03-组播VLAN配置
本章节下载: 03-组播VLAN配置 (344.61 KB)
1 组播VLAN······································································································································· 1-1
1.1 组播VLAN简介······················································································································· 1-1
1.2 组播VLAN配置任务简介·········································································································· 1-2
1.3 配置基于端口的组播VLAN········································································································ 1-2
1.3.1 配置准备······················································································································· 1-3
1.3.2 配置用户端口属性·········································································································· 1-3
1.3.3 配置组播VLAN端口······································································································· 1-4
1.4 组播VLAN显示和维护············································································································· 1-5
1.5 组播VLAN典型配置举例·········································································································· 1-5
1.5.1 基于端口的组播VLAN配置举例(WX5000系列/WX3500E系列/WX5510E/WX2540E/WAC360系列适用) 1-5
1.5.2 基于端口的组播VLAN配置举例(WX6000系列适用)······················································ 1-9
1.5.3 基于端口的组播VLAN配置举例(WX5540E适用)························································· 1-15
1.5.4 基于端口的组播VLAN配置举例(WX3000E系列适用)·················································· 1-18
1.5.5 基于端口的组播VLAN配置举例(WX3000系列适用)····················································· 1-22
如图1-1所示,在传统的组播点播方式下,当属于不同VLAN的主机Host A、Host B和Host C同时点播同一组播组时,三层设备(Router A)需要把组播数据在每个用户VLAN(即主机所属的VLAN)内都复制一份发送给二层设备(AC)。这样既造成了带宽的浪费,也给三层设备增加了额外的负担。
图1-1 未运行组播VLAN时的组播数据传输
可以使用组播VLAN功能解决这个问题。在二层设备上配置了组播VLAN后,三层设备只需把组播数据在组播VLAN内复制一份发送给二层设备,而不必在每个用户VLAN内都复制一份,从而节省了网络带宽,也减轻了三层设备的负担。
如图1-2所示,接收者主机Host A、Host B和Host C分属不同的用户VLAN,AC上连接用户的端口均为Hybrid类型。在AC上配置组播VLAN,如VLAN 10,将所有用户端口都添加到该组播VLAN内,并在组播VLAN和所有用户VLAN内都使能IGMP Snooping。
配置完成后,当AC上上的用户端口收到来自主机的IGMP报文时,会为其打上组播VLAN的Tag并上送给IGMP查询器,于是IGMP Snooping就可以在组播VLAN中对路由器端口和成员端口进行统一的维护。这样,Router A只需把组播数据在组播VLAN内复制一份发送给AC即可,AC会将其分发给该组播VLAN内的所有成员端口。
表1-1 组播VLAN配置任务简介
配置组播VLAN端口 |
在配置基于端口的组播VLAN时,需要先配置各用户端口的属性,然后再将配置好的用户端口添加到组播VLAN内。
· 只允许将以太网接口、WLAN-ESS接口或二层聚合接口类型的用户端口配置为组播VLAN的端口。
· 以太网接口视图或WLAN-ESS接口视图下的配置只对当前端口有效;二层聚合接口视图下的配置对当前接口有效;端口组视图下的配置对当前端口组中的所有端口有效。
在配置基于端口的组播VLAN之前,需完成以下任务:
· 在欲配置为组播VLAN的VLAN内使能IGMP Snooping
· 在所有的用户VLAN内都内使能IGMP Snooping
首先,配置用户端口为Hybrid类型,允许用户VLAN的报文通过,缺省VLAN为其所属的用户VLAN。
然后,配置用户端口允许组播VLAN的报文不带Tag通过,这样,当二层设备通过组播VLAN收到来自上游、打有组播VLAN Tag的组播数据报文时,会将其Tag去掉后再向下游转发。
配置Hybrid端口的缺省VLAN |
缺省情况下,Hybrid端口的缺省VLAN为VLAN 1 |
||
允许指定VLAN通过当前Hybrid端口 |
port hybrid vlan vlan-id-list { tagged | untagged } |
缺省情况下,Hybrid端口只允许VLAN 1通过 |
有关port link-type、port hybrid pvid vlan和port hybrid vlan命令的详细介绍,请参见“二层技术命令参考”中的“VLAN”。
首先需要把某个指定的VLAN配置为组播VLAN,然后将配置好的用户端口添加到该组播VLAN内,使其成为组播VLAN的端口:既可以在组播VLAN内添加端口,也可以在端口上指定其所属的组播VLAN——这两种配置方式是等效的。
表1-3 在组播VLAN内配置组播VLAN端口
配置指定VLAN为组播VLAN,并进入组播VLAN视图 |
缺省情况下,VLAN不是组播VLAN |
|
向组播VLAN内添加端口 |
port interface-list |
缺省情况下,组播VLAN内没有端口 |
配置指定VLAN为组播VLAN,并进入组播VLAN视图 |
缺省情况下,VLAN不是组播VLAN |
||
port multicast-vlan vlan-id |
在完成上述配置后,在任意视图下执行display命令可以显示配置后组播VLAN的运行情况,通过查看显示信息验证配置的效果。
表1-5 组播VLAN显示和维护
查看组播VLAN的信息 |
display multicast-vlan [ vlan-id ] [ | { begin | exclude | include } regular-expression ] |
· 如图1-3所示,Router通过接口Ethernet1/1连接组播源(Source),通过接口Ethernet1/2连接AC;
· AC通过GE1/0/1端口与Router相连,通过GE1/0/2与Switch相连。
· Switch通过Ethernet1/1与AC相连,通过Ethernet1/2与AP相连。
· Router与AC之间运行IGMPv2,AC上运行版本2的IGMP Snooping,并由Router充当IGMP查询器;
· 在AC上创建VLAN 10,将端口GE1/0/1 VLAN 10中,并在该VLAN下使能IGMP Snooping。
· 在AC上创建WLAN-ESS 1口,将WLAN-ESS 1配置为Hybrid类型,缺省为VLAN 10,同时允许VLAN 2、VLAN 3和VLAN 10的报文通过。根据Client A、B的MAC地址配置MAC-VLAN使其分别属于VLAN 2、VLAN 3。
· 在Switch上创建VLAN 2、VLAN 3和VLAN 10,并在VLAN内使能IGMP Snooping。将Eth1/1和Eth1/2的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
· 组播源向组播组224.1.1.1发送组播数据,Client A、Client B都是该组播组的接收者(Receiver);
· 通过配置基于端口的组播VLAN,使Router通过组播VLAN向AC下分属不同用户VLAN的主机分发组播数据。
图1-3 基于端口的组播VLAN配置组网图(WX5000系列/WX3500E系列/WX5510E/WX2540E/WAC360系列适用)
(1) 配置IP地址
请按照图1-3配置各接口的IP地址和子网掩码,具体配置过程略。
# 使能IP组播路由,在各接口上使能PIM-DM,并在主机侧接口Ethernet1/2上使能IGMP。
[Router] multicast routing-enable
[Router] interface ethernet 1/1
[Router-Ethernet1/1] pim dm
[Router-Ethernet1/1] quit
[Router] interface ethernet 1/2
[Router-Ethernet1/2] pim dm
[Router-Ethernet1/2] igmp enable
[Router-Ethernet1/2] quit
# 全局使能IGMP Snooping。
[AC] igmp-snooping
[AC-igmp-snooping] quit
# 创建VLAN 10,把端口GE1/0/1添加到该VLAN中,并在该VLAN内使能IGMP Snooping。
[AC-vlan10] port GigabitEthernet 1/0/1
[AC-vlan10] igmp-snooping enable
[AC-vlan10] quit
# 将GE1/0/2的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[AC] interface GigabitEthernet 1/0/2
[AC-GigabitEthernet1/0/2] port link-type trunk
[AC-GigabitEthernet1/0/2] port trunk permit vlan 2 3 10
[AC-GigabitEthernet1/0/2] quit
# 在AC上创建VLAN 2、VLAN 3和WLAN-ESS 1,将WLAN-ESS 1配置为Hybrid类型,缺省为VLAN 10,同时允许VLAN 2、VLAN 3和VLAN 10的报文通过,且均不携带Tag。
[AC-vlan2] vlan 3
[AC-vlan3] quit
[AC] interface WLAN-ESS 1
[AC-WLAN-ESS1] port link-type hybrid
[AC-WLAN-ESS1] port hybrid pvid vlan 10
[AC-WLAN-ESS1] port hybrid vlan 2 3 10 untagged
[AC-WLAN-ESS1] mac-vlan enable
# 根据Client A、B的MAC地址配置MAC-VLAN使其分别属于VLAN2、VLAN3。
[AC] mac-vlan mac-address 6A-74-B3 vlan 2
[AC] mac-vlan mac-address A6-5B-89 vlan 3
# 在VLAN 2、VLAN 3内分别使能IGMP Snooping。
[AC-vlan2] igmp-snooping enable
[AC-vlan2] quit
[AC] vlan 3
[AC-vlan3] igmp-snooping enable
[AC-vlan3] quit
# 配置VLAN 10为组播VLAN。
# 将端口WLAN-ESS 1添加到组播VLAN 10内。
[AC-mvlan-10] quit
# 全局使能IGMP Snooping。
[Switch] igmp-snooping
[Switch-igmp-snooping] quit
# 创建VLAN 10、VLAN 2和VLAN 3,并在VLAN内使能IGMP Snooping。
[Switch-vlan10] igmp-snooping enable
[Switch-vlan10] vlan 2
[Switch-vlan2] igmp-snooping enable
[Switch-vlan2] vlan 3
[Switch-vlan3] igmp-snooping enable
[Switch-vlan3] quit
# 将Eth1/1和Eth1/2的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[Switch] interface ethernet 1/1
[Switch-Ethernet1/1] port link-type trunk
[Switch-Ethernet1/1] port trunk permit vlan 2 3 10
[Switch-Ethernet1/1] quit
[Switch] interface ethernet 1/2
[Switch-Ethernet1/2] port link-type trunk
[Switch-Ethernet1/2] port trunk permit vlan 2 3 10
[Switch-Ethernet1/2] quit
# 查看AC上所有组播VLAN的信息。
Total 1 multicast-vlan(s)
Multicast vlan 10
port list:
WLAN-ESS 1
# 查看AC上IGMP Snooping组播组的信息。
[AC] display igmp-snooping group
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Port flags: D-Dynamic port, S-Static port, A-Aggregation port, C-Copy port
Subvlan flags: R-Real VLAN, C-Copy VLAN
Vlan(id):10.
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Router port(s):total 1 port.
GE1/0/1 (D)
IP group(s):the following ip group(s) match to one mac group.
IP group address:224.1.1.1
(0.0.0.0, 224.1.1.1):
Host port(s):total 1 port.
WLAN-DBSS1:1 (D)
MAC group(s):
MAC group address:0100-5e01-0101
Host port(s):total 1 port.
WLAN-DBSS 1:1
由此可见,IGMP Snooping统一在组播VLAN(VLAN 10)中维护路由器端口和成员端口。
· Router通过接口Ethernet1/1连接组播源(Source),通过接口Ethernet1/2连接无线控制器AC;
· AC通过GE0/0/1端口与Router相连,通过GE0/0/2与Switch相连;
· Switch通过Ethernet1/1与AC相连,通过Ethernet1/2与AP相连;
· 在AC上创建VLAN 10,将端口GE0/0/1添加到VLAN 10中,并在该VLAN下使能IGMP Snooping。
· 在AC上将XGE2/0/1的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
· Router与无线控制器AC之间运行IGMPv2,无线控制器AC上运行版本2的IGMP Snooping,并由Router充当IGMP查询器;
· 在AC上创建WLAN-ESS 1口,将WLAN-ESS 1配置为Hybrid类型,缺省为VLAN 10,同时允许VLAN 2、VLAN 3和VLAN 10的报文通过。根据Client A、B的MAC地址配置MAC-VLAN使其分别属于VLAN 2、VLAN 3。
· 在Switch上创建VLAN 2、VLAN 3和VLAN 10,并在VLAN内使能IGMP Snooping。将Eth1/1和Eth1/2的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
· 组播源向组播组224.1.1.1发送组播数据,Client A、Client B都是该组播组的接收者(Receiver);
· 通过配置基于端口的组播VLAN,使Router通过组播VLAN向无线控制器AC下用户的无线主机分发组播数据。
图1-4 基于端口的组播VLAN配置组网图(WX6000系列适用)
(1) 配置IP地址
请按照图1-4配置各接口的IP地址和子网掩码,具体配置过程略。
# 使能IP组播路由,在各接口上使能PIM-DM,并在主机侧接口Ethernet1/2上使能IGMP。
[Router] multicast routing-enable
[Router] interface ethernet 1/1
[Router-Ethernet1/1] pim dm
[Router-Ethernet1/1] quit
[Router] interface ethernet 1/2
[Router-Ethernet1/2] pim dm
[Router-Ethernet1/2] igmp enable
[Router-Ethernet1/2]quit
(3) 配置AC(WX6103适用)
# 在AC(WX6103的主控板)的配置界面上,全局使能IGMP Snooping。
[AC] igmp-snooping
[AC-igmp-snooping] quit
# 创建VLAN 10,并在该VLAN内使能IGMP Snooping。
[AC-vlan10] igmp-snooping enable
[AC-vlan10] quit
# 将XGE2/0/1的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[AC] interface Ten-GigabitEthernet 2/0/1
[AC-Ten-GigabitEthernet2/0/1] port link-type trunk
[AC-Ten-GigabitEthernet2/0/1] port trunk permit vlan 2 3 10
[AC-Ten-GigabitEthernet2/0/1] quit
# 从WX6103的主控板使用OAP命令登录到交换接口板的配置界面上,全局使能IGMP Snooping。创建VLAN 10,把端口GE0/0/1添加到该VLAN中,并在该VLAN内使能IGMP Snooping。
[Device] igmp-snooping
[Device] vlan 10
[Device-vlan10] port GigabitEthernet 0/0/1
[Device-vlan10] igmp-snooping enable
[Device-vlan10] quit
# 将GE0/0/2的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[Device] interface GigabitEthernet 0/0/2
[Device-GigabitEthernet0/0/2] port link-type trunk
[Device-GigabitEthernet0/0/2] port trunk permit vlan 2 3 10
[Device-GigabitEthernet0/0/2] quit
# 使用快捷键Ctrl + K从交换接口板的配置界面返回到主控板的配置界面上。
# 在AC上创建VLAN 2、VLAN 3和WLAN-ESS 1,将WLAN-ESS 1配置为Hybrid类型,缺省为VLAN 10,同时允许VLAN 2、VLAN 3和VLAN 10的报文通过,且均不携带Tag。
[AC-vlan2] vlan 3
[AC-vlan3] quit
[AC] interface WLAN-ESS 1
[AC-WLAN-ESS1] port link-type hybrid
[AC-WLAN-ESS1] port hybrid pvid vlan 10
[AC-WLAN-ESS1] port hybrid vlan 2 3 10 untagged
[AC-WLAN-ESS1] mac-vlan enable
# 根据Client A、B的MAC地址配置MAC-VLAN使其分别属于VLAN2、VLAN3。
[AC] mac-vlan mac-address 6A-74-B3 vlan 2
[AC] mac-vlan mac-address A6-5B-89 vlan 3
# 在VLAN 2、VLAN 3内分别使能IGMP Snooping。
[AC-vlan2] igmp-snooping enable
[AC-vlan2] quit
[AC] vlan 3
[AC-vlan3] igmp-snooping enable
[AC-vlan3] quit
# 配置VLAN 10为组播VLAN。
# 将端口WLAN-ESS 1添加到组播VLAN 10内。
[AC-mvlan-10] quit
(4) 配置AC(其他WX6000系列无线控制器业务板适用)
# 在安装WX6000系列无线控制器业务板的交换机的配置界面上,全局使能IGMP Snooping。
[Device] igmp-snooping
[Device-igmp-snooping] quit
# 创建VLAN 10,将GE0/0/1添加到该VLAN 10中,并在该VLAN内使能IGMP Snooping。
[Device-vlan10] port GigabitEthernet 0/0/1
[Device-vlan10] igmp-snooping enable
[Device-vlan10] quit
# 将GE0/0/2的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[Device] interface GigabitEthernet 0/0/2
[Device-GigabitEthernet0/0/2] port link-type trunk
[Device-GigabitEthernet0/0/2] port trunk permit vlan 2 3 10
[Device-GigabitEthernet0/0/2] quit
# 从交换机侧使用OAP命令登录到WX6000系列无线控制器业务板的配置界面上,全局使能IGMP Snooping。创建VLAN 10,并在该VLAN内使能IGMP Snooping。
Press CTRL+K to quit.
Connected to OAP!
User interface aux0 is available.
Press ENTER to get started.
<AC> system-view
[AC] igmp-snooping
[AC] vlan 10
[AC-vlan10] igmp-snooping enable
[AC-vlan10] quit
# 将XGE2/0/1的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[AC] interface Ten-GigabitEthernet 2/0/1
[AC-Ten-GigabitEthernet2/0/1] port link-type trunk
[AC-Ten-GigabitEthernet2/0/1] port trunk permit vlan 2 3 10
[AC-Ten-GigabitEthernet2/0/1] quit
# 在AC上创建VLAN 2、VLAN 3和WLAN-ESS 1,将WLAN-ESS 1配置为Hybrid类型,缺省为VLAN 10,同时允许VLAN 2、VLAN 3和VLAN 10的报文通过,且均不携带Tag。
[AC-vlan2] vlan 3
[AC-vlan3] quit
[AC] interface WLAN-ESS 1
[AC-WLAN-ESS1] port link-type hybrid
[AC-WLAN-ESS1] port hybrid pvid vlan 10
[AC-WLAN-ESS1] port hybrid vlan 2 3 10 untagged
[AC-WLAN-ESS1] mac-vlan enable
# 根据Client A、B的MAC地址配置MAC-VLAN使其分别属于VLAN2、VLAN3。
[AC] mac-vlan mac-address 6A-74-B3 vlan 2
[AC] mac-vlan mac-address A6-5B-89 vlan 3
# 在VLAN 2、VLAN 3内分别使能IGMP Snooping。
[AC-vlan2] igmp-snooping enable
[AC-vlan2] quit
[AC] vlan 3
[AC-vlan3] igmp-snooping enable
[AC-vlan3] quit
# 配置VLAN 10为组播VLAN。
# 将端口WLAN-ESS 1添加到组播VLAN 10内。
[AC-mvlan-10] quit
# 全局使能IGMP Snooping。
[Switch] igmp-snooping
[Switch-igmp-snooping] quit
# 创建VLAN 10、VLAN 2和VLAN 3,并在VLAN内使能IGMP Snooping。
[Switch-vlan10] igmp-snooping enable
[Switch-vlan10] vlan 2
[Switch-vlan2] igmp-snooping enable
[Switch-vlan2] vlan 3
[Switch-vlan3] igmp-snooping enable
[Switch-vlan3] quit
# 将Eth1/1和Eth1/2的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[Switch] interface ethernet 1/1
[Switch-Ethernet1/1] port link-type trunk
[Switch-Ethernet1/1] port trunk permit vlan 2 3 10
[Switch-Ethernet1/1] quit
[Switch] interface ethernet 1/2
[Switch-Ethernet1/2] port link-type trunk
[Switch-Ethernet1/2] port trunk permit vlan 2 3 10
[Switch-Ethernet1/2] quit
# 查看AC上所有组播VLAN的信息。
Total 1 multicast-vlan(s)
Multicast vlan 10
port list:
WLAN-ESS1
# 查看AC上IGMP Snooping组播组的信息。
[AC] display igmp-snooping group
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Port flags: D-Dynamic port, S-Static port, A-Aggregation port, C-Copy port
Subvlan flags: R-Real VLAN, C-Copy VLAN
Vlan(id):10.
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Router port(s):total 0 port.
IP group(s):the following ip group(s) match to one mac group.
IP group address:224.1.1.1
(0.0.0.0, 224.1.1.1):
Host port(s):total 1 port.
WLAN-DBSS1:1 (D)
MAC group(s):
MAC group address:0100-5e01-0101
Host port(s):total 1 port.
WLAN-DBSS1:1
由此可见,IGMP Snooping统一在组播VLAN(VLAN 10)中维护路由器端口和成员端口。
· Router通过接口Ethernet1/1连接组播源(Source),通过接口Ethernet1/2连接无线控制器AC;
· AC通过GE1/0/1端口与Router相连,通过GE1/0/2与AP相连。
· Router与无线控制器AC之间运行IGMPv2,无线控制器AC上运行版本2的IGMP Snooping,并由Router充当IGMP查询器;
· 在AC上创建VLAN 10,并在该VLAN下使能IGMP Snooping。将AC的端口GE1/0/1加入VLAN 10。将端口GE1/0/2的接口配型配置为Hybrid,并允许VLAN 2、VLAN 3和VLAN 10的报文通过,将内部聚合接口BAGG1的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
· 在AC上创建WLAN-ESS 1口,将WLAN-ESS 1配置为Hybrid类型,缺省为VLAN 10,同时允许VLAN 2、VLAN 3和VLAN 10的报文通过。根据Client A、B的MAC地址配置MAC-VLAN使其分别属于VLAN 2、VLAN 3。
· 组播源向组播组224.1.1.1发送组播数据,Client A、Client B都是该组播组的接收者(Receiver);
· 通过配置基于端口的组播VLAN,使Router通过组播VLAN向无线控制器AC下用户的无线主机分发组播数据。
图1-5 基于端口的组播VLAN配置组网图(WX5540E适用)
(1) 配置IP地址
请按照图1-4配置各接口的IP地址和子网掩码,具体配置过程略。
# 使能IP组播路由,在各接口上使能PIM-DM,并在主机侧接口Ethernet1/2上使能IGMP。
[Router] multicast routing-enable
[Router] interface ethernet 1/1
[Router-Ethernet1/1] pim dm
[Router-Ethernet1/1] quit
[Router] interface ethernet 1/2
[Router-Ethernet1/2] pim dm
[Router-Ethernet1/2] igmp enable
[Router-Ethernet1/2]quit
(3) 配置AC(WX5540E的无线控制引擎)
# 在AC的配置界面上,全局使能IGMP Snooping。
[AC] igmp-snooping
[AC-igmp-snooping] quit
# 创建VLAN 10,并在该VLAN内使能IGMP Snooping。
[AC-vlan10] igmp-snooping enable
[AC-vlan10] quit
# 将AC的上聚合接口的接口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[AC]interface Bridge-Aggregation 1
[AC-Bridge-Aggregation1] port link-type trunk
[AC-Bridge-Aggregation1] port trunk permit vlan 2 3 10
[AC-Bridge-Aggregation1]quit
# 从无线控制引擎侧使用oap命令登录到交换引擎的配置界面上,全局使能IGMP Snooping。创建VLAN 10,把端口GE1/0/1添加到该VLAN中,并在该VLAN内使能IGMP Snooping。
Press CTRL+K to quit.
Connected to OAP!
User interface aux0 is available.
Press ENTER to get started.
<Device> system-view
[Device] igmp-snooping
[Device] vlan 10
[Device-vlan10] port GigabitEthernet 1/0/1
[Device-vlan10] igmp-snooping enable
[Device-vlan10] quit
# 将端口GE1/0/2的接口类型配置为Hybrid,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[Device]interface GigabitEthernet 1/0/2
[Device-GigabitEthernet1/0/2] port link-type hybrid
[Device-GigabitEthernet1/0/2] port hybrid vlan 2 3 10 tagged
[Device-GigabitEthernet1/0/2] quit
# 使用快捷键Ctrl + K从交换引擎配置界面返回到无线控制引擎的配置界面上。
# 在AC上创建VLAN 2、VLAN 3和WLAN-ESS 1,将WLAN-ESS 1配置为Hybrid类型,缺省为VLAN 10,同时允许VLAN 2、VLAN 3和VLAN 10的报文通过,且均不携带Tag。
[AC-vlan2] vlan 3
[AC-vlan3] quit
[AC] interface WLAN-ESS 1
[AC-WLAN-ESS1] port link-type hybrid
[AC-WLAN-ESS1] port hybrid pvid vlan 10
[AC-WLAN-ESS1] port hybrid vlan 2 3 10 untagged
[AC-WLAN-ESS1] mac-vlan enable
# 根据Client A、B的MAC地址配置MAC-VLAN使其分别属于VLAN2、VLAN3。
[AC] mac-vlan mac-address 6A-74-B3 vlan 2
[AC] mac-vlan mac-address A6-5B-89 vlan 3
# 在VLAN 2、VLAN 3内分别使能IGMP Snooping。
[AC-vlan2] igmp-snooping enable
[AC-vlan2] quit
[AC] vlan 3
[AC-vlan3] igmp-snooping enable
[AC-vlan3] quit
# 配置VLAN 10为组播VLAN。
# 将端口WLAN-ESS 1添加到组播VLAN 10内。
[AC-mvlan-10] quit
# 查看AC上所有组播VLAN的信息。
Total 1 multicast-vlan(s)
Multicast vlan 10
port list:
WLAN-ESS1
# 查看AC上IGMP Snooping组播组的信息。
[AC] display igmp-snooping group
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Port flags: D-Dynamic port, S-Static port, C-Copy port, P-PIM port
Subvlan flags: R-Real VLAN, C-Copy VLAN
Vlan(id):10.
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Router port(s):total 0 port.
IP group(s):the following ip group(s) match to one mac group.
IP group address:224.1.1.1
(0.0.0.0, 224.1.1.1):
Host port(s):total 1 port.
WLAN-DBSS1:1 (D)
MAC group(s):
MAC group address:0100-5e01-0101
Host port(s):total 1 port.
WLAN-DBSS1:1
由此可见,IGMP Snooping统一在组播VLAN(VLAN 10)中维护路由器端口和成员端口。
· Router通过接口Ethernet1/1连接组播源(Source),通过接口Ethernet1/2连接无线控制器AC;
· AC通过GE1/0/1端口与Router相连,通过GE1/0/2与AP相连。
· Router与无线控制器AC之间运行IGMPv2,无线控制器AC上运行版本2的IGMP Snooping,并由Router充当IGMP查询器;
· 在AC上创建VLAN 10,并在该VLAN下使能IGMP Snooping。将AC的端口GE1/0/1加入VLAN 10。将端口GE1/0/2的接口配型配置为Hybrid,并允许VLAN 2、VLAN 3和VLAN 10的报文通过,将内部聚合接口BAGG1的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
· 在AC上创建WLAN-ESS 1口,将WLAN-ESS 1配置为Hybrid类型,缺省为VLAN 10,同时允许VLAN 2、VLAN 3和VLAN 10的报文通过。根据Client A、B的MAC地址配置MAC-VLAN使其分别属于VLAN 2、VLAN 3。
· 组播源向组播组224.1.1.1发送组播数据,Client A、Client B都是该组播组的接收者(Receiver);
· 通过配置基于端口的组播VLAN,使Router通过组播VLAN向无线控制器AC下用户的无线主机分发组播数据。
图1-6 基于端口的组播VLAN配置组网图(WX3000E系列适用)
(1) 配置IP地址
请按照图1-4配置各接口的IP地址和子网掩码,具体配置过程略。
# 使能IP组播路由,在各接口上使能PIM-DM,并在主机侧接口Ethernet1/2上使能IGMP。
[Router] multicast routing-enable
[Router] interface ethernet 1/1
[Router-Ethernet1/1] pim dm
[Router-Ethernet1/1] quit
[Router] interface ethernet 1/2
[Router-Ethernet1/2] pim dm
[Router-Ethernet1/2] igmp enable
[Router-Ethernet1/2]quit
(3) 配置AC(WX3024E的无线控制引擎)
# 在AC的配置界面上,全局使能IGMP Snooping。
[AC] igmp-snooping
[AC-igmp-snooping] quit
# 创建VLAN 10,并在该VLAN内使能IGMP Snooping。
[AC-vlan10] igmp-snooping enable
[AC-vlan10] quit
# 将AC的上聚合接口的接口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[AC]interface Bridge-Aggregation 1
[AC-Bridge-Aggregation1] port link-type trunk
[AC-Bridge-Aggregation1] port trunk permit vlan 2 3 10
[AC-Bridge-Aggregation1]quit
# 从无线控制引擎侧使用oap命令登录到交换引擎的配置界面上,全局使能IGMP Snooping。创建VLAN 10,把端口GE1/0/1添加到该VLAN中,并在该VLAN内使能IGMP Snooping。
Press CTRL+K to quit.
Connected to OAP!
User interface aux0 is available.
Press ENTER to get started.
<Device> system-view
[Device] igmp-snooping
[Device] vlan 10
[Device-vlan10] port GigabitEthernet 1/0/1
[Device-vlan10] igmp-snooping enable
[Device-vlan10] quit
# 将端口GE1/0/2的接口类型配置为Hybrid,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[Device]interface GigabitEthernet 1/0/2
[Device-GigabitEthernet1/0/2] port link-type hybrid
[Device-GigabitEthernet1/0/2] port hybrid vlan 2 3 10 tagged
[Device-GigabitEthernet1/0/2] quit
# 使用快捷键Ctrl + K从交换引擎配置界面返回到无线控制引擎的配置界面上。
# 在AC上创建VLAN 2、VLAN 3和WLAN-ESS 1,将WLAN-ESS 1配置为Hybrid类型,缺省为VLAN 10,同时允许VLAN 2、VLAN 3和VLAN 10的报文通过,且均不携带Tag。
[AC-vlan2] vlan 3
[AC-vlan3] quit
[AC] interface WLAN-ESS 1
[AC-WLAN-ESS1] port link-type hybrid
[AC-WLAN-ESS1] port hybrid pvid vlan 10
[AC-WLAN-ESS1] port hybrid vlan 2 3 10 untagged
[AC-WLAN-ESS1] mac-vlan enable
# 根据Client A、B的MAC地址配置MAC-VLAN使其分别属于VLAN2、VLAN3。
[AC] mac-vlan mac-address 6A-74-B3 vlan 2
[AC] mac-vlan mac-address A6-5B-89 vlan 3
# 在VLAN 2、VLAN 3内分别使能IGMP Snooping。
[AC-vlan2] igmp-snooping enable
[AC-vlan2] quit
[AC] vlan 3
[AC-vlan3] igmp-snooping enable
[AC-vlan3] quit
# 配置VLAN 10为组播VLAN。
# 将端口WLAN-ESS 1添加到组播VLAN 10内。
[AC-mvlan-10] quit
# 查看AC上所有组播VLAN的信息。
Total 1 multicast-vlan(s)
Multicast vlan 10
port list:
WLAN-ESS1
# 查看AC上IGMP Snooping组播组的信息。
[AC] display igmp-snooping group
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Port flags: D-Dynamic port, S-Static port, A-Aggregation port, C-Copy port
Subvlan flags: R-Real VLAN, C-Copy VLAN
Vlan(id):10.
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Router port(s):total 0 port.
IP group(s):the following ip group(s) match to one mac group.
IP group address:224.1.1.1
(0.0.0.0, 224.1.1.1):
Host port(s):total 1 port.
WLAN-DBSS1:1 (D)
MAC group(s):
MAC group address:0100-5e01-0101
Host port(s):total 1 port.
WLAN-DBSS1:1
由此可见,IGMP Snooping统一在组播VLAN(VLAN 10)中维护路由器端口和成员端口。
· Router通过接口Ethernet1/1连接组播源(Source),通过接口Ethernet1/2连接无线控制器AC;
· AC通过GE1/0/1端口与Router相连,通过GE1/0/2与AP相连。
· Router与无线控制器AC之间运行IGMPv2,无线控制器AC上运行版本2的IGMP Snooping,并由Router充当IGMP查询器;
· 在AC上创建VLAN 10,并在该VLAN下使能IGMP Snooping。将AC的端口GE1/0/1加入VLAN 10。将端口GE1/0/2的接口配型配置为Hybrid,并允许VLAN 2、VLAN 3和VLAN 10的报文通过,将内部的端口GigabtiEthernet 1/0/1的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
· 在AC上创建WLAN-ESS 1口,将WLAN-ESS 1配置为Hybrid类型,缺省为VLAN 10,同时允许VLAN 2、VLAN 3和VLAN 10的报文通过。根据Client A、B的MAC地址配置MAC-VLAN使其分别属于VLAN 2、VLAN 3。
· 组播源向组播组224.1.1.1发送组播数据,Client A、Client B都是该组播组的接收者(Receiver);
· 通过配置基于端口的组播VLAN,使Router通过组播VLAN向无线控制器AC下用户的无线主机分发组播数据。
图1-7 基于端口的组播VLAN配置组网图(WX3000系列适用)
(1) 配置IP地址
请按照图1-4配置各接口的IP地址和子网掩码,具体配置过程略。
# 使能IP组播路由,在各接口上使能PIM-DM,并在主机侧接口Ethernet1/2上使能IGMP。
[Router] multicast routing-enable
[Router] interface ethernet 1/1
[Router-Ethernet1/1] pim dm
[Router-Ethernet1/1] quit
[Router] interface ethernet 1/2
[Router-Ethernet1/2] pim dm
[Router-Ethernet1/2] igmp enable
[Router-Ethernet1/2]quit
(3) 配置AC(WX3024的无线控制引擎)
# 在AC的配置界面上,全局使能IGMP Snooping。
[AC] igmp-snooping
[AC-igmp-snooping] quit
# 创建VLAN 10,并在该VLAN内使能IGMP Snooping。
[AC-vlan10] igmp-snooping enable
[AC-vlan10] quit
# 将AC内部的端口GigabtiEthernet 1/0/1的端口类型配置为Trunk,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[AC]interface GigabitEthernet 1/0/1
[AC-GigabitEthernet1/0/1] port link-type trunk
[AC-GigabitEthernet1/0/1] port trunk permit vlan 2 3 10
[AC-GigabitEthernet1/0/1]quit
# 从无线控制引擎侧使用oap命令登录到交换引擎的配置界面上,全局使能IGMP Snooping。创建VLAN 10,把端口GE1/0/1添加到该VLAN中,并在该VLAN内使能IGMP Snooping。
Press CTRL+K to quit.
Connected to OAP!
User interface aux0 is available.
Press ENTER to get started.
<Device> system-view
[Device] igmp-snooping
[Device] vlan 10
[Device-vlan10] port GigabitEthernet 1/0/1
[Device-vlan10] igmp-snooping enable
[Device-vlan10] quit
# 将端口GE1/0/2的接口类型配置为Hybrid,并允许VLAN 2、VLAN 3和VLAN 10的报文通过。
[Device]interface GigabitEthernet 1/0/2
[Device-GigabitEthernet1/0/2] port link-type hybrid
[Device-GigabitEthernet1/0/2] port hybrid vlan 2 3 10 tagged
[Device-GigabitEthernet1/0/2] quit
# 使用快捷键Ctrl + K从交换引擎配置界面返回到无线控制引擎的配置界面上。
# 在AC上创建VLAN 2、VLAN 3和WLAN-ESS 1,将WLAN-ESS 1配置为Hybrid类型,缺省为VLAN 10,同时允许VLAN 2、VLAN 3和VLAN 10的报文通过,且均不携带Tag。
[AC-vlan2] vlan 3
[AC-vlan3] quit
[AC] interface WLAN-ESS 1
[AC-WLAN-ESS1] port link-type hybrid
[AC-WLAN-ESS1] port hybrid pvid vlan 10
[AC-WLAN-ESS1] port hybrid vlan 2 3 10 untagged
[AC-WLAN-ESS1] mac-vlan enable
# 根据Client A、B的MAC地址配置MAC-VLAN使其分别属于VLAN2、VLAN3。
[AC] mac-vlan mac-address 6A-74-B3 vlan 2
[AC] mac-vlan mac-address A6-5B-89 vlan 3
# 在VLAN 2、VLAN 3内分别使能IGMP Snooping。
[AC-vlan2] igmp-snooping enable
[AC-vlan2] quit
[AC] vlan 3
[AC-vlan3] igmp-snooping enable
[AC-vlan3] quit
# 配置VLAN 10为组播VLAN。
# 将端口WLAN-ESS 1添加到组播VLAN 10内。
[AC-mvlan-10] quit
# 查看AC上所有组播VLAN的信息。
Total 1 multicast-vlan(s)
Multicast vlan 10
port list:
WLAN-ESS1
# 查看AC上IGMP Snooping组播组的信息。
[AC] display igmp-snooping group
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Port flags: D-Dynamic port, S-Static port, A-Aggregation port, C-Copy port
Subvlan flags: R-Real VLAN, C-Copy VLAN
Vlan(id):10.
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Router port(s):total 0 port.
IP group(s):the following ip group(s) match to one mac group.
IP group address:224.1.1.1
(0.0.0.0, 224.1.1.1):
Host port(s):total 1 port.
WLAN-DBSS1:1 (D)
MAC group(s):
MAC group address:0100-5e01-0101
Host port(s):total 1 port.
WLAN-DBSS1:1
由此可见,IGMP Snooping统一在组播VLAN(VLAN 10)中维护路由器端口和成员端口。
不同款型规格的资料略有差异, 详细信息请向具体销售和400咨询。H3C保留在没有任何通知或提示的情况下对资料内容进行修改的权利!