13-IPv6組播VLAN配置
本章節下載: 13-IPv6組播VLAN配置 (219.78 KB)
目 錄
1 IPv6組播VLAN······························································································································· 1-1
1.1 IPv6組播VLAN簡介················································································································ 1-1
1.2 IPv6組播VLAN配置任務簡介··································································································· 1-2
1.3 配置IPv6組播VLAN················································································································ 1-2
1.3.1 配置準備······················································································································· 1-2
1.3.2 配置IPv6組播VLAN······································································································ 1-3
1.4 配置IPv6組播VLAN內MLD Snooping轉發表項的最大數量······················································· 1-3
1.5 IPv6組播VLAN顯示和維護······································································································ 1-4
1.6 IPv6組播VLAN典型配置舉例··································································································· 1-4
在本章中,設備作為二層設備使用(組網圖中用Switch表示),三層設備(組網圖中用Router表示)的相關配置以H3C路由器產品為例。
如圖1-1所示,在傳統的IPv6組播點播方式下,當屬於不同VLAN的主機Host A、Host B和Host C同時點播同一IPv6組播組時,三層設備(Router A)需要把IPv6組播數據在每個用戶VLAN(即主機所屬的VLAN)內都複製一份發送給二層設備(Switch A)。這樣既造成了帶寬的浪費,也給三層設備增加了額外的負擔。
圖1-1 未運行IPv6組播VLAN時的IPv6組播數據傳輸
可以使用IPv6組播VLAN功能解決這個問題。在二層設備上配置了IPv6組播VLAN後,三層設備隻需把IPv6組播數據在IPv6組播VLAN內複製一份發送給二層設備,而不必在每個用戶VLAN內都複製一份,從而節省了網絡帶寬,也減輕了三層設備的負擔。
目前,設備隻支持基於子VLAN的IPv6組播VLAN:
如圖1-2所示,接收者主機Host A、Host B和Host C分屬不同的用戶VLAN。在Switch A上配置VLAN 10為IPv6組播VLAN,將所有的用戶VLAN都配置為該IPv6組播VLAN的子VLAN,並在IPv6組播VLAN內使能MLD Snooping。
圖1-2 基於子VLAN的IPv6組播VLAN示意圖
配置完成後,MLD Snooping將在IPv6組播VLAN中對路由器端口進行維護,而在各子VLAN中對成員端口進行維護。這樣,Router A隻需把IPv6組播數據在IPv6組播VLAN內複製一份發送給Switch A即可,Switch A會將其分發給該IPv6組播VLAN內那些有接收者的子VLAN。
· 有關MLD Snooping的相關配置,以及路由器端口和成員端口的詳細介紹,請參見“IP組播配置指導”中的“MLD Snooping”。
· 有關VLAN Tag的詳細介紹,請參見“二層技術-以太網交換配置指導”中的“VLAN”。
表1-1 IPv6組播VLAN配置任務簡介
配置任務 |
說明 |
詳細配置 |
配置IPv6組播VLAN |
必選 |
|
配置IPv6組播VLAN內MLD Snooping轉發表項的最大數量 |
可選 |
在配置IPv6組播VLAN之前,需完成以下任務:
· 使能IPv6轉發功能
· 創建相應的VLAN
· 在欲配置為IPv6組播VLAN的VLAN內使能MLD Snooping
首先需要把某個VLAN配置為IPv6組播VLAN,再將用戶VLAN添加到該IPv6組播VLAN內,使其成為IPv6組播VLAN的子VLAN。
表1-2 配置基於子VLAN的IPv6組播VLAN
操作 |
命令 |
說明 |
進入係統視圖 |
system-view |
- |
配置指定VLAN為IPv6組播VLAN,並進入IPv6組播VLAN視圖 |
multicast-vlan ipv6 vlan-id |
必選 缺省情況下,VLAN不是IPv6組播VLAN |
向IPv6組播VLAN內添加子VLAN |
subvlan vlan-list |
必選 缺省情況下,IPv6組播VLAN內沒有子VLAN |
· 在已使能了IPv6組播路由的設備上不允許再配置IPv6組播VLAN。
· 要配置為IPv6組播VLAN的指定VLAN必須存在。
· 要添加到IPv6組播VLAN內的子VLAN必須存在。
· IPv6組播VLAN內子VLAN的總數不得超過1024。
用戶可以調整IPv6組播VLAN內MLD Snooping轉發表項的最大數量,當所有IPv6組播VLAN內維護的表項總數達到最大數量後,將不再創建新的表項,直至有表項被老化或被手工刪除。
表1-3 配置IPv6組播VLAN內MLD Snooping轉發表項的最大數量
操作 |
命令 |
說明 |
進入係統視圖 |
system-view |
- |
配置IPv6組播VLAN內MLD Snooping轉發表項的最大數量 |
multicast-vlan ipv6 entry-limit limit |
必選 缺省情況下,IPv6組播VLAN內MLD Snooping轉發表項的最大數量與係統的工作模式有關,詳細說明請參見“基礎配置指導/設備管理”中的“配置係統工作模式” |
在對IPv6組播VLAN內MLD Snooping轉發表項的最大數量進行配置時,如果所有IPv6組播VLAN內的表項總數已超過了配置值,係統將提示用戶刪除多餘表項,但並不會自動刪除任何已存在的表項,同時也不再繼續創建新的表項。
在完成上述配置後,在任意視圖下執行display命令可以顯示配置後IPv6組播VLAN的運行情況,通過查看顯示信息驗證配置的效果。
表1-4 IPv6組播VLAN顯示和維護
命令 |
|
查看IPv6組播VLAN的信息 |
display multicast-vlan ipv6 [ vlan-id ] [ | { begin | exclude | include } regular-expression ] |
缺省情況下,以太網接口、VLAN接口及聚合接口處於DOWN狀態。如果要對這些接口進行配置,請先使用undo shutdown命令使接口狀態處於UP狀態。
· 如圖1-3所示,Router A通過接口GigabitEthernet3/0/1連接IPv6組播源(Source),通過接口GigabitEthernet3/0/2連接Switch A;Router A上運行MLDv1,Switch A~Switch C上都運行版本1的MLD Snooping,並由Router A充當MLD查詢器。
· IPv6組播源向IPv6組播組FF1E::101發送IPv6組播數據,Host A~Host D都是該IPv6組播組的接收者(Receiver),且分別屬於VLAN 2~VLAN 5。
· 通過在Switch A上配置基於子VLAN的IPv6組播VLAN,使Router A通過IPv6組播VLAN向Switch A下分屬不同用戶VLAN的主機分發IPv6組播數據。
圖1-3 基於子VLAN的IPv6組播VLAN配置組網圖
使能IPv6轉發功能,並配置IPv6地址
使能各設備的IPv6轉發功能,並按照圖1-3配置各接口的IPv6地址和前綴長度,具體配置過程略。
配置Router A
# 使能IPv6組播路由,在各接口上使能IPv6 PIM-DM,並在主機側接口GigabitEthernet3/0/2上使能MLD。
<RouterA> system-view
[RouterA] multicast ipv6 routing-enable
[RouterA] interface GigabitEthernet 3/0/1
[RouterA-GigabitEthernet3/0/1] pim ipv6 dm
[RouterA-GigabitEthernet3/0/1] quit
[RouterA] interface GigabitEthernet 3/0/2
[RouterA-GigabitEthernet3/0/2] pim ipv6 dm
[RouterA-GigabitEthernet3/0/2] mld enable
配置Switch A
# 全局使能MLD Snooping。
<SwitchA> system-view
[SwitchA] mld-snooping
[SwitchA-mld-snooping] quit
# 創建VLAN 2~VLAN 5。
[SwitchA] vlan 2 to 5
# 配置端口GigabitEthernet3/0/2為Trunk端口,並允許VLAN 2和VLAN 3通過。
[SwitchA] interface GigabitEthernet 3/0/2
[SwitchA-GigabitEthernet3/0/2] port link-type trunk
[SwitchA-GigabitEthernet3/0/2] port trunk permit vlan 2 3
[SwitchA-GigabitEthernet3/0/2] quit
# 配置端口GigabitEthernet3/0/3為Trunk端口,並允許VLAN 4和VLAN 5通過。
[SwitchA] interface GigabitEthernet 3/0/3
[SwitchA-GigabitEthernet3/0/3] port link-type trunk
[SwitchA-GigabitEthernet3/0/3] port trunk permit vlan 4 5
[SwitchA-GigabitEthernet3/0/3] quit
# 創建VLAN 10,把端口GigabitEthernet3/0/1添加到該VLAN中,並在該VLAN內使能MLD Snooping。
[SwitchA] vlan 10
[SwitchA-vlan10] port GigabitEthernet 3/0/1
[SwitchA-vlan10] mld-snooping enable
[SwitchA-vlan10] quit
# 配置VLAN 10為IPv6組播VLAN,並把VLAN 2~VLAN 5都配置為該IPv6組播VLAN的子VLAN。
[SwitchA] multicast-vlan ipv6 10
[SwitchA-ipv6-mvlan-10] subvlan 2 to 5
[SwitchA-ipv6-mvlan-10] quit
配置Switch B
# 全局使能MLD Snooping。
<SwitchB> system-view
[SwitchB] mld-snooping
[SwitchB-mld-snooping] quit
# 創建VLAN 2,把端口GigabitEthernet3/0/2添加到該VLAN中,並在該VLAN內使能MLD Snooping。
[SwitchB] vlan 2
[SwitchB-vlan2] port GigabitEthernet 3/0/2
[SwitchB-vlan2] mld-snooping enable
[SwitchB-vlan2] quit
# 創建VLAN 3,把端口GigabitEthernet3/0/3添加到該VLAN中,並在該VLAN內使能MLD Snooping。
[SwitchB] vlan 3
[SwitchB-vlan3] port GigabitEthernet 3/0/3
[SwitchB-vlan3] mld-snooping enable
[SwitchB-vlan3] quit
# 配置端口GigabitEthernet3/0/1為Trunk端口,並允許VLAN 2和VLAN 3通過。
[SwitchB] interface GigabitEthernet 3/0/1
[SwitchB-GigabitEthernet3/0/1] port link-type trunk
[SwitchB-GigabitEthernet3/0/1] port trunk permit vlan 2 3
配置Switch C
Switch C的配置與Switch B相似,配置過程略。
檢驗配置效果
# 查看Switch A上所有IPv6組播VLAN的信息。
[SwitchA] display multicast-vlan ipv6
Total 1 IPv6 multicast-vlan(s)
IPv6 Multicast vlan 10
subvlan list:
vlan 2-5
# 查看Switch A上MLD Snooping組播組的信息。
[SwitchA] display mld-snooping group
Total 5 IP Group(s).
Total 5 IP Source(s).
Total 5 MAC Group(s).
Port flags: D-Dynamic port, S-Static port, C-Copy port, P-PIM port
Subvlan flags: R-Real VLAN, C-Copy VLAN
Vlan(id):2.
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Router port(s):total 0 port.
IP group(s):the following ip group(s) match to one mac group.
IP group address:FF1E::101
(::, FF1E::101):
Host port(s):total 1 port(s).
GE3/0/2 (D)
MAC group(s):
MAC group address:3333-0000-0101
Host port(s):total 1 port(s).
GE3/0/2
Vlan(id):3.
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Router port(s):total 0 port(s).
IP group(s):the following ip group(s) match to one mac group.
IP group address:FF1E::101
(::, FF1E::101):
Host port(s):total 1 port(s).
GE3/0/2 (D)
MAC group(s):
MAC group address:3333-0000-0101
Host port(s):total 1 port.
GE3/0/2
Vlan(id):4.
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Router port(s):total 0 port(s).
IP group(s):the following ip group(s) match to one mac group.
IP group address:FF1E::101
(::, FF1E::101):
Host port(s):total 1 port(s).
GE3/0/3 (D)
MAC group(s):
MAC group address:3333-0000-0101
Host port(s):total 1 port(s).
GE3/0/3
Vlan(id):5.
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Router port(s):total 0 port(s).
IP group(s):the following ip group(s) match to one mac group.
IP group address:FF1E::101
(::, FF1E::101):
Host port(s):total 1 port(s).
GE3/0/3 (D)
MAC group(s):
MAC group address:3333-0000-0101
Host port(s):total 1 port(s).
GE3/0/3
Vlan(id):10.
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Router port(s):total 1 port(s).
GE3/0/1 (D)
IP group(s):the following ip group(s) match to one mac group.
IP group address:FF1E::101
(::, FF1E::101):
Host port(s):total 0 port(s).
MAC group(s):
MAC group address:3333-0000-0101
Host port(s):total 0 port(s).
由此可見,MLD Snooping在IPv6組播VLAN(VLAN 10)中維護路由器端口,而在各子VLAN(VLAN 2~VLAN 5)中維護各自的成員端口。
不同款型規格的資料略有差異, 詳細信息請向具體銷售和400谘詢。H3C保留在沒有任何通知或提示的情況下對資料內容進行修改的權利!