๐Ÿ” VLAN์„ ๋„˜๋‚˜๋“œ๋Š” ํ†ต์‹ ๊ณผ ๊ฒŒ์ดํŠธ์›จ์ด ์ด์ค‘ํ™”: Inter-VLAN Routing & HSRP (Part 3)

Part 1-2์—์„œ VLAN์„ ๋ถ„๋ฆฌํ–ˆ๋”๋‹ˆ ๊ฐœ๋ฐœํŒ€(VLAN 10)๊ณผ ์ธ์‚ฌํŒ€(VLAN 20)์ด ์„œ๋กœ ์™„์ „ํžˆ ์ฐจ๋‹จ๋์Šต๋‹ˆ๋‹ค. ๊ทธ๋Ÿฐ๋ฐ ์‹ค์ œ ์—…๋ฌด์—์„œ๋Š” ๋ถ€์„œ ๊ฐ„์— ์„ ํƒ์ ์œผ๋กœ ํ†ต์‹ ์ด ํ•„์š”ํ•œ ๊ฒฝ์šฐ๋„ ์žˆ์Šต๋‹ˆ๋‹ค. ๋˜ “๊ฒŒ์ดํŠธ์›จ์ด ๋ผ์šฐํ„ฐ๊ฐ€ ์ฃฝ์œผ๋ฉด ์ธํ„ฐ๋„ท์ด ๋Š๊ธฐ๋Š” ๊ฒƒ ์•„๋‹Œ๊ฐ€?”๋ผ๋Š” ๋ฌธ์ œ๋„ ์žˆ์—ˆ์Šต๋‹ˆ๋‹ค.

Part 3์—์„œ๋Š” ์ด ๋‘ ๊ฐ€์ง€ ๋ฌธ์ œ๋ฅผ ๋™์‹œ์— ํ•ด๊ฒฐํ•ฉ๋‹ˆ๋‹ค.


Inter-VLAN Routing โ€” VLAN ์‚ฌ์ด์˜ ๋‹ค๋ฆฌ ๋†“๊ธฐ

Router-on-a-Stick ๋ฐฉ์‹

VLAN ๊ฐ„ ํ†ต์‹ ์„ ์œ„ํ•ด์„œ๋Š” ๋ฐ˜๋“œ์‹œ ๋ผ์šฐํ„ฐ๊ฐ€ ํ•„์š”ํ•ฉ๋‹ˆ๋‹ค. ์—ฌ๊ธฐ์„œ ์“ฐ๋Š” ๋ฐฉ๋ฒ•์ด Router-on-a-Stick์ž…๋‹ˆ๋‹ค. ํ•˜๋‚˜์˜ ๋ฌผ๋ฆฌ ์ธํ„ฐํŽ˜์ด์Šค๋ฅผ ์—ฌ๋Ÿฌ VLAN์— ๋Œ€์‘ํ•˜๋Š” ์„œ๋ธŒ์ธํ„ฐํŽ˜์ด์Šค(Sub-interface)๋กœ ๋ถ„ํ• ํ•ด ์‚ฌ์šฉํ•ฉ๋‹ˆ๋‹ค.

๋ฌผ๋ฆฌ ์ธํ„ฐํŽ˜์ด์Šค Gig0/1 (Trunk)
     โ”œโ”€โ”€ Gig0/1.10  โ†’ VLAN 10 ๊ฒŒ์ดํŠธ์›จ์ด (10.10.10.252)
     โ”œโ”€โ”€ Gig0/1.20  โ†’ VLAN 20 ๊ฒŒ์ดํŠธ์›จ์ด (10.10.20.252)
     โ””โ”€โ”€ Gig0/1.30  โ†’ VLAN 30 ๊ฒŒ์ดํŠธ์›จ์ด (10.10.30.252)
interface GigabitEthernet0/1
 description >> TRUNK_to_DIST-SW1 <<
 no ip address
 no shutdown

! VLAN 10 ์„œ๋ธŒ์ธํ„ฐํŽ˜์ด์Šค (๊ฐœ๋ฐœํŒ€)
interface GigabitEthernet0/1.10
 encapsulation dot1Q 10       ! VLAN 10์˜ 802.1Q ํƒœ๊ทธ ์ฒ˜๋ฆฌ
 ip address 10.10.10.252 255.255.255.0

encapsulation dot1Q 10์€ ์ด ์„œ๋ธŒ์ธํ„ฐํŽ˜์ด์Šค๊ฐ€ VLAN 10์œผ๋กœ ํƒœ๊ทธ๋œ ํŠธ๋ž˜ํ”ฝ๋งŒ ์ฒ˜๋ฆฌํ•˜๋„๋ก ์ง€์ •ํ•ฉ๋‹ˆ๋‹ค.


HSRP โ€” ๊ฒŒ์ดํŠธ์›จ์ด๊ฐ€ ์ฃฝ์–ด๋„ ํ†ต์‹ ์€ ์‚ด์•„์žˆ๋‹ค

๋ฌธ์ œ: ๋‹จ์ผ ๊ฒŒ์ดํŠธ์›จ์ด์˜ ์œ„ํ—˜์„ฑ

PC๋“ค์˜ Default Gateway๊ฐ€ 10.10.10.254๋กœ ์„ค์ •๋˜์–ด ์žˆ๋‹ค๊ณ  ํ•ฉ์‹œ๋‹ค. ๊ทธ ๊ฒŒ์ดํŠธ์›จ์ด๊ฐ€ ์ฃฝ์œผ๋ฉด? ์ธํ„ฐ๋„ท ์ „์ฒด๊ฐ€ ๋Š๊น๋‹ˆ๋‹ค. ์ด๊ฒƒ์ด SPOF(Single Point of Failure)์ž…๋‹ˆ๋‹ค.

HSRP(Hot Standby Router Protocol)๋Š” ๋‘ ๋Œ€์˜ ๋ผ์šฐํ„ฐ๊ฐ€ ํ•˜๋‚˜์˜ ๊ฐ€์ƒ IP(VIP)๋ฅผ ๊ณต์œ ํ•˜๋Š” ๋ฐฉ์‹์œผ๋กœ ์ด ๋ฌธ์ œ๋ฅผ ํ•ด๊ฒฐํ•ฉ๋‹ˆ๋‹ค. PC๋Š” ํ•ญ์ƒ ๊ฐ™์€ IP(10.10.10.254)๋กœ ํ†ต์‹ ํ•˜์ง€๋งŒ, ์‹ค์ œ๋กœ๋Š” Active ๋ผ์šฐํ„ฐ์™€ Standby ๋ผ์šฐํ„ฐ๊ฐ€ ๋’ค์—์„œ ๋ฒˆ๊ฐˆ์•„ ๋‹ด๋‹นํ•ฉ๋‹ˆ๋‹ค.

PC1 โ†’ Gateway 10.10.10.254 (VIP)
              โ†“
    โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”ดโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
    โ”‚                    โ”‚
[CORE-RTR1]         [CORE-RTR2]
(Active, ์‹ค์ œ ์ฒ˜๋ฆฌ)  (Standby, ๋Œ€๊ธฐ)
  IP: 10.10.10.252     IP: 10.10.10.253

Active ๋ผ์šฐํ„ฐ๊ฐ€ ์ฃฝ์œผ๋ฉด Standby๊ฐ€ VIP๋ฅผ ์ธ์ˆ˜ํ•ด ์„œ๋น„์Šค๋ฅผ ์ด์–ด๊ฐ‘๋‹ˆ๋‹ค.

CORE-RTR1 HSRP ์„ค์ • (Active)

interface GigabitEthernet0/1.10
 encapsulation dot1Q 10
 ip address 10.10.10.252 255.255.255.0

 standby version 2                     ! HSRPv2 ์‚ฌ์šฉ
 standby 10 ip 10.10.10.254            ! VIP (PC์˜ ๊ฒŒ์ดํŠธ์›จ์ด)
 standby 10 priority 110               ! ๋†’์€ Priority โ†’ Active ์„ ์ถœ
 standby 10 preempt                    ! ๋ณต๊ตฌ ํ›„ Active ์ž๋™ ์žฌํš๋“
 standby 10 track GigabitEthernet0/0 20 ! WAN ๋งํฌ ๋‹ค์šด ์‹œ Priority -20

CORE-RTR2 HSRP ์„ค์ • (Standby)

interface GigabitEthernet0/1.10
 encapsulation dot1Q 10
 ip address 10.10.10.253 255.255.255.0

 standby version 2
 standby 10 ip 10.10.10.254   ! ๊ฐ™์€ VIP ๊ณต์œ 
 standby 10 priority 100      ! ๋‚ฎ์€ Priority โ†’ Standby
 standby 10 preempt

ํ•ต์‹ฌ ์„ค์ • ํ•ญ๋ชฉ ํ•ด์„ค

๋ช…๋ น์–ด์„ค๋ช…
standby version 2HSRPv2 โ€” ๋ฐ€๋ฆฌ์ดˆ ๋‹จ์œ„ ํƒ€์ด๋จธ, ๊ทธ๋ฃน ๋ฒˆํ˜ธ 0~4095 ์ง€์›
standby 10 ip 10.10.10.254HSRP ๊ทธ๋ฃน 10์˜ ๊ฐ€์ƒ IP. PC์˜ Default Gateway๋กœ ์„ค์ •
standby 10 priority 110Priority ๋†’์€ ๋ผ์šฐํ„ฐ๊ฐ€ Active ์„ ์ถœ (๊ธฐ๋ณธ๊ฐ’: 100)
standby 10 preemptPriority๊ฐ€ ๋†’์€ ๋ผ์šฐํ„ฐ๊ฐ€ ๋ณต๊ตฌ๋˜๋ฉด Active ์—ญํ•  ์ž๋™ ์žฌํš๋“
standby 10 track Gi0/0 20WAN ๋งํฌ(Gi0/0) ๋‹ค์šด ์‹œ Priority๋ฅผ 20 ๊ฐ์†Œ (110โ†’90 โ†’ Standby์—๊ฒŒ ์–‘๋ณด)

track ์„ค์ •์ด ์ค‘์š”ํ•œ ์ด์œ : CORE-RTR1์ด Active์ด์ง€๋งŒ WAN(์ธํ„ฐ๋„ท) ๋งํฌ๊ฐ€ ๋Š๊ฒผ๋‹ค๋ฉด, ๊ฒŒ์ดํŠธ์›จ์ด ์—ญํ• ์€ ํ•  ์ˆ˜ ์žˆ์–ด๋„ ์ธํ„ฐ๋„ท ์—ฐ๊ฒฐ์€ ๋ชปํ•ฉ๋‹ˆ๋‹ค. ์ด๋•Œ Priority๋ฅผ ์ž๋™์œผ๋กœ ๋‚ฎ์ถฐ CORE-RTR2์—๊ฒŒ Active ์—ญํ• ์„ ๋„˜๊ฒจ์คŒ์œผ๋กœ์จ, PC๋“ค์ด ์‹ค์ œ๋กœ ์ธํ„ฐ๋„ท๊นŒ์ง€ ์—ฐ๊ฒฐ๋˜๋Š” ๊ฒฝ๋กœ๋ฅผ ์‚ฌ์šฉํ•˜๋„๋ก ๋งŒ๋“ญ๋‹ˆ๋‹ค.


๊ฒ€์ฆ ์‹œ๋‚˜๋ฆฌ์˜ค

VLAN ๊ฐ„ ํ†ต์‹  ํ™•์ธ

[PC1 (VLAN 10) โ†’ PC2 (VLAN 20)]
C:\> ping 10.10.20.10

์˜ˆ์ƒ ๊ฒฐ๊ณผ:
Reply from 10.10.20.10: bytes=32 time<1ms โœ…
(Part 1์—์„œ๋Š” ์‹คํŒจํ–ˆ์ง€๋งŒ, ์ด์ œ ๋ผ์šฐํ„ฐ๊ฐ€ ์ค‘๊ฐœํ•˜๋ฏ€๋กœ ์„ฑ๊ณต)

HSRP Failover ํ…Œ์ŠคํŠธ

[Step 1] ์ดˆ๊ธฐ HSRP ์ƒํƒœ ํ™•์ธ
CORE-RTR1# show standby brief
Gi0/1.10  10  110 P Active   local  10.10.10.253  10.10.10.254

[Step 2] ์—ฐ์† Ping ์‹œ์ž‘
PC1> ping 8.8.8.8 -t

[Step 3] CORE-RTR1 ์ „์› OFF

[Step 4] CORE-RTR2์—์„œ ํ™•์ธ
CORE-RTR2# show standby brief
Gi0/1.10  10  100   Active   local  -  10.10.10.254
                              โ†‘ Standby โ†’ Active ์ „ํ™˜

Ping ๊ฒฐ๊ณผ: 10์ดˆ ๋‚ด์™ธ ์†์‹ค ํ›„ ์ž๋™ ๋ณต๊ตฌ โœ…

๐Ÿ’ก ์ด Part์˜ ํ•ต์‹ฌ ๊ตํ›ˆ

“๋ฌผ๋ฆฌ์ ์œผ๋กœ ์—ฐ๊ฒฐ๋˜์–ด ์žˆ์–ด๋„, ๋…ผ๋ฆฌ ์„ค์ •์ด ์—†์œผ๋ฉด ํ†ต์‹ ์€ ๋˜์ง€ ์•Š๋Š”๋‹ค.”

VLAN์ด ๋ถ„๋ฆฌ๋˜์–ด ์žˆ์œผ๋ฉด ๋ฐ”๋กœ ์˜† PC์™€๋„ ํ†ต์‹ ์ด ์•ˆ ๋ฉ๋‹ˆ๋‹ค. Inter-VLAN Routing์ด ์žˆ์–ด์•ผ ๋น„๋กœ์†Œ ๋‹ค๋ฅธ VLAN์œผ๋กœ ํŒจํ‚ท์ด ๋„˜์–ด๊ฐ‘๋‹ˆ๋‹ค. ๊ทธ๋ฆฌ๊ณ  ๊ทธ ๋ผ์šฐํ„ฐ ์ž์ฒด๊ฐ€ SPOF๊ฐ€ ๋˜์ง€ ์•Š๋„๋ก HSRP๋กœ ์ด์ค‘ํ™”ํ•ฉ๋‹ˆ๋‹ค. ์ด ๋‘ ๊ฐ€์ง€๊ฐ€ ํ•จ๊ป˜ ์žˆ์„ ๋•Œ ๋น„๋กœ์†Œ “์•ˆ์ „ํ•˜๊ณ  ์œ ์—ฐํ•œ ๋„คํŠธ์›Œํฌ”๊ฐ€ ์™„์„ฑ๋ฉ๋‹ˆ๋‹ค.