¹ã瀺ããŸãïŒ switchport port-security mac-address addressã«æåã§èšå®ããããçŸåšããŒãã§å®è¡ãããŠããã¢ãã¬ã¹ãããŒãã«å²ãåœãŠãmagic switchport port-security mac-address stickyã³ãã³ãã䜿çšã§ããŸãã 次ã«ãã«ãŒã«switchport port-security violation {shutdown | å¶éãã| ããŒããåæããæåã§æã¡äžããïŒã·ã£ããããŠã³ããïŒããæªç»é²ã®ãããŒãããã±ãããããããããŠã³ã³ãœãŒã«ã«æžã蟌ãïŒå¶éïŒããåã«ãã±ãããããããããïŒä¿è·ããïŒå¿ èŠããããŸãã
ããŒããããã®ããã€ã¹æ°ãå¶éãããšããæ確ãªç®æšã«å ããŠããã®ã³ãã³ãã«ã¯ãããããããéèŠãªãæ»æãé²ããšããå¥ã®æ©èœããããŸãã 1ã€ã®å¯èœæ§ã¯ãCAMããŒãã«ã®æ¯æžã§ãã éä¿¡è ã®MACã¢ãã¬ã¹ãã£ãŒã«ãã®å€ãç°ãªããæªåœ¹ã®ã³ã³ãã¥ãŒã¿ãŒããèšå€§ãªæ°ã®ãã¬ãŒã ãéä¿¡ãããå Žåã«ãã£ãŠã¯ãããŒããã£ã¹ããããŸãã éäžã®æåã®ã¹ã€ããã¯ããããèŠãå§ããŸãã 圌ã¯1,000ã2ãèŠããŠããŸãããæäœäžã®ã¡ã¢ãªã¯ãŽã ã§ã¯ãªãã16,000ã¬ã³ãŒãã®å¹³åå¶éã«ããã«å°éããŸãã ããã«ãã¹ã€ããã®ãã®ä»ã®åäœã¯ç°ãªãå ŽåããããŸãããããŠãã»ãã¥ãªãã£ã®èŠ³ç¹ããæãå±éºãªã®ã¯ãåä¿¡è ã®MACã¢ãã¬ã¹ãç¥ãããŠããªãïŒãŸãã¯ãã§ã«å¿ããããŠããïŒãããã¹ã€ããã¯ããã«çä¿¡ãããã¹ãŠã®ãã¬ãŒã ã®éä¿¡ãéå§ã§ããããšã§ãããåã«ãããèŠããŠããå Žæããªãããã§ãããã®å Žåãæªåœ¹ã®ãããã¯ãŒã¯ã«ãŒãã¯ããããã¯ãŒã¯äžãé£ãã§ãããã¹ãŠã®ãã¬ãŒã ãåãåããŸãã
DHCPã¹ããŒãã³ã°
å¥ã®æ»æã®å¯èœæ§ã¯ãDHCPãµãŒããŒãæšçãšããŠããŸãããåãã®ãšãããDHCPã¯ã¯ã©ã€ã¢ã³ãããã€ã¹ã«ããããã¯ãŒã¯ã§ã®äœæ¥ã«å¿ èŠãªãã¹ãŠã®æ å ±ïŒIPã¢ãã¬ã¹ããµãããããã¹ã¯ãããã©ã«ãã²ãŒããŠã§ã€ã¢ãã¬ã¹ãDNSãµãŒããŒãªã©ïŒãæäŸããŸããæ»æè ã¯èªåã®DHCPãäžããããšãã§ããŸããããã¯ãã¯ã©ã€ã¢ã³ãããã€ã¹ããã®èŠæ±ã«å¿ããŠãæ»æè ãå¶åŸ¡ãããã·ã³ã®ã¢ãã¬ã¹ãããã©ã«ãã²ãŒããŠã§ã€ïŒããã³DNSãµãŒããŒãªã©ïŒãšããŠæäŸããŸãããããã£ãŠãã ãŸãããããã€ã¹ã«ãã£ãŠãµããããã®å€éšã«åãããããã¹ãŠã®ãã©ãã£ãã¯ã¯ãæ»æã«å©çšã§ããŸã-å žåçãªäžéè æ»æããŸãã¯ããã®ãªãã·ã§ã³ïŒæªæã®ããè©æ¬ºåž«ãåœã®MACã¢ãã¬ã¹ã§å€æ°ã®DHCPèŠæ±ãçæãããã®ãããªèŠæ±ããšã«DHCPãµãŒããŒãããŒã«ããªããªããŸã§IPã¢ãã¬ã¹ãæäŸããŸãã
ãã®ã¿ã€ãã®æ»æããä¿è·ããããã«ãDHCPã¹ããŒãã³ã°ãšåŒã°ããæ©èœã䜿çšãããŸããã¢ã€ãã¢ã¯éåžžã«åçŽã§ããå®éã®DHCPãµãŒããŒãæ¥ç¶ãããŠããããŒãã«ã¹ã€ãããæå®ãããã®ããŒãããã®ã¿DHCPå¿çãèš±å¯ããæ®ãã¯çŠæ¢ããŸããip dhcp snoopingã³ãã³ããã°ããŒãã«ã«å«ããŠãããã©ã®VLANã§ip dhcp snooping vlançªå·ãæ©èœããããæå®ããŸãã次ã«ãç¹å®ã®ããŒãã§ãDHCPå¿çã転éã§ãããšèšããŸãïŒãã®ããŒãã¯ãã©ã¹ããããšåŒã°ããŸãïŒïŒip dhcp snooping trustã
IPãœãŒã¹ã¬ãŒã
DHCPã¹ããŒãã³ã°ãæå¹ã«ãããšãããã€ã¹ã®MACã¢ãã¬ã¹ãšIPã¢ãã¬ã¹ãäžèŽãããããã®ããŒã¹ã®ãã¹ããéå§ããDHCPèŠæ±ãšå¿çããªãã¹ã³ããããšã§æŽæ°ããã³è£å ããŸãããã®ããŒã¿ããŒã¹ã«ãããIPã¹ããŒãã£ã³ã°ãšããå¥ã®ã¿ã€ãã®æ»æã«æµæã§ããŸããIPãœãŒã¹ã¬ãŒããæå¹ã«ãªã£ãŠããå Žåãåçä¿¡ãã±ããããã§ãã¯ã§ããŸãã
- éä¿¡å IPã¢ãã¬ã¹ãšDHCPã¹ããŒãã³ã°ããŒã¿ããŒã¹ããåä¿¡ããã¢ãã¬ã¹ã®å¯Ÿå¿ïŒèšãæãããšãIPã¯ã¹ã€ããããŒãã«å²ãåœãŠãããŸãïŒ
- éä¿¡å MACã¢ãã¬ã¹ãDHCPã¹ããŒãã³ã°ããŒã¿ããŒã¹ããåä¿¡ããã¢ãã¬ã¹ãšäžèŽãã
IPãœãŒã¹ã¬ãŒãã¯ãç®çã®ã€ã³ã¿ãŒãã§ã€ã¹ã§ip verify sourceã³ãã³ãã䜿çšããŠæå¹ã«ããŸãããã®ãã©ãŒã ã§ã¯ãIPã¢ãã¬ã¹ãã€ã³ãã£ã³ã°ã®ã¿ããã§ãã¯ãããŸããMACæ€èšŒãè¿œå ããã«ã¯ãip verify source port-securityã䜿çšããŸãããã¡ãããIPãœãŒã¹ã¬ãŒããæ©èœããã«ã¯DHCPã¹ããŒãã³ã°ãå¿ èŠã§ãããMACã¢ãã¬ã¹ãå¶åŸ¡ããã«ã¯ããŒãã»ãã¥ãªãã£ãæå¹ã«ããå¿ èŠããããŸãã
ãã€ãããã¯ARPã€ã³ã¹ãã¯ã·ã§ã³
æ¢ã«ç¥ã£ãŠããããã«ãIPã¢ãã¬ã¹ã§ããã€ã¹ã®MACã¢ãã¬ã¹ãèŠã€ããããã«ãARPãããã³ã«ã䜿çšãããŸããIPã¢ãã¬ã¹ã172.16.1.15ã®ããã€ã¹ã®ãIPã¢ãã¬ã¹ã¯172.16.1.15ãè¿ä¿¡172.16.1.1ãã®ããã«ãããŒããã£ã¹ãèŠæ±ãéä¿¡ãããŸããçããŸããåæ§ã®ã¹ããŒã ã¯ãARPãã€ãºãã³ã°ãŸãã¯ARPã¹ããŒãã£ã³ã°ãšåŒã°ããæ»æã«å¯ŸããŠè匱ã§ããã¢ãã¬ã¹172.16.1.15ã®å®éã®ãã¹ãã®ä»£ããã«ãæ»æè ã®ãã¹ââããå¿çãã172.16.1.15å®ãŠã®ãã©ãã£ãã¯ã匷å¶çã«è¿œè·¡ããŸãããã®ã¿ã€ãã®æ»æãé²ãããã«ããã€ãããã¯ARPã€ã³ã¹ãã¯ã·ã§ã³ãšåŒã°ããæ©èœã䜿çšãããŸããæäœã¹ããŒã ã¯DHCPã¹ããŒãã³ã°ã¹ããŒã ã«äŒŒãŠããŸãïŒããŒãã¯ä¿¡é Œã§ãããã®ãšä¿¡é Œã§ããªããã®ãä¿¡é Œã§ããªããã®ã«åããããåARPå¿çãåæãããŸãïŒãã®ãã±ããã«å«ãŸããæ å ±ã¯ãã¹ã€ããã«ãã£ãŠä¿¡é Œããããã®ïŒãŸãã¯éçã«å®çŸ©ãããMAC-IPã®äžèŽããŸãã¯DHCPã¹ããŒãã³ã°ããŒã¿ããŒã¹ããã®æ å ±ïŒãåæããªãå Žåããã±ããã¯ç Žæ£ãããsyslogã«ã¡ãã»ãŒãžãçæãããŸããç®çã®VLANïŒvlanïŒã«å«ããŸããip arp inspection vlan numberïŒsïŒãããã©ã«ãã§ã¯ããã¹ãŠã®ããŒãã¯ä¿¡é ŒãããŠããŸãããä¿¡é Œã§ããããŒãã«ã¯ãip arp inspection trustã䜿çšããŸãã
ç·Žç¿ãã
ãããããPacket Tracerã®ééãã®ã»ãšãã©ã¯ãSTPã·ãã¥ã¬ãŒã·ã§ã³ãæ åœããã³ãŒãã®äžéšã§è¡ããããã®ã§ãããæºåãå¿ èŠã§ããçãããå Žåã¯ãPTãä¿åããŠéããå床éããŸã
ããã§ãç§ãã¡ã¯ç·Žç¿ã«ç§»ããŸãããŸããããããžã«ããã€ãã®å€æŽãå ããŸã-åé·ãªã³ã¯ãè¿œå ããŸããåé ã§è¿°ã¹ãããšãèãããšããµãŒããŒãšãªã¢ã®ã¢ã¹ã¯ã¯ãªãã£ã¹ã§ãããè¡ãã®ã¯è«ççã§ããããã§ã¯ãmsk-arbat-asw2ã¹ã€ããã¯asw1ããã®ã¿å©çšã§ããŸãããããã¯è©±é¡ã§ã¯ãããŸãããmsk-arbat-dsw1ããmsk-arbat-asw3ãžã®ã®ã¬ããããªã³ã¯ãéžæãïŒãã®æ倱ãåŸã§è£åããŸãïŒããããä»ããŠasw2ãæ¥ç¶ããŸããAsw3ã¯ãçŸåšFa0 / 2 dsw1ããŒãã«æ¥ç¶ããŠããŸãããã©ã³ã¯ã®åæ§æïŒ
msk-arbat-dsw1(config)#interface gi1/2
msk-arbat-dsw1(config-if)#description msk-arbat-asw2
msk-arbat-dsw1(config-if)#switchport trunk allowed vlan 2,3
msk-arbat-dsw1(config-if)#int fa0/2
msk-arbat-dsw1(config-if)#description msk-arbat-asw3
msk-arbat-dsw1(config-if)#switchport mode trunk
msk-arbat-dsw1(config-if)#switchport trunk allowed vlan 2,101-104
msk-arbat-asw2(config)#int gi1/2
msk-arbat-asw2(config-if)#description msk-arbat-dsw1
msk-arbat-asw2(config-if)#switchport mode trunk
msk-arbat-asw2(config-if)#switchport trunk allowed vlan 2,3
msk-arbat-asw2(config-if)#no shutdown
ããã¥ã¡ã³ãã«ãã¹ãŠã®å€æŽãå ããããšãå¿ããªãã§ãã ããïŒ

ããã¥ã¡ã³ãã®çŸåšã®ããŒãžã§ã³ãããŠã³ããŒãããŸãã
ããã§ã¯ãçŸåšSTP ãã©ã®ããã«æ§æããŠãããèŠãŠã¿ãŸããããVLAN0003ã«ã®ã¿é¢å¿ããããã¹ããŒã ããå€æãããšãã«ãŒãããããŸãã
msk-arbat-dsw1> en
msk-arbat-dsw1ïŒshow spanning-tree vlan 3
ã³ãã³ã

ã®åºåãæŽçããŸãããã©ã®ãããªæ å ±ãååŸã§ããŸããïŒPVST +ã¯ããã©ã«ãã§ææ°ã®tsiskaïŒã€ãŸããåvlanç¬èªã®STPããã»ã¹ïŒã§åäœããè€æ°ã®vlanããããããåvlanã®æ å ±ã¯åå¥ã«è¡šç€ºãããåã¬ã³ãŒãã®åã«vlançªå·ãä»ããŸãã次ã«ãSTPã®åœ¢åŒããããŸããã€ãŸããieeeã¯PVSTãrstpã¯Rapid PVSTãmstpã¯ãããæå³ããŸãã次ã«ãã«ãŒãã¹ã€ããã«é¢ããæ å ±ãå«ãã»ã¯ã·ã§ã³ããããŸãïŒèšå®ãããŠããåªå é äœããã®MACã¢ãã¬ã¹ãçŸåšã®ã¹ã€ããããã«ãŒããžã®ãã¹ã®ã³ã¹ããã«ãŒããšããŠéžæãããããŒãïŒæé©ãªå€ãæã€ïŒãããã³STPã¿ã€ããŒã®èšå®ã次ã¯ãçŸåšã®ã¹ã€ããïŒã³ãã³ãã®å®è¡å ïŒã«é¢ããåãæ å ±ãæã€ã»ã¯ã·ã§ã³ã§ãã次ã«ãããŒãã¹ããŒã¿ã¹ããŒãã«ã¯ã次ã®åïŒå·Šããå³ïŒã§æ§æãããŸãã
- å®éã«ããŒã
- ãã®åœ¹å²ïŒã«ãŒã-ã«ãŒãããŒããèšèš-å²ãåœãŠããŒãã代æ¿-è¿œå ãããã¯ã¢ããïŒ
- ãã®ã¹ããŒã¿ã¹ïŒFWD-äœæ¥äžãBLK-ãããã¯ãLISãªã¹ãã³ã°ãLRN-åŠç¿ïŒ
- ã«ãŒãã¹ã€ãããžã®ã«ãŒãã®ã³ã¹ã
- ããŒãID圢åŒïŒããŒããã©ã€ãªãªãã£ããŒãçªå·
- æ¥ç¶ã¿ã€ã
ãã®ãããGi1 / 1ãã«ãŒãããŒãã§ããããšãããããŸããããã«ããããªã³ã¯ã®ããäžæ¹ã®ç«¯ã«ã«ãŒãã¹ã€ãããããå¯èœæ§ããããŸãããªã³ã¯ãå°ãã¹ããŒã ãèŠãŠã¿ãŸãããããããmsk-arbat-asw1ããããŸãã
msk-arbat-asw1ïŒshow spanning-tree vlan 3
ãããŠãç§ãã¡ã¯äœãèŠãŸããïŒ
VLAN0003 ã¹ããã³ã°ããªãŒå¯Ÿå¿ãããã³ã«ieee ã«ãŒãIDåªå 床32771 ã¢ãã¬ã¹0007.ECC4.09E2 ãã®æ©ã¯ã«ãŒãã§ã Hello Time 2ç§Max Age 20ç§Forward Delay 15ç§
ããã«ãVLAN0003ã®ã«ãŒãã¹ã€ããããããŸãã
ããã§ã¯ããã€ã¢ã°ã©ã ãèŠãŠã¿ãŸããããåã«ãããŒãã®ç¶æ ã§dsw1ãGi1 / 2ããŒãããããã¯ããã«ãŒããå£ããŠããã®ãèŠãŸããããããããããæåã®è§£æ±ºçã§ããïŒãããããã¡ããã§ããçŸåšãæ°ãããããã¯ãŒã¯ã¯å€ããããã¯ãŒã¯ãšãŸã£ããåãããã«æ©èœããŸããasw2ããã®ãã©ãã£ãã¯ã¯asw1ã®ã¿ãééããŸããã«ãŒãã«ãŒã¿ã®éžæã¯ãæããªSTPã®è¯å¿ã«ä»»ãããã¹ãã§ã¯ãããŸãããã¹ããŒã ã«åºã¥ããŠãæé©ãªéžæã¯ã«ãŒãã¹ã€ãããšããŠdsw1ã§ãããããã£ãŠãSTPã¯asw1ãšasw2ã®éã®ãªã³ã¯ããããã¯ããŸããããã¯ãã¹ãŠãè¿ããããã³ã«ã«èª¬æããå¿ èŠããããŸãããããŠåœŒã«ãšã£ãŠã®äž»ãªãã®ã¯äœã§ããïŒããªããžIDãããŠãããã2ã€ã®æ°åã§æ§æãããŠããããšã¯å¶ç¶ã§ã¯ãããŸãããåªå é äœã¯ãã«ãŒãã¹ã€ããã®éžæçµæã«åœ±é¿ãäžããããšãã§ããããã«ããããã¯ãŒã¯ãšã³ãžãã¢ã«ä»»ãããŠããçšèªã§ããããã§ãç§ãã¡ã®ä»äºã¯æžããããšã§ãSTPïŒãç®çã®ã¹ã€ããã®åªå é äœãšèŠãªããã«ãŒãããªããžã«ãªããŸãã 2ã€ã®æ¹æ³ããããŸãã
1ïŒæããã«çŸåšãããäœãåªå 床ãæåã§èšå®ããŸãã
msk-arbat-dsw1>
msk -arbat-dsw1ã®æå¹åïŒç«¯æ«ã®èšå®
msk-arbat-dsw1ïŒconfigïŒïŒspanning-tree vlan 3 priorityïŒ
<0-61440> 4096åäœã§ã®ããªããžãã©ã€ãªãªãã£
msk-arbat-dsw1ïŒconfigïŒïŒspanning-tree vlan 3 priority 4096
ããªããžIDãå°ãããªããããvlan 3ã®ã«ãŒãã«ãªããŸããã
msk-arbat-dsw1ïŒshow spanning-tree vlan 3
VLAN0003
ã¹ããã³ã°ããªãŒå¯Ÿå¿ãããã³ã«ieee
ã«ãŒãIDåªå 床4099
ã¢ãã¬ã¹000B.BE2E.392C
ãã®ããªããžã¯ã«ãŒã
Hello Time 2ç§Max Age 20ç§Forward Delay 15ç§
2ïŒã¹ããŒããªéçããã¹ãŠãããªãã«ä»£ãã£ãŠæ±ºå®ãããïŒ
msk-arbat-dsw1ïŒconfigïŒïŒspanning-tree vlan 3 root primary
ç§ãã¡ã¯ãã§ãã¯ããŸãïŒ
msk-arbat-dsw1#show spanning-tree vlan 3
VLAN0003
Spanning tree enabled protocol ieee
Root ID Priority 24579
Address 000B.BE2E.392C
This bridge is the root
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
éçãå¥åŠãªåªå é äœãæã£ãŠããããšãããããŸãããã®äžžã姿ã¯ã©ãããæ¥ãã®ã§ããïŒãããŠãã¹ãŠãåçŽã§ã-STPã¯æå°åªå é äœïŒã€ãŸããã«ãŒãã¹ã€ãããæã£ãŠããåªå é äœïŒã調ã¹ãããã2ã€ã³ã¯ãªã¡ã³ãã¹ãããïŒ4096ãã€ãŸãåèš8192ïŒæžãããŸãããªã2ã€ïŒãŸããå¥ã®ã¹ã€ããã§ã³ãã³ãspanning-tree vlan n root secondaryïŒpriority = root-4096ã®åªå é äœãå²ãåœãŠãïŒãäžããããšãã§ããããã«ããããã«ãçŸåšã®ã«ãŒãã¹ã€ããã«äœããçºçããå Žåããã®æ©èœã確å®ã«å®è¡ãããããã«ããŸãã ãã¹ãã¢ãã asw2ãšasw1ã®éã®ãªã³ã¯ã®ã©ã€ããã©ã®ããã«é»è²ã«ãªã£ãããããã§ã«å³ã§èŠãŠããã§ããããïŒãã®STPã¯ã«ãŒããåŒãè£ããŸããããããŠãããã¯ç§ãã¡ãæãã å Žæã«ãããŸããçãïŒç¢ºèªããŸãããïŒé»çã¯é»çã§ãããèšå®ã¯äºå®ã§ãã
msk-arbat-asw2#show spanning-tree vlan 3 VLAN0003 Spanning tree enabled protocol ieee Root ID Priority 24579 Address 000B.BE2E.392C Cost 4 Port 26(GigabitEthernet1/2) Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec Bridge ID Priority 32771 (priority 32768 sys-id-ext 3) Address 000A.F385.D799 Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec Aging Time 20 Interface Role Sts Cost Prio.Nbr Type ---------------- ---- --- --------- -------- -------------------------------- Fa0/1 Desg FWD 19 128.1 P2p Gi1/1 Altn BLK 4 128.25 P2p Gi1/2 Root FWD 4 128.26 P2p
ããã§ãSTPã®ä»çµã¿ã«æå¿ããŸããPTO1ã©ãããããã®ã³ãã³ãã©ã€ã³ã«ç§»åããŠãã¡ãŒã«ãµãŒããŒãžã®pingãç¡éã«éå§ããŸãïŒ172.16.0.4ïŒã Pingã¯çŸåšãlaptop-asw3-dsw1-gw1-dsw1ãšããã«ãŒãããã©ããŸãïŒåœŒãããã¯ãäœæããçç±ã¯æããã§ã-ãããã¯ç°ãªãVLANããã®ãã®ã§ãïŒ-asw2-serverã 次ã«ãSimityã®ãŽãžã©ã䜿çšããŸããããŒãããã¯ã€ã€ãåŒãè£ãããšã«ãããdsw1ãšasw2ã®éã®æ¥ç¶ãåæããŸãïŒããªãŒã®åèšç®ã«å¿ èŠãªæéãããããŸãïŒã
pingãæ¶ããSTPãæ¥åãéå§ãã çŽ 30ç§ã§æ¥ç¶ã埩å ãããŸãã 圌ãã¯ãŽãžã©ãé転ããç«ãæ¶ããæ¥ç¶ãä¿®æ£ããã¯ã€ã€ãŒãå ã«æ»ããŸããã Pingã¯30ç§éåã³æ¶ããŸãïŒ ããŒããã©ããããããããã»ã©é«éã§ã¯ãããŸãããç¹ã«ãããšãã°éè¡ã®åŠçã»ã³ã¿ãŒã§ãããèµ·ãã£ãŠãããšæ³åãããªãã
ããããé ãPVST +ã«ã¯çãããããŸãïŒ ãããŠãçãã¯Fast PVST +ã§ãïŒããã¯ãããåŒã°ããŠãããã®ã§ã;ããã¯åè«ã§ã¯ãããŸããïŒRapid-PVSTïŒã 圌ãç§ãã¡ã«äžãããã®ãèŠãŠã¿ãŸãããã èšå®ã¢ãŒãã³ãã³ãã䜿çšããŠãã¢ã¹ã¯ã¯ã®ãã¹ãŠã®ã¹ã€ããã®STPã¿ã€ããå€æŽããŸããspanning-tree mode rapid-pvst
ããäžåºŠpingãå®è¡ãããŽãžã©ã«é»è©±ããŠãã ãããã¡ãã£ãšãè¡æ¹äžæã®pingã¯ã©ãã«ãããŸããïŒ ãããã¯ãRapid-PVSTã§ã¯ãããŸããã çè«çãªéšåããããããèŠããŠããããã«ããã®STPå®è£ ã¯ãããã°ãã¡ã€ã³ãªã³ã¯ãã¯ã©ãã·ã¥ããå Žåã«ãã¹ãããŒã眮ãããéåžžã«è¿ éã«ä»£æ¿ããŒãã«åãæ¿ããŸãã OKãã¯ã€ã€ãŒãå ã«æ»ããŸãã 1ã€ã¯pingã倱ããŸããã 6-8ã«æ¯ã¹ãŠæªããªãã§ãããïŒ
EtherChannel
èŠããŠãããŠãã ãããç§ãã¡ã¯ãªãã£ã¹ã¯ãŒã«ãŒããã®ã¬ããããªã³ã¯ãååŸãããµãŒããŒã«æå©ã«äžããŸãããïŒ ä»ã圌ãã¯ã貧ãã人ã ããåäžçŽã®æ°çŸã¡ã¬ãããã«åº§ã£ãŠããŸãïŒ ãã£ãã«ãæ¡åŒµããŠã¿ãŸããããEtherChannelãåŒã³åºããŠæ¯æŽããŸãã çŸæç¹ã§ã¯ãfa0 / 2 dsw1ããGi1 / 1 asw3ãžã®æ¥ç¶ããããã¯ã€ã€ãåæããŸãã asw3ã§äœ¿çšã§ããããŒãã調ã¹ãŸãããããfa0 / 20-24ã¯ç¡æã§ãã ããã§ããããåããŸãã dsw1ã®åŽãããããããfa0 / 19-23ã«ããŸãã EtherChannelã®ããŒããçžäºã«æ¥ç¶ããŸãã ã€ã³ã¿ãŒãã§ã€ã¹äžã®asw3ã§äœããèšå®ãããŸããéåžžããã®ãããªå Žåãããã©ã«ãã®interface range fa0 / 20-24æ§æã¢ãŒãã³ãã³ãã䜿çšãããããŒãïŒãŸãã¯ãã®å Žåã¯ããŒãïŒãããã©ã«ãèšå®ã«ãªã»ãããããŸãã æ®å¿µãªããããã±ãããã¬ãŒãµãŒã¯ãã®ãããªåªããããŒã ãç¥ããªããããæåã¢ãŒãã§ã¯åèšå®ãåé€ããŠããŒããé 眮ããŸãïŒåé¡ãåé¿ããããã«ãããè¡ãããšããå§ãããŸãïŒ
msk-arbat-asw3ïŒconfigïŒ#interface range fa0 / 20-24
msk-arbat-asw3ïŒconfig-if-rangeïŒïŒèª¬æãªã
msk-arbat-asw3ïŒconfig-if-rangeïŒ#no switchport access vlan
msk-arbat-asw3ïŒconfig-if-rangeïŒ#noã¹ã€ããããŒãã¢ãŒã
msk-arbat-asw3ïŒconfig-if-rangeïŒ#shutdown
ããŠä»éæ³ããŒã
msk-arbat-asw3ïŒconfig-if-rangeïŒïŒãã£ãã«ã°ã«ãŒã1ã¢ãŒãããªã³
dsw1ã§ãåãã§ãã
msk-arbat-dsw1ïŒconfigïŒ#interface range fa0 / 19-23
msk-arbat-dsw1ïŒconfig-if-rangeïŒïŒãã£ãã«ã°ã«ãŒã1ã¢ãŒããªã³
asw3ã€ã³ã¿ãŒãã§ã€ã¹ãäžãããšãåºæ¥äžããã§ããããã§ã¯ãEtherChannelãæ倧5ã€ã®ç©çãªã³ã¯ãæ¡åŒµããŸãã æ§æã§ã¯ãã€ã³ã¿ãŒãã§ã€ã¹Port-channel 1ãšããŠåæ ãããŸãããã©ã³ã¯ãæ§æããŸãïŒdsw1ã«å¯ŸããŠç¹°ãè¿ããŸãïŒã
msk-arbat-asw3ïŒconfigïŒ#int port-channel 1
msk-arbat-asw3ïŒconfig-ifïŒ#switchport mode trunk
msk-arbat-asw3ïŒconfig-ifïŒ#switchport trunk allowed vlan 2,101-104
STPãšåæ§ã«ãPacket Tracerã§ã€ãŒãµãã£ãã«ã䜿çšããå Žåã¯å€å°ã®å°é£ããããŸãã ååãšããŠãäžèšã®ã·ããªãªã«åŸã£ãŠèšå®ã§ããŸããããã«ã¹ãã§ãã¯ã«ã¯å€§ããªåé¡ããããŸãïŒã°ã«ãŒãå ã®ããŒãã®1ã€ãåæããåŸããã©ãã£ãã¯ã¯æ¬¡ã®ããŒãã«æµããŸããã2çªç®ã®ããŒããåæãããšããã«æ¥ç¶ã倱ãããã¹ã€ããããªã³ã«ããŠã埩å ãããŸããããŒãã
声ãåºãã°ããã®çç±ãããã°ããªãœãŒã¹ãéãããŠããããããããŸããããããã®åé¡ãå®å šã«é瀺ããããšã¯ã§ããŸããããã®ãããã»ãšãã©ã®ããšãèªç¿ã«ä»»ããŸãã
ãªãªãŒã¹è³æ
æ°ããåãæ¿ãèšç»
labã䜿çšããPTãã¡ã€ã« ã
ããã€ã¹æ§æ
STPãŸãã¯STP
ãªã³ã¯ã»ãã¥ãªãã£
ãªã³ã¯ã¢ã°ãªã²ãŒã·ã§ã³
確ç«ãããäŒçµ±ã«ãããšãHabrã®ç¡åã®èªè ã«ããæªåçã®è³ªåã¯ãã¹ãŠã LJã®ãµã€ã¯ã«ã®ããã°ã§å°ããããŸãã
eucariotã®ãããªãšãã®èšäºã®ãµããŒãã«æè¬ããŸãã