Monday, March 18, 2019

dot1q over MPLS

Berikut ini percobaan trunk dot1q over MPLS (dengan routing RIPv2).

Diagramnya sbb:



Ada dua VLAN yaitu VLAN 20 dan VLAN 30 yang akan dilewatkan via MPLS.

Berikut adalah configurasi lengkapnya.

==========================================
R1

interface Loopback0
 ip address 10.10.10.10 255.255.255.255
!
interface FastEthernet0/0
 ip address 1.1.1.1 255.255.255.0
 mpls ip
!
interface FastEthernet0/1
 no ip address
 xconnect 40.40.40.40 100 encapsulation mpls
!
interface FastEthernet0/1.1
 encapsulation dot1Q 20
!
interface FastEthernet0/1.2
 encapsulation dot1Q 30
!
router rip
 version 2
 network 1.0.0.0
 network 10.0.0.0
 no auto-summary

==========================================
R2

interface Loopback0
 ip address 20.20.20.20 255.255.255.255
!
interface FastEthernet0/0
 ip address 1.1.1.2 255.255.255.0
 mpls ip
!
interface FastEthernet0/1
 ip address 2.2.2.1 255.255.255.0
 mpls ip
!
router rip
 version 2
 network 1.0.0.0
 network 2.0.0.0
 network 20.0.0.0
 no auto-summary
!

==========================================
R3

interface Loopback0
 ip address 30.30.30.30 255.255.255.255
!
interface FastEthernet0/0
 ip address 2.2.2.2 255.255.255.0
 mpls ip
!
interface FastEthernet0/1
 ip address 3.3.3.1 255.255.255.0
 mpls ip
!
router rip
 version 2
 network 2.0.0.0
 network 3.0.0.0
 network 30.0.0.0
 no auto-summary

==========================================
R4
interface Loopback0
 ip address 40.40.40.40 255.255.255.255
!
interface FastEthernet0/0
 ip address 3.3.3.2 255.255.255.0
 mpls ip
!
interface FastEthernet0/1
 no ip address
 xconnect 10.10.10.10 100 encapsulation mpls
!
interface FastEthernet0/1.1
 encapsulation dot1Q 20
!
interface FastEthernet0/1.2
 encapsulation dot1Q 30

==========================================
Mikrotik SW1 dan SW2

/int vlan add name=vlan20 interface=ether1 vlan-id=20
/int brid add name=bridge1
/int brid port add interface=ether2 bridge=bridge1
/int brid port add interface=vlan20 bridge=bridge1

/int vlan add name=vlan30 interface=ether1 vlan-id=30
/int bridg add name=bridge2
/int brid port add interface=vlan30 bridge=bridge2
/int brid port add interface=ether3 bridge=bridge2


Dan berikut hasil wireshark nya.



Terlihat bahwa di antara R4 ke R3, router P tsb hanya kenal MAC address di MPLS saja. Tidak kenal MAC address PC-A1 dan PC-A2. Sedangkan paket ping dibungkus dalam VLAN-20, lalu di Pseudo Wire via MPLS.

Catatan: sebenarnya subinterface di PE tidak perlu karena indukmya f0/1 sudah di pseudowire kan. Sehingga apapun isi dari frame ethernet akan dibungkus dengan frame mpls header dan frame ethernet header yang baru.

No comments: