Untitled document
CCIE Routing & Switching v5 Workbook -
CCIE R&S v5 Advanced Technology Labs -
LAN Switching
Layer 2 Access Switchports
A Note On Section Initial Configuration Files: You must load the
initial configuration files for the section, named Basic Layer2
Switching, which can be found in
.
Task
Configure SW1’s port FastEthernet0/19 as a Layer 3 interface with the IP address
169.254.1.1/24.
Configure SW2’s port FastEthernet0/19 as a Layer 3 interface with the IP address
169.254.1.2/24.
Configure ports FastEthernet0/19 on SW3 and SW4 to be access ports in VLAN 169.
Configure FastEthernet0/23 and FastEthernet0/24 between SW3 and SW4 as dot1q
trunk ports.
For verification, test that SW1 and SW2 have IPv4 reachability to each other over
VLAN 169.
Configuration
SW1:
interface FastEthernet0/19
no switchport
ip address 169.254.1.1 255.255.255.0
SW2:
interface FastEthernet0/19
no switchport
ip address 169.254.1.2 255.255.255.0
SW3:
vlan 169
!
interface FastEthernet0/19
switchport mode access
switchport access vlan 169
!
interface range FastEthernet0/23 - 24
switchport trunk encapsulation dot1q
switchport mode trunk
SW4:
vlan 169
!
interface FastEthernet0/19
switchport mode access
switchport access vlan 169
!
interface range FastEthernet0/23 - 24
switchport trunk encapsulation dot1q
switchport mode trunk
Verification
SW1 and SW2 in this example are acting as end hosts. When end hosts are
connected to different physical switches but are in the same VLAN, IP connectivity
will be obtained only when Spanning-Tree Protocol is forwarding the VLAN end to
end between switches connecting to the hosts. On the Catalyst platforms, an STP
instance is automatically created for a VLAN when the VLAN is created. This implies
that the first step in getting connectivity between the hosts is to create the VLAN.
Although the VLAN could also be learned through VTP, in this design the VLAN is
simply manually defined on both switches, removing the need for VTP to be
configured. Additionally, trunking must be configured on transit switches, SW3 and
SW4, so that VLAN tagged frames can be sent over the links between them;
optionally, as in this case we have a single VLAN required to be carried between
SW3 and SW4, the links can be configured as access in VLAN 169.
Final verification in this example would be to ensure that the VLANs are assigned
correctly according to the
show interface status
or
show vlan
output, and that end-
to-end connectivity exists:
SW1#ping 169.254.1.2
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 169.254.1.2, timeout is 2 seconds:!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 1/4/9 ms
!
!SW2#ping 169.254.1.1
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 169.254.1.1, timeout is 2 seconds:!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 1/4/9 ms
!
!SW3#show interface status
PortName
StatusVlan
Duplex Speed Type
Fa0/1
notconnect 1
auto auto 10/100BaseTX
Fa0/2
notconnect 1
auto auto 10/100BaseTX
Fa0/3
notconnect 1
auto auto 10/100BaseTX
Fa0/4
notconnect 1
auto auto 10/100BaseTX
Fa0/5
notconnect 1
auto auto 10/100BaseTX
Fa0/6
notconnect 1
auto auto 10/100BaseTX
Fa0/7
notconnect 1
auto auto 10/100BaseTX
Fa0/8
notconnect 1
auto auto 10/100BaseTX
Fa0/9
notconnect 1
auto auto 10/100BaseTX
Fa0/10
notconnect 1
auto auto 10/100BaseTX
Fa0/11
notconnect 1
auto auto 10/100BaseTX
Fa0/12
notconnect 1
auto auto 10/100BaseTX
Fa0/13
notconnect 1
auto auto 10/100BaseTX
Fa0/14
notconnect 1
auto auto 10/100BaseTX
Fa0/15
notconnect 1
auto auto 10/100BaseTX
Fa0/16
notconnect 1
auto auto 10/100BaseTX
Fa0/17
notconnect 1
auto auto 10/100BaseTX
Fa0/18
notconnect 1
auto auto 10/100BaseTX
Fa0/19
connected169
a-full a-100 10/100BaseTX
Fa0/20
connected1
a-full a-100 10/100BaseTX
Fa0/21
connected1
a-full a-100 10/100BaseTX
Fa0/22
connected1
a-full a-100 10/100BaseTX
Fa0/23
connectedtrunk
a-full a-100 10/100BaseTX
Fa0/24
connectedtrunk
a-full a-100 10/100BaseTX
Gi0/1
notconnect 1
auto auto Not Present
Gi0/2
notconnect 1
auto auto Not Present
!
!SW4#show interface status
PortName
StatusVlan
Duplex Speed Type
Fa0/1
connected1
a-full a-100 10/100BaseTX
Fa0/2
notconnect 1
auto auto 10/100BaseTX
Fa0/3
notconnect 1
auto auto 10/100BaseTX
Fa0/4
notconnect 1
auto auto 10/100BaseTX
Fa0/5
notconnect 1
auto auto 10/100BaseTX
Fa0/6notconnect 1
auto auto 10/100BaseTX
Fa0/7notconnect 1
auto auto 10/100BaseTX
Fa0/8notconnect 1
auto auto 10/100BaseTX
Fa0/9notconnect 1
auto auto 10/100BaseTX
Fa0/10notconnect 1
auto auto 10/100BaseTX
Fa0/11notconnect 1
auto auto 10/100BaseTX
Fa0/12notconnect 1
auto auto 10/100BaseTX
Fa0/13notconnect 1
auto auto 10/100BaseTX
Fa0/14notconnect 1
auto auto 10/100BaseTX
Fa0/15notconnect 1
auto auto 10/100BaseTX
Fa0/16notconnect 1
auto auto 10/100BaseTX
Fa0/17notconnect 1
auto auto 10/100BaseTX
Fa0/18notconnect 1
auto auto 10/100BaseTX
Fa0/19connected169
a-full a-100 10/100BaseTX
Fa0/20connected1
a-full a-100 10/100BaseTX
Fa0/21connected1
a-full a-100 10/100BaseTX
Fa0/22connected1
a-full a-100 10/100BaseTX
Fa0/23connectedtrunk
a-full a-100 10/100BaseTX
Fa0/24connectedtrunk
a-full a-100 10/100BaseTX
Gi0/1notconnect 1
auto auto Not Present
Gi0/2notconnect 1
auto auto Not Present
Verify that FastEthernet0/19 on SW1 and SW2 is running in routed mode, as a layer
3 port:
SW1#show interfaces fastEthernet0/19 switchport
Name: Fa0/19Switchport: Disabled
!
!SW2#show interfaces fastEthernet0/19 switchport
Name: Fa0/19Switchport: Disabled
Verify STP state for VLAN 169 on SW3 and SW4, based on MAC addresses of the
switches from your rack; STP port state for the trunk may be switched between SW3
and SW4, but FastEthernet0/19 should be in FW state:
SW3#show spanning-tree vlan 169
VLAN0169
Spanning tree enabled protocol ieee
Root IDPriority
32937
Address
001a.a174.2500
Cost
19
Port
25 (FastEthernet0/23)
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Bridge ID Priority32937 (priority 32768 sys-id-ext 169)
Address0022.5627.1f80
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Aging Time 300 sec
InterfaceRole Sts CostPrio.Nbr Type
------------------- ---- --- --------- -------- --------------------------------
Fa0/19Desg FWD 19
128.21 P2p
Fa0/23Root FWD 19
128.25 P2p
Fa0/24Altn BLK 19
128.26 P2p
!
!SW4#show spanning-tree vlan 169
VLAN0169
Spanning tree enabled protocol ieee
Root IDPriority
32937
Address
001a.a174.2500
This bridge is the root
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Bridge ID Priority32937 (priority 32768 sys-id-ext 169)
Address001a.a174.2500
Hello Time 2 sec Max Age 20 sec Forward Delay 15 sec
Aging Time 300 sec
InterfaceRole Sts CostPrio.Nbr Type
------------------- ---- --- --------- -------- --------------------------------
Fa0/19Desg FWD 19
128.21 P2p
Fa0/23Desg FWD 19
128.25 P2p
Fa0/24Desg FWD 19
128.26 P2p