智能以太保护SEP(Smart Ethernet Protection)是一种专用于以太网链路层的环网协议。SEP是一种以太环路保护机制,它通过有选择性地阻塞网络环路冗余链路,来达到消除网络二层环路的目的,避免报文在环路网络中增生和无限循环,有效防止形成网络风暴。本人刚接手了一套网络,布局也不是太复杂,基本全是2层网络,所以就利用了sep这个小技术。
精简后的拓扑图
9306配置:
sep segment 1 control-vlan 4094 block port optimal preempt delay 30 protected-instance 0 to 48 sep segment 2 control-vlan 4092 block port optimal preempt delay 15 tc-notify segment 1 protected-instance 0 to 48 sep segment 3 control-vlan 4090 block port optimal preempt delay 15 protected-instance 0 to 48 # drop-profile default # interface Vlanif1 ip address 1.1.1.1 255.255.255.0 # interface MEth0/0/1 # interface GigabitEthernet0/0/1 port hybrid tagged vlan 4094 stp disable sep segment 1 # interface GigabitEthernet0/0/2 port link-type trunk port trunk allow-pass vlan 4092 stp disable sep segment 2 edge secondary # interface GigabitEthernet0/0/3 port hybrid tagged vlan 4094 stp disable sep segment 1 edge primary # interface GigabitEthernet0/0/4 port hybrid tagged vlan 4090 stp disable sep segment 3 edge primary # interface GigabitEthernet0/0/5 port hybrid tagged vlan 4090 stp disable sep segment 3 edge secondary #
分支1-5700配置:
sep segment 1 control-vlan 4094 block port optimal protected-instance 0 to 48 # interface Vlanif1 ip address 1.1.1.254 255.255.255.0 # interface MEth0/0/1 # interface GigabitEthernet0/0/1 port hybrid tagged vlan 4094 stp disable sep segment 1 # interface GigabitEthernet0/0/2 port hybrid tagged vlan 4094 stp disable sep segment 1 #
分支3-5700配置:
sep segment 1 control-vlan 4094 protected-instance 0 to 48 sep segment 2 control-vlan 4092 tc-notify segment 1 protected-instance 0 to 48 # interface Vlanif1 ip address 1.1.1.2 255.255.255.0 # interface MEth0/0/1 # interface GigabitEthernet0/0/1 port link-type trunk port trunk allow-pass vlan 4092 stp disable sep segment 2 edge primary # interface GigabitEthernet0/0/2 port hybrid tagged vlan 4094 stp disable sep segment 1 # interface GigabitEthernet0/0/3 port hybrid tagged vlan 4094 stp disable sep segment 1 sep segment 1 priority 128 #
分支2-5700配置:
sep segment 2 control-vlan 4092 protected-instance 0 to 48 # interface Vlanif1 ip address 1.1.1.3 255.255.255.0 # interface MEth0/0/1 # interface GigabitEthernet0/0/1 port hybrid tagged vlan 4092 stp disable sep segment 2 # interface GigabitEthernet0/0/2 port hybrid tagged vlan 4092 stp disable sep segment 2 sep segment 2 priority 128 #
分支1配置:
sep segment 3 control-vlan 4090 protected-instance 0 to 48 # interface Vlanif1 # interface MEth0/0/1 # interface GigabitEthernet0/0/1 port hybrid tagged vlan 4090 stp disable sep segment 3 # interface GigabitEthernet0/0/4 port hybrid tagged vlan 4090 stp disable sep segment 3 #
分支2配置:
sep segment 3 control-vlan 4090 protected-instance 0 to 48 # interface Vlanif1 ip address 1.1.1.6 255.255.255.0 # interface MEth0/0/1 # interface GigabitEthernet0/0/1 port hybrid tagged vlan 4090 stp disable sep segment 3 sep segment 3 priority 128 # interface GigabitEthernet0/0/5 port hybrid tagged vlan 4090 stp disable sep segment 3