
需求拓扑如上图。所有IP都在同一网段1.1.1.0/24,
员工在VLAN2,员工间可互通,
客户在VLAN 3,客户间不能互通
员工与客户不能互通
所有人都能访问PC5的服务器。
VLAN 配置
vlan batch 2 to 4
#
vlan 4
mux-vlan
subordinate separate 3
subordinate group 2
#
接口配置
#
interface GE1/0/1
undo shutdown
port default vlan 2
port mux-vlan enable vlan 2
#
interface GE1/0/2
undo shutdown
port default vlan 2
port mux-vlan enable vlan 2
#
interface GE1/0/3
undo shutdown
port default vlan 3
port mux-vlan enable vlan 3
#
interface GE1/0/4
undo shutdown
port default vlan 3
port mux-vlan enable vlan 3
#
interface GE1/0/5
undo shutdown
port default vlan 4
port mux-vlan enable vlan 4
#
查看配置
[~HUAWEI-vlan4]dis mux-vlan
Principal Subordinate Type Interface
-----------------------------------------------------------------------------
4 -- principal GE1/0/5
4 3 separate GE1/0/3 GE1/0/4
4 2 group GE1/0/1 GE1/0/2
-----------------------------------------------------------------------------
PC1测试

PC3测试
