Kwizakhiwo zenethiwekhi zanamhlanje, i-VLAN (i-Virtual Local Area Network) kunye ne-VXLAN (i-Virtual Extended Local Area Network) zezona teknoloji zixhaphakileyo ze-network virtualization. Zisenokubonakala zifana, kodwa eneneni kukho inani leeyantlukwano eziphambili.
I-VLAN (Uthungelwano lweNdawo yeNgingqi yeNgingqi)
I-VLAN yiNxibelelwano yeNdawo yeNgingqi yeNgingqi (Uthungelwano lweNdawo yommandla eNgqongileyo) isifinyezo. Bubuchule obahlula-hlula izixhobo eziphathekayo kwi-LAN kwiisubnet eziliqela ngokobudlelwane obunengqiqo. I-VLAN iqwalaselwe kwiiswitshi zenethiwekhi ukwahlula izixhobo zothungelwano zibe ngamaqela ahlukeneyo anengqiqo. Nangona ezi zixhobo zinokuba zibekwe ngokwasemzimbeni kwiindawo ezahlukeneyo, i-VLAN ibenza bakwazi ukuba ngokwengqiqo yenethiwekhi efanayo, ivumela ulawulo oluguquguqukayo kunye nokuhlukaniswa.
Undoqo weteknoloji yeVLAN ilele kulwahlulo lwamazibuko okutshintsha. Iiswitshi zilawula itrafikhi ngokusekwe kwi-ID ye-VLAN (i-VLAN isazisi). Ii-ID ze-VLAN zisuka ku-1 ukuya ku-4095 kwaye ziqhelekile ukuba zibe ngamasuntswana angama-12 (oko kukuthi, uluhlu olusuka ku-0 ukuya ku-4095), nto leyo ethetha ukuba iswitshi inokuxhasa ukuya kuthi ga kwi-4,096 VLans.
Ukuhamba komsebenzi
○ Uchongo lwe-VLAN: Xa ipakethi ingena kwisitshixo, iswitshi ithatha isigqibo sokuba yeyiphi i-VLAN ipakethi ekufuneka ithunyelwe kuyo ngokusekwe kulwazi lwe-ID ye-VLAN kwipakethi. Ngokuqhelekileyo, iprotocol ye-IEEE 802.1Q isetyenziselwa ukumaka iVLAN kwisakhelo sedatha.
○ INdawo yoSasazo yeVLAN: IVLAN nganye yindawo yosasazo ezimeleyo. Nokuba ii-VLans ezininzi zikwiswitshi efanayo yomzimba, usasazo lwazo lwahlukanisiwe komnye nomnye, lunciphisa ukugcwala okungeyomfuneko.
○ Ugqithiso lweDatha: Iswitshi iyisa phambili ipakethe yedatha kwizibuko elihambelanayo ngokweethegi zeVLAN ezahlukeneyo. Ukuba izixhobo phakathi kwee-VLans ezahlukeneyo kufuneka zinxibelelane, kufuneka zithunyelwe ngezixhobo ze-3, ezifana nee-router.
Masithi unenkampani enamasebe amaninzi, ngalinye lisebenzisa iVLAN eyahlukileyo. Ngokutshintshela, unokwahlula zonke izixhobo kwisebe lezemali kwi-VLAN 10, abo bakwisebe lezentengiso kwi-VLAN 20, kunye nabo kwisebe lobugcisa kwi-VLAN 30. Ngale ndlela, inethiwekhi phakathi kwamasebe ihlukaniswe ngokupheleleyo.
Iingenelo
○ Ukhuseleko oluphuculweyo: I-VLAN inokuthintela ngokusebenzayo ufikelelo olungagunyaziswanga phakathi kweeVLans ezahlukeneyo ngokwahlula iinkonzo ezahlukeneyo kuthungelwano olwahlukileyo.
○ Ulawulo Lwezithuthi Zothungelwano: Ngokwaba iiVLans, izaqhwithi zosasazo zinokuthintelwa kwaye uthungelwano lunokusebenza ngokufanelekileyo. Iipakethi zokusasaza ziya kusasazwa kuphela ngaphakathi kweVLAN, ukunciphisa ukusetyenziswa kwe-bandwidth.
○ Network Flexibility: I-VLAN inokwahlula lula inethiwekhi ngokweemfuno zeshishini. Umzekelo, izixhobo kwisebe lezemali zinokwabelwa kwiVLAN efanayo nokuba zibekwe ngokwasemzimbeni kwimigangatho eyahlukeneyo.
Ukulinganiselwa
○ Ukubaleka okunyiniweyo: Njengoko iiVLans zixhomekeke kutshintsho lwemveli kunye nenkxaso ukuya kuthi ga kuma-4096 VLans, oku kunokuba ngumqobo kuthungelwano olukhulu okanye ubukhulu bendawo obungqongileyo obubonakalayo.
○ Ingxaki yoQhakamshelwano lwedomeyini enqamlezileyo: I-VLAN yinethiwekhi yendawo, unxibelelwano lwe-VLAN olunqamlezileyo kufuneka luqhutywe ngeswitshi ezintathu zomaleko okanye irutha, enokunyusa ukuntsonkotha kothungelwano.
Imeko yesicelo
○ Ukwahlulwa kunye noKhuseleko kuNxibelelwano lweShishini: Ii-VLans zisetyenziswa kakhulu kuthungelwano lwamashishini, ngakumbi kwimibutho emikhulu okanye kubume besebe. Ukhuseleko kunye nolawulo lokufikelela kuthungelwano lunokuqinisekiswa ngokwahlula amasebe ahlukeneyo okanye iinkqubo zoshishino ngeVLAN. Umzekelo, isebe lezemali liya kuhlala likwiVLAN eyahlukileyo ukusuka kwisebe leR&D ukuthintela ukufikelela okungagunyaziswanga.
○ Nciphisa isaqhwithi soSasazo: I-VLAN inceda ukucutha itrafikhi yosasazo. Ngokuqhelekileyo, iipakethi zokusasaza ziya kusasazwa kulo lonke inethiwekhi, kodwa kwindawo ye-VLAN, i-traffic traffic iya kusasazwa kuphela ngaphakathi kwe-VLAN, eyanciphisa ngokufanelekileyo umthwalo wenethiwekhi obangelwa sisaqhwithi sosasazo.
○ Uthungelwano lweNdawo emincinci okanye ePhakathi yeNdawo: Kumashishini athile amancinci naphakathi, iVLAN ibonelela ngendlela elula nesebenzayo yokwakha uthungelwano olubekwe yedwa ngokwengqiqo, lwenza ulawulo lothungelwano lube bhetyebhetye ngakumbi.
I-VXLAN (Uthungelwano lweNdawo eyandisiweyo yeNgingqi)
I-VXLAN (i-LAN ye-Virtual Extensible) iteknoloji entsha ecetywayo ukuxazulula imida ye-VLAN yendabuko kwiziko ledatha enkulu kunye ne-virtualization environment. Isebenzisa iteknoloji ye-encapsulation ukudlulisa iipakethi zedatha ye-2 (L2) ngokusebenzisa i-Layer 3 (L3) ekhoyo inethiwekhi, eqhekeza umda we-scalability we-VLAN.
Ngokusebenzisa itekhnoloji ye-tunneling kunye ne-encapsulation mechanism, i-VXLAN "isonga" i-original layer 2 iipakethi zedatha kumaleko we-3 IP iipakethi zedatha, ukwenzela ukuba iipakethe zedatha zikwazi ukuhanjiswa kwinethiwekhi ye-IP ekhoyo. Ingundoqo ye-VXLAN ilele kwi-encapsulation kunye ne-uncapsulation mechanism, oko kukuthi, isakhelo sedatha ye-L2 yendabuko ifakwe kwi-protocol ye-UDP kwaye idluliselwe ngenethiwekhi ye-IP.
Ukuhamba komsebenzi
○ I-VXLAN Header Encapsulation: Ekuphunyezweni kwe-VXLAN, ipakethe nganye yomaleko wesi-2 iya kufakwa njengepakethi ye-UDP. I-encapsulation ye-VXLAN ibandakanya: i-VXLAN i-identifier yenethiwekhi (VNI), i-UDP header, i-IP header kunye nolunye ulwazi.
○ I-Tunnel Terminal (VTEP) : I-VXLAN isebenzisa itekhnoloji yetonela kwaye iipakethi zigqunyiwe kwaye azifakwanga ngeperi yezixhobo ze-VTEP. I-VTEP, i-VXLAN Tunnel Endpoint, ibhuloho edibanisa iVLAN kunye neVXLAN. I-VTEP ifakela iipakethi ze-L2 ezifunyenweyo njengeepakethe ze-VXLAN kwaye zithumele kwindawo ye-VTEP, leyo yona ikhupha iipakethi ezifakwe kwii-original L2.
○ Inkqubo ye-Ecapsulation ye-VXLAN: Emva kokuncamathisela i-header ye-VXLAN kwipakethi yedatha yoqobo, ipakethi yedatha iya kuthunyelwa kwindawo ekusingwa kuyo i-VTEP ngenethiwekhi ye-IP. Indawo yokuya kuyo i-VTEP ikhupha ipakethe kwaye iyithumele kummkeli ochanekileyo ngokusekelwe kwingcaciso yeVNI.
Iingenelo
○ I-Scalable: I-VXLAN ixhasa ukuya kuthi ga kwi-16 lezigidi zeeNethiwekhi ezibonakalayo (VNI), ngaphezulu kwe-VLAN's 4096 izichongi, iyenze ilungele amaziko edatha amakhulu kunye neemekobume zelifu.
○ INkxaso yeZiko leedatha ezinqamlezileyo: I-VXLAN inokwandisa uthungelwano olubonakalayo phakathi kwamaziko edatha amaninzi kwiindawo ezahlukeneyo zejografi, yophula imida ye-VLAN yemveli, kwaye ifanele i-computing yamafu yale mihla kunye nemekobume ebonwayo.
○ Uthungelwano lweZiko leeNkcukacha Lulula: NgeVXLAN, izixhobo zehardware ezivela kubavelisi abohlukeneyo zinokusebenzisana, zixhase iimeko-bume zabaqeshi abaninzi, kwaye zenze lula uyilo lothungelwano lwamaziko edatha amakhulu.
Ukulinganiselwa
○ Ukuntsokotha okuPhezulu: Ubumbeko lwe-VXLAN luntsonkothile ngokwentelekiso, lubandakanya ukugqunywa kwetonela, ubumbeko lwe-VTEP, njl., olufuna inkxaso eyongezelelweyo yesitaki sobugcisa kunye nokwandisa ukuntsokotha kokusebenza nokugcinwa.
○ I-Network Latency: Ngenxa yenkqubo eyongeziweyo efunwa yinkqubo yokufakwa kwe-encapsulation kunye ne-uncapsulation, i-VXLAN inokwazisa i-network latency, nangona oku kubambezeleka kuqhele ukuba kuncinci, kodwa kusafuneka kuqatshelwe kwiimeko eziphezulu zokusebenza ezibango.
Imeko yeSicelo seVXLAN
○ UQhagamshelwano loThutho lweZiko leDatha: I-VXLAN isetyenziswa kakhulu kumaziko edatha amakhulu. Iiseva kwiziko ledatha zihlala zisebenzisa itekhnoloji ye-virtualization, i-VXLAN inokunceda ukwenza inethiwekhi ebonakalayo phakathi kweeseva zomzimba ezahlukeneyo, ukuphepha ukukhawulelwa kweVLAN kwi-scalability.
○ Imekobume yeLifu enabaqeshi abaninzi: Kwilifu likawonke-wonke okanye labucala, i-VXLAN inokubonelela ngothungelwano oluzimeleyo lwenyani kumqeshi ngamnye kwaye ichonge inethiwekhi yenyani yomqeshi ngamnye ngeVNI. Olu phawu lwe-VXLAN luyilungele kakuhle i-computing yamafu yanamhlanje kunye neendawo ezihlala abantu abaninzi.
○ Ukunikezelwa Kwenethiwekhi KuMaziko eDatha: I-VXLAN ifaneleke ngokukodwa iimeko apho uthungelwano lwenyani kufuneka lusasazwe kuwo wonke amaziko edatha amaninzi okanye ijografi. Ngenxa yokuba i-VXLAN isebenzisa iinethiwekhi ze-IP ukwenzela i-encapsulation, iyakwazi ukugqithisa ngokulula amaziko edatha ahlukeneyo kunye neendawo zejografi ukufezekisa ukwandiswa kwenethiwekhi yenyani kwinqanaba lehlabathi.
VLAN vs VxLAN
I-VLAN kunye ne-VXLAN zombini iteknoloji ye-virtualization yenethiwekhi, kodwa ifanelekile kwiimeko ezahlukeneyo zesicelo. I-VLAN ilungele indawo yenethiwekhi encinci okanye ephakathi, kwaye inokubonelela ngesiseko sokwahlulwa kunye nokhuseleko lwenethiwekhi. Amandla ayo alele kubulula bayo, ukukhululeka koqwalaselo, kunye nenkxaso ebanzi.
I-VXLAN iteknoloji eyenzelwe ukujamelana nesidingo sokwandiswa kwenethiwekhi enkulu kumaziko edatha yanamhlanje kunye neendawo ze-computing zefu. Amandla e-VXLAN alele ekukwazini ukuxhasa izigidi zothungelwano olubonakalayo, okwenza kube lula ukuhambisa uthungelwano olubonakalayo kumaziko edatha. Iqhekeza umda we-VLAN kwi-scalability, kwaye ifanelekile kuyilo lwenethiwekhi olunzima ngakumbi.
Nangona igama le-VXLAN libonakala liyindlela yolwandiso lwe-VLAN, enyanisweni, i-VXLAN yahluke kakhulu kwi-VLAN ngokukwazi kwayo ukwakha iitonela ezibonakalayo. Iiyantlukwano eziphambili phakathi kwazo zezi zilandelayo:
Uphawu | VLAN | VXLAN |
---|---|---|
Umgangatho | IEEE 802.1Q | I-RFC 7348 (IETF) |
Umaleko | Uluhlu 2 (Ikhonkco leDatha) | Umaleko 2 phezu koMaleko 3 (L2oL3) |
I-encapsulation | 802.1Q Ethernet header | I-MAC-in-UDP (ifakwe kwi-IP) |
Ubungakanani besazisi | I-12-bit (0-4095 VLANs) | I-24-bit (i-16.7 yezigidi ze-VNIs) |
Ukubaleka | Ilinganiselwe (ii-VLAN ezingama-4094 ezisebenzisekayo) | Iyakaleka kakhulu (ixhasa amafu abaqashi abaninzi) |
Ukuphatha usasazo | Izikhukula zesintu (ngaphakathi kweVLAN) | Isebenzisa i-IP multicast okanye i-head-end replication |
Umphezulu | Phantsi (4-byte VLAN tag) | Phezulu (~ 50 bytes: UDP + IP + VXLAN headers) |
Ukwahlulwa Kwezithuthi | Ewe (ngeVLAN nganye) | Ewe (ngeVNI nganye) |
Itonela | Akukho tunneling (flat L2) | Isebenzisa ii-VTEPs (i-VXLAN Tunnel Endpoints) |
Sebenzisa Amatyala | IiLAN ezincinci / eziphakathi, uthungelwano lwamashishini | amaziko data Cloud, SDN, VMware NSX, Cisco ACI |
Ukuxhomekeka koMthi oNabileyo (STP). | Ewe (ukuthintela iilophu) | Hayi (usebenzisa uLayiko 3 indlela, inqanda imiba ye-STP) |
Inkxaso yeHardware | Ixhaswe kuzo zonke iiswitshi | Ifuna VXLAN-ekwaziyo ukutshintshela/NICs (okanye VTEPs software) |
Inkxaso yokuHamba | Ilinganiselwe (ngaphakathi kwendawo ye-L2 efanayo) | Ngcono (ii-VM zinokuhamba ngapha kwee-subnets) |
Yintoni enokwenziwa yiMylinking™ Network Packet Broker kwiNethiwekhi yeTekhnoloji yeVirtual?
I-VLAN ephawulweyo, iVLAN ayichazwanga, i-VLAN iTshintshwe:
Kuxhaswe ukuhambelana kwayo nayiphi na indawo ephambili kwi-128 bytes yokuqala yepakethi. Umsebenzisi unokwenza ngokwezifiso ixabiso le-offset kunye nobude bentsimi engundoqo kunye nomxholo, kwaye unqume umgaqo-nkqubo wokuphuma kwe-traffic ngokobunjwa komsebenzisi.
I-Tunnel Encapsulation Stripping:
Ixhaswe i-VxLAN, i-VLAN, i-GRE, i-GTP, i-MPLS, i-IPIP i-header ehluthwe kwipakethi yedatha yokuqala kunye nesiphumo esithunyelwe.
Ukuchongwa kweProtocol yokuTyunela
Ixhaswe ngokuzenzekelayo ichonge iiprothokholi ezahlukeneyo ze-tunnel ezifana ne-GTP / GRE / PPTP / L2TP / PPPOE/IPIP. Ngokobumbeko bomsebenzisi, isicwangciso sokuphuma kwetrafikhi sinokuphunyezwa ngokomaleko wangaphakathi okanye wangaphandle wetonela.
Ungajonga apha ukuze ufumane iinkcukacha ezithe vetshe malunga nokuhambelanaNetwork Packet Broker.
Ixesha lokuposa: Jun-25-2025