Upload
carlos-leon-araujo
View
217
Download
0
Embed Size (px)
Citation preview
8/14/2019 114602369-VLAN
1/6
CS 158B Project report
Name: Elaine Lim & Allison Nham
Due ate: !arch "5# "$$5
VIRTUAL LOCAL AREA NETWORKS
1. Overview:
%he irtual Local Area Net'or(s )LAN* is a s'itch net'or( technolo+, that ena-les
'or(stations or e.ices /rom i//erent LAN se+ments lo+icall, +roupe to+ether re+arless o/
their +eo+raphical location0 n this paper# 'e 'ill introuce some (e, aspects o/ LAN an
iscuss the -ene/its o/ LAN an 'h, it is 'orth'hile0
2. How VLAN works:
A .irtual LAN is no i//erent /rom a traitional LAN# -ecause it is consiere as a
-roacast omain0 %his means e.er, -roacast pac(et propa+ates throu+h the net'or( 'ill -e
seen -, e.er, host on the net'or(0 n the traitional net'or(# i/ user 'ants to sen a pac(et to
the net'or(# his -roacast pac(et 'ill ha.e to tra.el to all other users on the LAN0 2hile this
ma(es sense /or some users 'ithin a 'or(+roup to see each other3s messa+es# it is unli(el, that
all users in a compan, 'oul 'ant to recei.e other3s messa+es0 As a result# a LAN is esi+ne
to e/ine smaller -roacast omains 'ithin a s'itch0 %his means each LAN is assi+ne an
ienti/ier an an, pac(et can onl, tra.el /rom one -roacast omain to another i/ -oth omains
ha.e the same ienti/ier0
3. Requiree!"s "o se" u# VLAN:
n orer to implement LAN in a net'or( en.ironment# 'e nee LAN4a'are
s'itchin+ e.ices that must either compl, 'ith EEE 8$"01 stanars or must ha.e a .enor4
speci/ic implementation o/ LAN0 %hese e.ices can -e intelli+ent s'itches# 'hich operate at
Pa+e 1 o/ 6
8/14/2019 114602369-VLAN
2/6
the !AC la,er# or routers# 'hich operate at the net'or( la,er o/ the 7S re/erence moel0
Althou+h a s'itchin+ e.ice is reuire to hanle a LAN /ormation# in realit, it is the so/t'are
that pro.ies LAN capa-ilities0 2ith LAN mana+ement so/t'are# the net'or( mana+er 'ill
-e a-le to recon/i+ure LAN in/rastructure# re+arless o/ 'here the resources or users are
locate0
$. T%#es o& VLAN:
Depenin+ on the .enors# LAN +roupin+ metho can -e i.ie into three +eneral
cate+ories: port4-ase +roupin+# !AC aress4-ase +roupin+ an protocol4-ase +roupin+0
A. Port-based grouping:
Port4-ase +roupin+ is the most common techniue in e/inin+ LAN mem-ership0Asits name implies# a port4-ase LAN allo's us to ha.e separate LANs amon+ ports on the
same s'itch0 %his means the net'or( mana+er can e/ine a mappin+ o/ LANs to a -unch o/
interconnecte s'itch ports0 9or eample# in a s'itch 'ith /i.e ports# ports 1# ;# an < -elon+ to
LAN 1# ports " an 5 -elon+ to LAN "0 / the user mo.es# the net'or( mana+er simpl,
e/ines their ne' port as a mem-er o/ their eistin+ LANs0 %his metho is eas, /or settin+ up
an monitorin+ a LAN +roup -ecause it 'or(s 'ell in a net'or( 'here the mo.ement o/ users
is hi+h0 =o'e.er# one ra'-ac( o/ LAN mem-ership e/inin+ -, port is that the net'or(
mana+er nees to recon/i+ure the mem-ership as the user mi+rates /rom one port to another0
B. MAC address-based grouping:
n this case# the net'or( mana+er +roups all mem-ers in a LAN to+ether -, means o/
!AC aresses0 Each s'itch trac(s the !AC aresses 'hich -elon+ to each LAN0 %he (e,
a.anta+e o/ this metho is the net'or( mana+er oes not nee to recon/i+ure the s'itch 'hen
the user mo.es to a i//erent port0 =o'e.er# there are some limitations 'ith !AC aress4-ase
Pa+e " o/ 6
8/14/2019 114602369-VLAN
3/6
+roupin+0 9irst# all users must -e con/i+ure initiall, at least in one LAN an this clearl,
-ecomes a hu+e 'or(loa /or a lar+e net'or( 'ith thousans o/ users0 n a share meia
en.ironment# LAN mem-ership e/ine -, !AC aress encounters a serious per/ormance
issue ue to the coeistence o/ mem-ers o/ i//erent LANs in the same s'itch port0 %o the en#
/or those Note-oo( PC users# the, nee to constantl, upate their LAN mem-ership as the
users mo.e aroun0
C. Protocol-based grouping:
n a protocol4-ase +roupin+# the LAN /ormation is -ase on P aress pre/i#
meanin+ it must -e -ase on the source aress in the P heaer0 Each s'itch must etermine
that the pac(et -ase on the protocol t,pe pro.ie in the La,er4; P heaer0 7ne o/ the
a.anta+es o/ protocol4-ase +roupin+ is that it allo's partitionin+ per protocol t,pe0 t also
allo's the users to ph,sicall, mo.e 'ithout loosin+ their mem-ership0 =o'e.er# one o/ the
isa.anta+es is that it can a//ect the net'or( per/ormance ue to the nee /or inspectin+ the
Net'or( la,er aress in the pac(et0 9inall,# the other limitation o/ the protocol4-ase LAN
+roupin+ is that 'or(stations 'ill -e runnin+ non4routa-le protocols that the La,er4; LAN
cannot hanle# li(e NetB7S0
'. VLANS e(ers)i#s:
n orer to etermine the LAN mem-ership amon+ s'itches across a net'or(# three
methos ha.e -een implemente: ta-le maintenance o.er si+nalin+# /rame ta++in+ an time4
i.ision multiplein+ )%D!*0
n the ta-le maintenance o.er si+nalin+# 'hen a host -roacasts its /irst /rame# the s'itch
retains the 'or(station>s !AC aress to+ether 'ith its LAN mem-ership in a cache aress
ta-le0 %hen this in/ormation 'ill -e -roacast continuousl, to all other s'itches on the net'or(0
Pa+e ; o/ 6
8/14/2019 114602369-VLAN
4/6
=o'e.er# the net'or( mana+er still nees to upate the aress ta-le manuall, i/ there is a
chan+e in LAN mem-ership0 !oreo.er# the cache aress ta-le nees to -e upate 'hen the
net'or( epans or ne' s'itches are ae into the net'or(0
2hen a s'itch 'ants to tal( to another s'itch# a /rame ta++in+ metho is use so that the
s'itch can (no' 'hich LAN a pac(et is intene /or0 %he -roacast pac(et is transmitte li(e
an, other pac(et o.er the net'or(0 =o'e.er# 'hen the s'itch recei.es the pac(et# it 'ill etract
the ta+ to o-tain LAN in/ormation0
n a %D! metho# channels are reser.e /or each LAN to support multiple net'or(
en.ironments0 Althou+h it reuces some o/ the o.erhea cause -, the t'o methos a-o.e# it
'astes -an'ith since a eicate time slot o/ one LAN cannot -e use -, another 'hen the
channel is not -us,0
*. T%#e o& +i!ks i! VLANs:
Depens on 'hat (in o/ en.ironment# there are t'o t,pes o/ lin(s in a LAN0 A
s'itche port can run on either access lin( or trun( lin( moe0 2hen a nee o/ connectin+ users
'ithin a sin+le LAN +roup arises# the access lin( metho 'oul -e use0 %he access lin( is
normall, a s'itche port in access moe that is attache to a 'or(station0 %he -roacast /rame
transmitte on an access lin( is similar to an, other Ethernet /rame0
n a case 'here 'e ha.e multiple LANs on a s'itch# 'e cannot simpl, connect them
'ith one another .ia a s'itch0 %o +et /rom one LAN to the other# the net'or( mana+er nees
to esta-lish a trun( lin( to connect t'o s'itches to a router0 9or eample# i/ user A on LANs1
'ante to tal( to user B on LANs"# he must tra.el /rom the s'itch to the router an then return
to the s'itch0 Because s'itches an routers are lo+icall, constructe# users ma, thin( that the,
are tal(in+ in the same ph,sical LAN se+ment0
Pa+e < o/ 6
8/14/2019 114602369-VLAN
5/6
,. -e!e&i"s o& VLANs:
=a.in+ iscusse some o/ the -asic concepts -ehin LANs# 'e no' /ocus on some
promisin+ a.anta+es that this technolo+, has contri-ute in the net'or( en.ironment0
A. Increasing performance:
LAN helps to increase per/ormance -, partitionin+ the net'or( into smaller -roacast
omains0 B, +roupin+ the users into a lo+ical net'or(# it impro.es the per/ormance -, limitin+
the -roacast tra//ic to a speci/ic net'or(0 As a result# there 'ill -e less tra//ic /or the net'or(
as a 'hole0
B. Improving manageability:
LAN also reuces the cost o/ mo.in+ an chan+in+ 'or(stations0 Since LAN
mem-ership is not -oune to a particular location in the net'or(# it allo's users to (eep their
ori+inal P aresses e.en 'hen the, mo.e to a i//erent ph,sical location 'ithout the nee o/
recon/i+uration the P aress0 %his pro.ies the net'or( mana+er 'ith the a-ilit, to mana+e
toa,>s ,namic net'or(s0 An -, +roupin+ the ph,sicall, scattere 'or(stations into a lo+ical
'or(+roup# this 'oul lea to a more mana+ea-le net'or(0
C. More security:
LAN also pro.ies increase securit, option0 Since a s'itch onl, sens pac(ets to
esi+nate recipients in the same su-net# the aministrator can +roup these users 'ho reuire
access to sensiti.e in/ormation into one separate LAN to separate them /rom the +eneral users0
D. Fleibility and scalability:
B, allo'in+ the speci/ic resources to o-tain the mem-ership in more than one LAN#
users on particular LANs can share resources 'ith other users /rom i//erent lo+ical LANs
'ithout the nee o/ ain+ aitional s'itches or routers0
Pa+e 5 o/ 6
8/14/2019 114602369-VLAN
6/6
. Co!/+usio!:
2e ha.e iscusse the topic o/ LANs# a ne' technolo+, that ser.es as a net'or(e
'or( +roup o/ users sittin+ lo+icall, close to+ether# althou+h their 'or(stations ma, actuall, -e
locate in i//erent +eo+raphical areas0 n conclusion# LAN net'or( technolo+, has promise
a ne' (in o/ net'or( esi+n tool that assists net'or( mana+er in aaptin+ the net'or( to /it a
competiti.e chan+in+ 'orl0
Re&ere!/es
10 Lammle# %o an =ales# ?e.in# CCNP Switching Study Guide# S,-e# nc0# "$$10"0 =el# @i-ert# Virtual LANs# ohn 2ile, & Sons# nc0# 10
;0 araarajan# Su-a# Virtual Local Area Networks#
http:'''0cis0ohiostate0eujaincis884