欢迎来到天天文库
浏览记录
ID:52836728
大小:623.70 KB
页数:27页
时间:2020-03-22
《信息安全产品配置与应用全套配套课件武春岭PPT04生成树协议STP.pptx》由会员上传分享,免费在线阅读,更多相关内容在教育资源-天天文库。
1、信息安全产品配置与应用ConfigurationandApplicationofInformationSecurityProducts重庆电子工程职业学院
2、路亚模块八、路由交换安全配置生成树协议SpanningTreeProtocol教学目标(Objectives)1.IP地址概念(ConceptofIPAddress)2.IP地址分类(ClassofIPAddress)3.保留和私有地址(ReservedandPrivateIPAddress)4.网络掩码和子网划分(NetworkMaskandSubn
3、etting)5.可变长度子网掩码(VLSM)6.汇总和CIDR(SummarizationandCIDR)ObjectivesRedundanttopologiesSpanningTreeProtocol冗余(Redundancy)冗余网络拓扑确保网络持续工作,避免单点故障Redundantnetworkingtopologiesaredesignedtoensurethatnetworkscontinuetofunctioninthepresenceofsinglepointsoffailure.冗余拓
4、扑(RedundantTopologies)冗余拓扑(RedundantTopologies)1.冗余拓扑的目标是为了避免网络出现单点故障Agoalofredundanttopologiesistoeliminatenetworkoutagescausedbyasinglepointoffailure.2.所有的网络需要冗余来提高可靠性Allnetworksneedredundancyforenhancedreliability.简单的冗余交换拓扑(SimpleRedundantSwitchedTopol
5、ogy)简单的冗余交换拓扑(SimpleRedundantSwitchedTopology)1.冗余拓扑消除了单点故障Redundanttopologieseliminatesinglepointsoffailure.2.交换机对不知道地址的帧进行泛洪Switcheswillfloodframesforunknowndestinations.3.交换机对广播和组播也进行泛洪。Broadcastsandmulticastsarealsoflooded.4.冗余交换拓扑或许会带来广播风暴、多帧拷贝以及MAC地
6、址表不稳定的问题Aredundantswitchedtopologymaycausebroadcaststorms,multipleframecopies,andMACaddresstableinstabilityproblems.广播风暴(BroadcastStorm)多帧传输(MultipleFrameTransmissions)在冗余交换网络中,对终端设备来讲,收到多帧相同数据是可能的。Inaredundantswitchednetworkitispossibleforanenddevicetorec
7、eivemultipleframes.MAC地址表不稳定(MACDatabaseInstability)交换机从错误的接口学到MAC地址。AswitchcanlearnthataMACaddressisonaportwhenitisnot.创建逻辑无环路拓扑(Creatingalogicalloopfreetopology)1.冗余增加了可靠性,但是同时将物理环路带进网络。Reliabilityisincreasedbyredundancy.redundancyconnectionsintroduceph
8、ysicalloopsintothenetwork.2.解决办法就是创建逻辑无环路拓扑,同时保留物理环存在Thesolutionistoallowphysicalloops,butcreatealoopfreelogicaltopology.3.无环路拓扑称为树,并且是可扩展的树。Theloopfreelogicaltopologycreatediscalledatree.Itisaspanningtreebecausealldevicesinthenetworkarereachableorspanned.
9、4.创建无环路拓扑的算法称为生成树算法。Thealgorithmusedtocreatethisloopfreelogicaltopologyisthespanning-treealgorithm.STP术语(STPTerms)1.桥ID(BridgeID)2.开销(Cost)3.桥协议数据单元(BPDU)桥ID(BridgeID)1.BID用来识别每一个交换机/网桥。2.BID用来确定网络的中心,在STP中称为
此文档下载收益归作者所有