Buscar

MikroTik_Q_in_Q_Detail_Configuration_Example_by_ahmedpc pdf

Prévia do material em texto

Q)Configuration Example-in-Tunneling (Q802.1Q 
 
 
 Detail Configuration for Q-in-Q VLAN in 
MikroTik Devices 
 
BY AHMED PC 
 
Q Principle-in-Introduction to Q 
 
 
 
802.1Qtunneling(akaQ-in-
Q)isatechniqueoftenusedbyMetroEthernet
providersasalayer2VPNforcustomers. 
802.1Q(ordot1q)tunnelingisprettysimple…t
heproviderwillputa802.1Qtagonallthefram
 
 
esthatitreceivesfromacustomerwithauniqu
eVLANtag. 
ByusingadifferentVLANtagforeachcustome
rwecanseparatethetrafficfromdifferentcust
omersandalsotransparentlytransferitthroug
houttheserviceprovidernetwork. 
 
 
 
Introduction to 
Q-in-Q Principle 
Oneoftheadvantagesofthissolutionisthatit’seasyt
oimplement,youdon’tneedexotichardwareandw
edon’thavetorunanyroutingprotocolsbetweenth
eserviceproviderandcustomer(unlikeMPLSVPN). 
Fromthecustomer’sperspective,it’sjustliketheirsites
aredirectlyconnectedonlayer2. 
 
 
 
 
 
Q Configuration-in-Q 
Inthepreviousdiagramyouseetwocom
puterscalledPC1andPC2,imaginethes
ecomputersarethecustomersitesthatw
ewanttoconnectthroughtheservicepr
ovidernetworkwhichconsistsofR1,R2an
dR3. 
OurcustomerwantstouseVLAN12betw
eenthetwositesandexpectsourservice
providertotransportthisfromonesitetoa
nother. 
 
 
 
Q Configuration-in-Q 
 
 
InourexampleourcustomerwillbeusingVLAN
12fortrafficbetweentheirsites. 
TheserviceproviderhasdecidedtouseVLAN1
23totransporteverythingforthiscustomer. 
 
 
Basicallythisiswhatwillhappenwhenwesend
framesbetweenPC1andPC2: 
 
 
 
Q Configuration-in-Q 
 
 
WheneverPC1sendstrafficitwilltagitsframesforVLA
N12. 
Onceitarrivesattheserviceprovider,R1willaddana
dditionalVLANtag(123). 
OnceR2forwardstheframetowardsPC2itwillremov
ethesecondVLANtagandforwardstheoriginaltagg
edframefromPC1. 
 
 
Q Configuration-in-Q 
 
 
 
 
 
Customer Side-R1ration Q Configu-in-Q 
 
 
 
 
 
 
Customer Side-R1Q Configuration -in-Q 
 
 
 
 
 
 
 
 
 
Q Configuration R1-
Customer Side
 
 
 
 
 
 
 
PC1Q Configuration -in-Q 
 
 
 
 
 
Q-in-Q Configuration 
Customer Side-R2 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
in-Q Configuration R3-
Provider Side 
 
 
 
 
 
 
 
 
 
Q Verification-in-Q 
 
Everything is now in place, let’s do a quick 
test to see if PC1and PC2can reach each 
other: 
 
 
 
 ciscoتم بحمد هللا تعالى والى شرح اخر على ال
 تحياتي احمد الحديثي

Continue navegando