{"id":454,"date":"2020-04-06T15:39:40","date_gmt":"2020-04-06T13:39:40","guid":{"rendered":"http:\/\/tech.sosthe.sk\/?page_id=454"},"modified":"2020-04-06T15:39:40","modified_gmt":"2020-04-06T13:39:40","slug":"7-konfiguracia-vlan-vtp","status":"publish","type":"page","link":"http:\/\/tech.sosthe.sk\/index.php\/ccna\/cisco-ios\/7-konfiguracia-vlan-vtp\/","title":{"rendered":"7. Konfigur\u00e1cia VLAN, VTP"},"content":{"rendered":"<div class=\"entry-content\">\n<h3><span>\u010c\u00edsla VLAN<\/span><\/h3>\n<p><span>VLANy sa be\u017ene identifikuj\u00fa pomocou \u010d\u00edsla, tak\u017ee m\u00e1me napr\u00edklad VLAN 10. Pre jednoduch\u0161ie zapam\u00e4tanie a orient\u00e1ciu sa k nim e\u0161te prira\u010fuj\u00fa men\u00e1.<\/span><\/p>\n<p><span>Cisco switche by v posledn\u00fdch rokoch mali podporova\u0165 tieto \u010d\u00edseln\u00e9 rozsahy pre VLANy.\u00a0Star\u0161ie zariadenia nepodporuj\u00fa \u010d\u00edsla nad 1005, navy\u0161e tieto VLANy nie s\u00fa pren\u00e1\u0161an\u00e9 pomocou VTP a neukladaj\u00fa sa do VLAN datab\u00e1zy.<\/span><\/p>\n<table>\n<tbody>\n<tr>\n<th><span>VLANy<\/span><\/th>\n<th><span>popis<\/span><\/th>\n<\/tr>\n<tr>\n<td><span>0 a 4095<\/span><\/td>\n<td><span>rezervovan\u00e9 pre syst\u00e9mov\u00e9 pou\u017eitie<\/span><\/td>\n<\/tr>\n<tr>\n<td><span>1<\/span><\/td>\n<td><span>defaultn\u00fd VLAN, \u0161tandardne obsahuje v\u0161etky porty, ned\u00e1 sa zmaza\u0165<\/span><\/td>\n<\/tr>\n<tr>\n<td><span>2-1001<\/span><\/td>\n<td><span>be\u017en\u00fd rozsah pre ethernetov\u00e9 VLANy<\/span><\/td>\n<\/tr>\n<tr>\n<td><span>1002-1005<\/span><\/td>\n<td><span>\u0161peci\u00e1lny defaultn\u00fd VLANy pre Token Ring a FDDI, nedaj\u00fa sa zmaza\u0165<\/span><\/td>\n<\/tr>\n<tr>\n<td><span>1006-4094<\/span><\/td>\n<td><span>Extended VLAN &#8211; roz\u0161\u00edren\u00e9 VLANy pre ethernet, nie s\u00fa v\u017edy podporovan\u00e9<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h3><span>Vytvorenie a pomenovanie VLANy<\/span><\/h3>\n<p><span>Konfigur\u00e1cia VLAN je (u niektor\u00fdch typov switchov) udr\u017eiavan\u00e1 v be\u017eiaci konfigur\u00e1ciu a v s\u00fabore\u00a0<\/span><code>vlan.dat<\/code><span>.<\/span><\/p>\n<p><span>Nov\u00fa VLAN vytvor\u00edme nasleduj\u00facim pr\u00edkazom, ak u\u017e VLAN existuje, tak sa prepneme do jej konfigur\u00e1cie.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>vlan 10 <\/strong>                      \/\/ vytvorenie \/ prepnutie do VLAN 10<\/span><\/pre>\n<p><span>Teraz sme v konfigur\u00e1cii VLANy a m\u00f4\u017eeme nastavi\u0165 nieko\u013eko parametrov, dobr\u00e9 je nastavi\u0165 meno VLANy pre \u013eah\u0161iu orient\u00e1ciu.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config-vlan) # <strong>name NET1 <\/strong>              \/\/ pomenovanie VLANy <\/span><\/pre>\n<p><span>Z vlastnost\u00ed, ktor\u00e9 m\u00f4\u017eeme nastavi\u0165 pre cel\u00fa VLAN, spomeniem iba zmenu IP MTU (maxim\u00e1lna ve\u013ekos\u0165 pren\u00e1\u0161an\u00fdch paketov &#8211; payload r\u00e1mca), \u0161tandardn\u00e9 je 1500B pre Ethernet (r\u00e1mec m\u00e1 ve\u013ekos\u0165 1518B).<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config-vlan) # <strong>MTU 2000 <\/strong>               \/\/ mo\u017en\u00e9 hodnoty 576 a\u017e 18190 (pod\u013ea typu switche)<\/span><\/pre>\n<p><span>Zmeny sa ulo\u017eia pri opusten\u00ed konfigur\u00e1cie.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config-vlan) # <strong>exit <\/strong>                   \/\/ o \u00farove\u0148 vy\u0161\u0161ie<\/span><\/pre>\n<p><span>Zru\u0161i\u0165 VLAN m\u00f4\u017eeme \u0161tandardne.\u00a0Pri zru\u0161en\u00ed VLANy v\u0161ak ned\u00f4jde k odstr\u00e1neniu v\u00e4zieb, ktor\u00e9 na \u0148u existuj\u00fa (ako zaradenie portov do VLANy).<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>no vlan 10 <\/strong>                   \/\/ zmazanie VLANy 10<\/span><\/pre>\n<p class=\"notice\"><strong><em><span>Pozn .:<\/span><\/em><\/strong><span>\u00a0VLAN vytvor\u00edme tie\u017e t\u00fdm, ke\u010f ju pou\u017eijeme na ur\u010ditom mieste.\u00a0Napr\u00edklad, ak port zarad\u00edme do neexistuj\u00face VLANy, tak sa t\u00e1to vytvor\u00ed.<\/span><\/p>\n<h3><span>Nastavenie IP adresy pre VLAN<\/span><\/h3>\n<p><span>VLANy s\u00fa virtu\u00e1lne interface, preto s nimi m\u00f4\u017eeme vykon\u00e1va\u0165 mno\u017estvo oper\u00e1ci\u00ed ako s klasick\u00fdm rozhran\u00edm (portom).\u00a0Jednou z mo\u017enost\u00ed je nastavenie IP adresy, t\u00fdm vlastne nastav\u00edme adresu switcha v danej VLAN.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>interface vlan 10 <\/strong>                          \/\/ prepnutie do konfigur\u00e1cie \r\nSWITCH (config-if) # <strong>ip address 192.168.190.1 255.255.255.0 <\/strong>  \/\/ nastavenie IP adresy \r\nSWITCH (config-if) # <strong>no shutdown <\/strong>                             \/\/ nahodenie interfacu<\/span><\/pre>\n<h4><span>Switch Virtual Interface &#8211; SVI<\/span><\/h4>\n<p><span>Vy\u0161\u0161ie uveden\u00e1 inform\u00e1cia nie je presn\u00e1.\u00a0Spr\u00e1vne mus\u00edme poveda\u0165, \u017ee pre ka\u017ed\u00fa VLAN m\u00f4\u017eeme vytvori\u0165\u00a0 <\/span><strong><em><span>Switch Virtual Interface<\/span><\/em><\/strong><span>\u00a0(SVI), \u010do je ten spom\u00ednan\u00fd virtu\u00e1lny interface.\u00a0VLANy a SVI v\u0161ak existuj\u00fa nez\u00e1visle na sebe, aj ke\u010f sa vykon\u00e1va mapovanie (ktor\u00e9 m\u00f4\u017ee by\u0165 maxim\u00e1lne 1: 1) medzi SVI a VLAN.\u00a0SVI vytvor\u00edme prv\u00fdm pr\u00edstupom do neho a m\u00f4\u017eeme ho vytvori\u0165 aj pre neexistuj\u00face VLAN.\u00a0SVI pracuje na 3. vrstve ISO \/ OSI modelu a defaultne je vytvoren\u00fd pre VLAN 1 (a nemo\u017eno ho zmaza\u0165).\u00a0SVI potrebujeme, ak chceme vykon\u00e1va\u0165\u00a0<\/span><em><strong><span>inter VLAN routing<\/span><\/strong><\/em><span>\u00a0(routovat prev\u00e1dzka medzi VLAN) alebo umo\u017eni\u0165\u00a0<\/span><em><strong><span>IP konektivitu ku switchu<\/span><\/strong><\/em><span>\u00a0(pre pr\u00edstup na CLI cez telnet \/ SSH a podobn\u00e9 funkcie).<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>interface vlan 15 <\/strong>        \/\/ vytvorenie SVI<\/span><\/pre>\n<p><span>Pre zmazanie SVI pou\u017eijeme<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>no interface vlan 15 <\/strong>     \/\/ zmazanie SVI<\/span><\/pre>\n<h3><span>VLAN 1<\/span><\/h3>\n<p><span>Na switchoch, ktor\u00e9 podporuj\u00fa VLANy, mus\u00ed existova\u0165 aspo\u0148 jedna VLAN, preto\u017ee ka\u017ed\u00fd port mus\u00ed by\u0165 do nejakej zaraden\u00fd.\u00a0Na Cisco zariadeniach je to VLAN 1 a v\u0161etky porty, v predvolenom stave, s\u00fa do nej zaraden\u00e9.<\/span><\/p>\n<p><span>Z bezpe\u010dnostn\u00e9ho h\u013eadiska je dobr\u00e9 nepou\u017e\u00edva\u0165 t\u00fato defaultn\u00fd VLAN 1, alebo ju pou\u017ei\u0165 len pre hos\u0165ovsk\u00e1 pr\u00edstup, a pre vlastn\u00fa sie\u0165 vytvori\u0165 in\u00e9 VLANy.<\/span><\/p>\n<p><span>VLAN 1 nemo\u017eno zmaza\u0165 a nemo\u017eno ju ani vypn\u00fa\u0165, \u010do je mo\u017en\u00e9 u v\u0161etk\u00fdch ostatn\u00fdch VLAN.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config-vlan) # <strong>shutdown <\/strong>           \/\/ vypnutie VLANy<\/span><\/pre>\n<h3><span>Priradenie portu do VLANy<\/span><\/h3>\n<p><span>\u0160tandardne s\u00fa v\u0161etky porty zaraden\u00e9 do VLAN 1. Ak chceme nakonfigurova\u0165\u00a0<\/span><strong><em><span>pr\u00edstupov\u00fd port<\/span><\/em><\/strong><span>\u00a0s pevn\u00fdm zaraden\u00edm do VLANy, postupujeme nasledovne.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>interface f0 \/ 1 <\/strong>                \/\/ prepnutie do konfigur\u00e1cie portu \r\nSWITCH (config-if) # <strong>switchport mode access <\/strong>    \/\/ nastavenie portu do pr\u00edstupov\u00e9ho m\u00f3du \r\nSWITCH (config-if) # <strong>switchport access vlan 10 <\/strong> \/\/ zaradenie do VLANy 10<\/span><\/pre>\n<h4><span>Voice VLAN<\/span><\/h4>\n<p><span>Pre VoIP (IP telef\u00f3nia) m\u00e1 Cisco rad zjednodu\u0161en\u00ed. Jedn\u00fdm z nich je konfigur\u00e1cia, kedy je do portu pripojen\u00fd Cisco telef\u00f3n (ktor\u00fd obsahuje mal\u00fd 3-portov\u00fd switch) a za n\u00edm je pripojen\u00e9 PC.\u00a0Na portu nastav\u00edme\u00a0<\/span><em><strong><span>access VLAN<\/span><\/strong><\/em><span>\u00a0, do nej spad\u00e1 komunik\u00e1cia PC, a tie\u017e\u00a0<\/span><em><strong><span>voice VLAN<\/span><\/strong><\/em><span>\u00a0(niekde ozna\u010dovan\u00e1 ako auxiliary VLAN &#8211; m\u00e1 aj viac pou\u017eit\u00ed), do ktorej sa zarad\u00ed komunik\u00e1cie telef\u00f3nu.\u00a0Aby v\u0161etko fungovalo ako m\u00e1, tak mus\u00edme pou\u017ei\u0165 Cisco IP telef\u00f3n a na porte mus\u00ed by\u0165 povolen\u00e9 CDP.\u00a0V skuto\u010dnosti v\u0161etko funguje tak, \u017ee sa na porte nastav\u00ed trunk, access VLAN sa stane native VLAN (teda netagovan\u00e1) a komunik\u00e1cia telef\u00f3nu pou\u017eije 802.1q.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config-if) # <strong>switchport voice vlan 20   <\/strong> \/\/ zaradenie hlasu do VLANy 20<\/span><\/pre>\n<h3><span>Konfigur\u00e1cia Trunk<\/span><\/h3>\n<p><span>Aby sa zachovala inform\u00e1cia o zaraden\u00ed do VLANy, a aby sa pren\u00e1\u0161ala d\u00e1ta v r\u00f4znych VLAN\u00e1ch medzi switchu, treba medzi nimi zriadi\u0165\u00a0<\/span><strong><span>trunk<\/span><\/strong><span>\u00a0.\u00a0Ten sa nastavuje na oboch stran\u00e1ch, na porte, ktor\u00fdm s\u00fa switche prepojen\u00e9 medzi sebou.\u00a0M\u00f4\u017eeme vyu\u017ei\u0165 \u0161tandard IEEE802.1q (tagovanie r\u00e1mcov) alebo Cisco propriet\u00e1ln\u00ed ISL (zap\u00fazdrovanie), ktor\u00e9 je podporovan\u00e9 iba u vy\u0161\u0161\u00edch Cisco switchov.\u00a0Tie\u017e je mo\u017en\u00e9 vymenova\u0165 VLANy, ktor\u00e9 sa m\u00f4\u017eu Trunk pren\u00e1\u0161a\u0165, ak pr\u00edkaz neuvedieme, tak sa pren\u00e1\u0161a v\u0161etky.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>interface f0 \/ 1   <\/strong>                         \/\/ prepnutie na spr\u00e1vny port \r\nSWITCH (config-if) # <strong>shutdown                               <\/strong>\/\/ odpor\u00fa\u010dan\u00e9 najprv vypn\u00fa\u0165 port \r\nSWITCH (config-if) # <strong>switchport trunk Encapsulation dot1q   <\/strong>\/\/ zvol\u00edm met\u00f3du rozli\u0161ovania VLAN \r\nSWITCH (config- if) # <strong>switchport trunk allowed vlan 2-200    <\/strong>\/\/ ktor\u00e9 VLANy sa pren\u00e1\u0161a \r\nSWITCH (config-if) # <strong>switchport trunk native vlan 10    <\/strong>    \/\/ ur\u010denie nat\u00edvne VLAN \r\nSWITCH (config-if) # <strong>switchport mode trunk <\/strong>                \/\/ nastavenie portu do TRUNK modu \r\nSWITCH (config-if) # <strong>switchport nonegotiate <\/strong>               \/\/ nevyjedn\u00e1va sa trunk protokolom DTP \r\nSWITCH (config-if) #<strong>no shutdown                            <\/strong>\/\/ nahodenie portu<\/span><\/pre>\n<p class=\"notice\"><em><strong><span>Pozn .:<\/span><\/strong><\/em><span>\u00a0Rovnak\u00fa konfigur\u00e1ciu je potrebn\u00e9 vykona\u0165 na druhej strane.\u00a0Aby sa ustanovil trunk, tak je treba dodr\u017ea\u0165 nieko\u013eko predpokladov.\u00a0Mus\u00ed \u00eds\u0165 o Point to Point linku, porty musia ma\u0165 nastaven\u00fa rovnak\u00fa r\u00fdchlos\u0165 (speed), duplex, met\u00f3du encapsulace a nat\u00edvne VLAN (u ISL sa m\u00f4\u017ee l\u00ed\u0161i\u0165).<\/span><\/p>\n<h3><span>Dynamic Trunk Protocol (DTP)<\/span><\/h3>\n<p><strong><em><span>Dynamic Trunk Protocol<\/span><\/em><\/strong><span>\u00a0(DTP) sl\u00fa\u017ei pre automatick\u00e9 vyjedn\u00e1vanie, \u010di je dan\u00fd port trunk.\u00a0Z bezpe\u010dnostn\u00e9ho h\u013eadiska sa odpor\u00fa\u010da t\u00fato mo\u017enos\u0165 nepou\u017e\u00edva\u0165, preto\u017ee by niektor\u00e9 stanice mohla vyjedna\u0165, \u017ee sa jedn\u00e1 o trunk a potom zachyt\u00e1va\u0165 v\u0161etku komunik\u00e1ciu.<\/span><\/p>\n<p><span>Konfigur\u00e1cia\u00a0<\/span><strong><span>DTP<\/span><\/strong><span>\u00a0sa vykon\u00e1va na ka\u017edom porte.<\/span><\/p>\n<ul>\n<li><span>Ak nastav\u00edme port napevno do\u00a0<\/span><strong><em><span>pr\u00edstupov\u00e9ho m\u00f3du<\/span><\/em><\/strong><span>\u00a0(access), tak nie je ovplyvnen\u00fd DTP protokolom.<\/span><\/li>\n<li><span>Pokia\u013e ho nastav\u00edme napevno do\u00a0<\/span><strong><em><span>trunk m\u00f3du<\/span><\/em><\/strong><span>\u00a0, tak sa op\u00e4\u0165 jeho m\u00f3d nem\u00f4\u017ee zmeni\u0165, ale on rokuje pomocou DTP, aby sa linka (druh\u00e1 strana) prepla do trunku.<\/span><\/li>\n<li><span>Ak je port v trunk m\u00f3du, tak m\u00f4\u017eeme nastavi\u0165, aby negeneroval DTP r\u00e1mca (a v\u00f4bec nepou\u017e\u00edval DTP).<\/span><\/li>\n<\/ul>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config-if) # <strong>switchport nonegotiate<\/strong><\/span><\/pre>\n<ul>\n<li><span>Poslednou mo\u017enos\u0165ou je nastavenie portu do dynamick\u00e9ho m\u00f3du, kedy akt\u00edvne vyu\u017e\u00edva DTP.<\/span><\/li>\n<\/ul>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config-if) # <strong>switchport mode dynamic auto       <\/strong>\/\/ ak pr\u00edde \u017eiados\u0165, tak sa prepne do trunku \r\nSWITCH (config-if) # <strong>switchport mode dynamic desirable <\/strong>\/\/ posiela \u017eiadosti o vytvorenie trunku<\/span><\/pre>\n<p><span>Najvhodnej\u0161ie je nastavi\u0165 pr\u00edstupov\u00e9 porty napevno do\u00a0<\/span><em><strong><span>m\u00f3du access<\/span><\/strong><\/em><span>\u00a0a trunk porty napevno do\u00a0<\/span><em><strong><span>trunk m\u00f3du<\/span><\/strong><\/em><span>\u00a0s vypnut\u00fdm vyjedn\u00e1van\u00edm.<\/span><\/p>\n<p><span>Pre zobrazenie inform\u00e1ci\u00ed o DTP sl\u00fa\u017eia pr\u00edkazy:<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH # <strong>show dtp<\/strong> \r\nSWITCH # <strong>show dtp interface f0 \/ 1<\/strong><\/span><\/pre>\n<h3><span>Zobrazenie inform\u00e1ci\u00ed o VLANach &#8211; show pr\u00edkazy<\/span><\/h3>\n<pre><span style=\"font-size: 10pt;\">SWITCH # <strong>show vlan                        <\/strong> \/\/ stru\u010dn\u00e9 info o VLAN a zaradenie portov \r\nSWITCH # <strong>show vlan id 500                 <\/strong> \/\/ zoznam portov vo VLAN 500 a MTU pre VLAN \r\nSWITCH # <strong>show interface vlan 10           <\/strong> \/\/ inform\u00e1cie o SVI \r\nSWITCH # <strong>show running-config vlan       <\/strong>   \/\/ inform\u00e1cie o VLAN z be\u017eiaci konfigur\u00e1cie \r\nSWITCH # <strong>show interfaces f0 \/ 1 switchport <\/strong>  \/\/ inform\u00e1cie o portu spolu s VLAN \r\nSWITCH # <strong>show interfaces trunk          <\/strong>   \/\/ info o TRUNC<\/span><\/pre>\n<h3><span>VTP &#8211; VLAN Trunking Protocol<\/span><\/h3>\n<p><span>V\u00e4\u010d\u0161inou chceme, aby vytvoren\u00e9 VLANy existovali v celej sieti (alebo v ur\u010ditej \u010dasti, ale nie iba na jednom switchi).\u00a0Pre pren\u00e1\u0161anie d\u00e1t v t\u00fdchto VLAN\u00e1ch medzi switchu sa vyu\u017e\u00edvaj\u00fa\u00a0<\/span><strong><em><span>Trunk<\/span><\/em><\/strong><span>\u00a0.\u00a0Aby sa v\u0161ak dalo s t\u00fdmito VLAN pracova\u0165, tak musia by\u0165 vytvoren\u00e9 na ka\u017edom switchi.\u00a0Pri men\u0161om po\u010dte switchov (a ak chceme v\u00e4\u010d\u0161\u00ed doh\u013ead), tieto VLANy na ka\u017edom switchi nakonfigurujeme ru\u010dne (v\u00e4\u010d\u0161inou to nie je to\u013eko pr\u00e1ce).\u00a0Mus\u00edme v\u0161ak pam\u00e4ta\u0165 pri vytvoren\u00ed novej VLANy ju op\u00e4\u0165 v\u0161ade nakonfigurova\u0165.<\/span><\/p>\n<p><span>Druhou mo\u017enos\u0165ou je vyu\u017eitie\u00a0<\/span><strong><em><span>VLAN Trunking Protocol<\/span><\/em>\u00a0<\/strong><span>(VTP), \u010do je L2 protokol, ktor\u00fd sl\u00fa\u017ei na pren\u00e1\u0161anie inform\u00e1ci\u00ed o VLAN\u00e1ch medzi switchu.\u00a0VTP spravuje prid\u00e1vanie, mazanie a premenovanie VLAN vn\u00fatri VTP dom\u00e9ny.\u00a0<\/span><strong><em><span>VTP dom\u00e9na<\/span><\/em><\/strong><span>\u00a0je tvoren\u00e1 jedn\u00fdm alebo viacer\u00fdmi sie\u0165ov\u00fdmi zariadeniami, ktor\u00e9 maj\u00fa nastaven\u00e9 rovnak\u00e9 meno dom\u00e9ny (volite\u013ene aj heslo) a s\u00fa prepojen\u00e9 pomocou trunku.<\/span><\/p>\n<p><span>Princ\u00edp je tak\u00fd, \u017ee ka\u017ed\u00fd switch vo VTP dom\u00e9ne m\u00e1 nastaven\u00fd jeden z troch m\u00f3dov<\/span><\/p>\n<ul>\n<li><strong><span>server<\/span><\/strong><span>\u00a0&#8211; spravuje zoznam v\u0161etk\u00fdch VLAN, m\u00e1 ho ulo\u017een\u00fd v NVRAM, m\u00f4\u017ee vytv\u00e1ra\u0165 a maza\u0165 VLANy, prij\u00edma a odosiela Advertisements cez Trunk vo VTP dom\u00e9ne, jedn\u00e1 sa o defaultn\u00fd m\u00f3d<\/span><\/li>\n<li><strong><span>klient<\/span><\/strong><span>\u00a0&#8211; prij\u00edma konfigur\u00e1ciu zo servera, udr\u017eiava lok\u00e1lnu k\u00f3piu v\u0161etk\u00fdch VLAN, ktor\u00fa nemo\u017eno meni\u0165 a nem\u00e1 ju ulo\u017een\u00fa v NVRAM, prij\u00edma a odosiela Advertisements<\/span><\/li>\n<li><strong><span>transparentn\u00e9<\/span><\/strong><span>\u00a0&#8211; nez\u00fa\u010dast\u0148uj\u00fa sa VTP, pracuje samostatne, m\u00f4\u017ee vytv\u00e1ra\u0165 i maza\u0165 VLANy, ale zmeny s\u00fa lok\u00e1lne, prij\u00edma Advertisements a vo verzii 2 je aj preposiela (ale nesynchronizuje svoje VLANy, ani ich nezverej\u0148uje), je to jedin\u00fd m\u00f3d, kde m\u00f4\u017eeme vytv\u00e1ra\u0165 Extended a Private VLANy, VTP a VLAN konfigur\u00e1cia je ulo\u017een\u00e1 v NVRAM<\/span><\/li>\n<\/ul>\n<p class=\"notice\"><em><strong><span>Pozn .:<\/span><\/strong><\/em><span>\u00a0Konfigur\u00e1cia VTP, pokia\u013e je v re\u017eime server alebo klient, sa nenach\u00e1dza v running config.<\/span><\/p>\n<p><span>Server rozosiela (iba cez Trunk)\u00a0<\/span><strong><em><span>VTP\u00a0<\/span><\/em><\/strong><strong><em><span>Advertisements<\/span><\/em><\/strong><span>\u00a0(ozn\u00e1menia) ka\u017ed\u00fdch 5 min\u00fat alebo pri zmene v konfigur\u00e1cii.\u00a0Server udr\u017euje konfigura\u010dn\u00e9\u00a0<\/span><strong><em><span>rev\u00edzne \u010d\u00edslo<\/span><\/em><\/strong><span>\u00a0(configuration revision number), ktor\u00e9 pri ka\u017edej zmene zv\u00fd\u0161i o jedna.\u00a0Klient pri synchroniz\u00e1cii porovn\u00e1va svoje a prijat\u00e9 \u010d\u00edslo.\u00a0VTP Advertisements obsahuje\u00a0<\/span><em><span>management domain<\/span><\/em><span>\u00a0,\u00a0<\/span><em><span>revision number<\/span><\/em><span>\u00a0,\u00a0<\/span><em><span>verziu VTP<\/span><\/em><span>\u00a0,\u00a0<\/span><em><span>zn\u00e1mej VLANy a ich parametre<\/span><\/em><span>\u00a0.\u00a0Advertisements s\u00fa troch typov,\u00a0<\/span><em><span>Summary<\/span><\/em><span>\u00a0,\u00a0<\/span><em><span>subset<\/span><\/em><span>\u00a0a\u00a0<\/span><em><span>Client Request<\/span><\/em><span>\u00a0.<\/span><\/p>\n<p class=\"notice\"><strong><em><span>Pozn .:<\/span><\/em><\/strong><span>\u00a0\u0161tandardizovan\u00e1 obdobou VTP je protokol<\/span><strong><span>\u00a0Generic VLAN Registration Protocol<\/span><\/strong><span>\u00a0&#8211; GVRP a jeho n\u00e1stupca<\/span><strong><span>\u00a0Multiple VLAN Registration Protocol<\/span><\/strong><span>\u00a0&#8211; MVRP.\u00a0Na Cisco zariadeniach ho v\u0161ak pr\u00edli\u0161 nen\u00e1jdeme.<\/span><\/p>\n<h4><span>Konfigur\u00e1cia VTP<\/span><\/h4>\n<p><span>Pre konfigur\u00e1ciu mus\u00edme najprv vytvori\u0165 VTP dom\u00e9nu, t\u00fdch m\u00f4\u017ee existova\u0165 viac a inform\u00e1cie sa odovzd\u00e1vaj\u00fa len v r\u00e1mci dom\u00e9ny.<\/span><\/p>\n<p class=\"notice\"><strong><em><span>Pozn .:<\/span><\/em><\/strong><span>\u00a0VTP pakety neprech\u00e1dza cez router.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>vtp domain domena1<\/strong><\/span><\/pre>\n<p><span>Volite\u013ene m\u00f4\u017eeme nastavi\u0165 heslo, ktor\u00e9 musia by\u0165 na v\u0161etk\u00fdch switchoch v dom\u00e9ne zhodn\u00e9.\u00a0Heslo nie je ulo\u017een\u00e9 v running-config.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>vtp password heslo<\/strong> <\/span><\/pre>\n<p><span>Ako posledn\u00fd nastav\u00edme, v akom m\u00f3de switch operuje.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>vtp mode server <\/strong>     \/\/ mo\u017enosti server, client, transparent<\/span><\/pre>\n<p><span>Na dne\u0161n\u00fdch Cisco switchoch m\u00f4\u017eeme pou\u017ei\u0165 VTP v dvoch verzi\u00e1ch (VTP 1 a 2).\u00a0Verzia 2 navy\u0161e podporuje Token Ring, VLAN consistency check, Unrecognized TLV a v Transparent modu preposiela Advertisements.\u00a0Defaultn\u00fd je verzia 1, nastavenie m\u00f4\u017eeme zmeni\u0165.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>vtp version 2<\/strong> <\/span><\/pre>\n<p><span>Inform\u00e1cie o VTP zist\u00edme pomocou pr\u00edkazov<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH # <strong>show vtp status          <\/strong> \/\/ z\u00e1kladn\u00e9 info o behu VTP na switchi \r\nSWITCH # <strong>show vtp counters        <\/strong> \/\/ \u0161tatistika VTP prenosov \r\nSWITCH # <strong>show vtp password        <\/strong> \/\/ zobraz\u00ed VTP heslo<\/span><\/pre>\n<h4><span>VTP pruning<\/span><\/h4>\n<p><span>M\u00f4\u017eeme tie\u017e povoli\u0165\u00a0<\/span><strong><em><span>pruning<\/span><\/em><\/strong><span>\u00a0.\u00a0Konfiguruje sa na VTP serveri a ovplyvn\u00ed cel\u00fa dom\u00e9nu.\u00a0Zabr\u00e1ni odosielaniu zbyto\u010dn\u00fdch paketov (broadcast, multicast, nezn\u00e1me) na switch, kde nie je \u017eiadny port v danej VLAN a ani cez neho nevedie funk\u010dn\u00e9 cesta \u010falej.<\/span><\/p>\n<pre><span style=\"font-size: 10pt;\">SWITCH (config) # <strong>vtp pruning<\/strong> <\/span><\/pre>\n<p><span>VLAN 1 je\u00a0<\/span><em><strong><span>pruning ineligible<\/span><\/strong><\/em><span>\u00a0, to znamen\u00e1, \u017ee sa na \u0148u pruning neuplat\u0148uje, VLAN 2 a\u017e 1001 je \u0161tandardne\u00a0<\/span><em><strong><span>pruning eligible<\/span><\/strong><\/em><span>\u00a0, ale m\u00f4\u017eeme zmeni\u0165 konfigur\u00e1ci\u00ed.<\/span><\/p>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>\u010c\u00edsla VLAN VLANy sa be\u017ene identifikuj\u00fa pomocou \u010d\u00edsla, tak\u017ee m\u00e1me napr\u00edklad VLAN 10. Pre jednoduch\u0161ie zapam\u00e4tanie a orient\u00e1ciu sa k nim e\u0161te prira\u010fuj\u00fa men\u00e1. Cisco&hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"parent":431,"menu_order":2,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"_links":{"self":[{"href":"http:\/\/tech.sosthe.sk\/index.php\/wp-json\/wp\/v2\/pages\/454"}],"collection":[{"href":"http:\/\/tech.sosthe.sk\/index.php\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"http:\/\/tech.sosthe.sk\/index.php\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"http:\/\/tech.sosthe.sk\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/tech.sosthe.sk\/index.php\/wp-json\/wp\/v2\/comments?post=454"}],"version-history":[{"count":1,"href":"http:\/\/tech.sosthe.sk\/index.php\/wp-json\/wp\/v2\/pages\/454\/revisions"}],"predecessor-version":[{"id":455,"href":"http:\/\/tech.sosthe.sk\/index.php\/wp-json\/wp\/v2\/pages\/454\/revisions\/455"}],"up":[{"embeddable":true,"href":"http:\/\/tech.sosthe.sk\/index.php\/wp-json\/wp\/v2\/pages\/431"}],"wp:attachment":[{"href":"http:\/\/tech.sosthe.sk\/index.php\/wp-json\/wp\/v2\/media?parent=454"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}