[{"data":1,"prerenderedAt":1556},["ShallowReactive",2],{"blog-\u002Fen\u002Fblog\u002Fconfiguration-vlan-avec-junos":3,"blog-\u002Fen\u002Fblog\u002Fconfiguration-vlan-avec-junos-surround":1426,"blog-\u002Fen\u002Fblog\u002Fconfiguration-vlan-avec-junos-certifications":1482},{"id":4,"title":5,"body":6,"categories":1411,"cover":1413,"cover_contain":210,"credly_badge_id":1414,"date":1415,"description":1416,"extension":1417,"meta":1418,"navigation":210,"path":1419,"related_certifications":1420,"seo":1422,"slug":1423,"stem":1424,"__hash__":1425},"blog\u002Fen\u002Fblog\u002Fconfiguration-vlan-avec-junos.md","Configuring VLANs with Junos",{"type":7,"value":8,"toc":1401},"minimark",[9,14,18,22,38,54,87,106,111,125,148,245,256,268,304,307,319,497,501,508,511,514,621,624,629,807,810,827,879,888,985,988,1004,1019,1029,1079,1083,1103,1119,1173,1176,1209,1212,1277,1283,1287,1301,1329,1332,1363,1368,1382,1390,1394,1397],[10,11,13],"h2",{"id":12},"real-world-use-case","Real-world use case",[15,16,17],"p",{},"You need to segment your corporate network: here's how to create VLANs, inter-VLANs, and trunk interfaces under Junos.",[10,19,21],{"id":20},"junos-virtual-local-area-network-vlan","JunOS: Virtual Local Area Network (VLAN)",[15,23,24,25,29,30,33,34,37],{},"A ",[26,27,28],"strong",{},"virtual local area network"," (VLAN) is an independent, ",[26,31,32],{},"logical computer network",". ",[26,35,36],{},"VLANs"," are essential in the following cases, since they let you:",[39,40,41,45,48,51],"ul",{},[42,43,44],"li",{},"Manage the network more effectively.",[42,46,47],{},"Optimize bandwidth.",[42,49,50],{},"Reduce collision domains.",[42,52,53],{},"Strengthen security.",[15,55,56,57,60,61,64,65,68,69,76,77,82,83,86],{},"The following example explains ",[26,58,59],{},"VLAN","\u002F",[26,62,63],{},"tagged VLAN"," ",[26,66,67],{},"networking"," under JunOS 12.3R8.7 (standard ",[70,71,75],"a",{"href":72,"rel":73},"http:\u002F\u002Ffr.wikipedia.org\u002Fwiki\u002FIEEE_802.1Q",[74],"nofollow","IEEE 802.1Q)"," with layer-3 switches (",[70,78,81],{"href":79,"rel":80},"http:\u002F\u002Fwww.juniper.net\u002Fassets\u002Fus\u002Fen\u002Flocal\u002Fpdf\u002Fdatasheets\u002F1000389-en.pdf",[74],"EX3300","). Here, the routing mode is called ",[26,84,85],{},"Multilayer Switching",".",[15,88,89,90,93,94,97,98,101,102,105],{},"In this tutorial, we'll cover certain points such as: the default VLAN, tagged VLANs, and ",[26,91,92],{},"trunk"," links between ",[26,95,96],{},"two virtual chassis"," of ",[26,99,100],{},"Juniper"," hardware over ",[26,103,104],{},"SFP","+ (10G).",[107,108,110],"h3",{"id":109},"understanding-the-default-vlan-under-junos","Understanding the default VLAN under JunOS",[15,112,113,114,116,117,120,121,124],{},"By default, on a Juniper switch, there's a ",[26,115,59],{}," named: ",[26,118,119],{},"default",", and it encompasses all ports in bridge mode. For example, it lets small businesses avoid having to worry about the initial port configuration. It's directly operational.",[122,123],"br",{},"\nHere's an example initial configuration (configure mode):",[126,127,132],"pre",{"className":128,"code":129,"language":130,"meta":131,"style":131},"language-bash shiki shiki-themes material-theme-lighter material-theme material-theme-palenight","show interfaces\n","bash","",[133,134,135],"code",{"__ignoreMap":131},[136,137,140,144],"span",{"class":138,"line":139},"line",1,[136,141,143],{"class":142},"sBMFI","show",[136,145,147],{"class":146},"sfazB"," interfaces\n",[126,149,151],{"className":128,"code":150,"language":130,"meta":131,"style":131},"interfaces {\n    ge-0\u002F0\u002F0 {\n        unit 0 {\n            family ethernet-switching {\n            }\n        }\n\n    ge-0\u002F0\u002F1 {\n        unit 0 {\n            family ethernet-switching;\n        }\n",[133,152,153,161,169,181,192,199,205,212,220,229,240],{"__ignoreMap":131},[136,154,155,158],{"class":138,"line":139},[136,156,157],{"class":142},"interfaces",[136,159,160],{"class":146}," {\n",[136,162,164,167],{"class":138,"line":163},2,[136,165,166],{"class":142},"    ge-0\u002F0\u002F0",[136,168,160],{"class":146},[136,170,172,175,179],{"class":138,"line":171},3,[136,173,174],{"class":142},"        unit",[136,176,178],{"class":177},"sbssI"," 0",[136,180,160],{"class":146},[136,182,184,187,190],{"class":138,"line":183},4,[136,185,186],{"class":142},"            family",[136,188,189],{"class":146}," ethernet-switching",[136,191,160],{"class":146},[136,193,195],{"class":138,"line":194},5,[136,196,198],{"class":197},"sTEyZ","            }\n",[136,200,202],{"class":138,"line":201},6,[136,203,204],{"class":197},"        }\n",[136,206,208],{"class":138,"line":207},7,[136,209,211],{"emptyLinePlaceholder":210},true,"\n",[136,213,215,218],{"class":138,"line":214},8,[136,216,217],{"class":142},"    ge-0\u002F0\u002F1",[136,219,160],{"class":146},[136,221,223,225,227],{"class":138,"line":222},9,[136,224,174],{"class":142},[136,226,178],{"class":177},[136,228,160],{"class":146},[136,230,232,234,236],{"class":138,"line":231},10,[136,233,186],{"class":142},[136,235,189],{"class":146},[136,237,239],{"class":238},"sMK4o",";\n",[136,241,243],{"class":138,"line":242},11,[136,244,204],{"class":197},[15,246,247,248,251,252,255],{},"For reference, you'll notice that the ",[26,249,250],{},"lldp"," protocol is enabled to exchange information between ports. The ",[26,253,254],{},"rstp"," protocol is also present in the initial configuration (in case of a loop):",[126,257,259],{"className":128,"code":258,"language":130,"meta":131,"style":131},"show protocoles\n",[133,260,261],{"__ignoreMap":131},[136,262,263,265],{"class":138,"line":139},[136,264,143],{"class":142},[136,266,267],{"class":146}," protocoles\n",[126,269,271],{"className":128,"code":270,"language":130,"meta":131,"style":131},"}\nrstp;\nlldp {\n    interface all;\n}\n",[133,272,273,278,284,290,300],{"__ignoreMap":131},[136,274,275],{"class":138,"line":139},[136,276,277],{"class":197},"}\n",[136,279,280,282],{"class":138,"line":163},[136,281,254],{"class":142},[136,283,239],{"class":238},[136,285,286,288],{"class":138,"line":171},[136,287,250],{"class":142},[136,289,160],{"class":146},[136,291,292,295,298],{"class":138,"line":183},[136,293,294],{"class":142},"    interface",[136,296,297],{"class":146}," all",[136,299,239],{"class":238},[136,301,302],{"class":138,"line":194},[136,303,277],{"class":197},[15,305,306],{},"Remember that the default VLAN doesn't use a VLAN ID (no tag), you can check this with the following command:",[126,308,310],{"className":128,"code":309,"language":130,"meta":131,"style":131},"show vlans\n",[133,311,312],{"__ignoreMap":131},[136,313,314,316],{"class":138,"line":139},[136,315,143],{"class":142},[136,317,318],{"class":146}," vlans\n",[126,320,322],{"className":128,"code":321,"language":130,"meta":131,"style":131},"Name           Tag     Interfaces\ndefault       \n                       ge-0\u002F0\u002F1.0, ge-0\u002F0\u002F3.0, ge-0\u002F0\u002F4.0, ge-0\u002F0\u002F5.0, ge-0\u002F0\u002F6.0, ge-0\u002F0\u002F7.0, ge-0\u002F0\u002F8.0, ge-0\u002F0\u002F9.0, ge-0\u002F0\u002F10.0, ge-0\u002F0\u002F11.0, ge-0\u002F0\u002F12.0, ge-0\u002F0\u002F13.0, ge-0\u002F0\u002F14.0,\n                       ge-0\u002F0\u002F15.0, ge-0\u002F0\u002F16.0, ge-0\u002F0\u002F17.0, ge-0\u002F0\u002F18.0, ge-0\u002F0\u002F19.0, ge-0\u002F0\u002F20.0, ge-0\u002F0\u002F21.0, ge-0\u002F0\u002F22.0, ge-0\u002F0\u002F23.0, ge-0\u002F0\u002F24.0, ge-0\u002F0\u002F25.0, ge-0\u002F0\u002F26.0, ge-0\u002F0\u002F27.0,\n                       ge-0\u002F0\u002F28.0, ge-0\u002F0\u002F29.0, ge-0\u002F0\u002F30.0, ge-0\u002F0\u002F31.0, ge-0\u002F0\u002F32.0, ge-0\u002F0\u002F33.0, ge-0\u002F0\u002F34.0, ge-0\u002F0\u002F35.0, ge-0\u002F0\u002F36.0, ge-0\u002F0\u002F37.0, ge-0\u002F0\u002F38.0, ge-0\u002F0\u002F39.0, ge-0\u002F0\u002F40.0,\n                       ge-0\u002F0\u002F41.0, ge-0\u002F0\u002F42.0, ge-0\u002F0\u002F43.0, ge-0\u002F0\u002F44.0, ge-0\u002F0\u002F45.0, ge-0\u002F0\u002F46.0, ge-0\u002F0\u002F47.0, ge-1\u002F0\u002F0.0, ge-1\u002F0\u002F1.0, ge-1\u002F0\u002F23.0\n",[133,323,324,335,342,383,424,465],{"__ignoreMap":131},[136,325,326,329,332],{"class":138,"line":139},[136,327,328],{"class":142},"Name",[136,330,331],{"class":146},"           Tag",[136,333,334],{"class":146},"     Interfaces\n",[136,336,337,339],{"class":138,"line":163},[136,338,119],{"class":142},[136,340,341],{"class":197},"       \n",[136,343,344,347,350,353,356,359,362,365,368,371,374,377,380],{"class":138,"line":171},[136,345,346],{"class":142},"                       ge-0\u002F0\u002F1.0,",[136,348,349],{"class":146}," ge-0\u002F0\u002F3.0,",[136,351,352],{"class":146}," ge-0\u002F0\u002F4.0,",[136,354,355],{"class":146}," ge-0\u002F0\u002F5.0,",[136,357,358],{"class":146}," ge-0\u002F0\u002F6.0,",[136,360,361],{"class":146}," ge-0\u002F0\u002F7.0,",[136,363,364],{"class":146}," ge-0\u002F0\u002F8.0,",[136,366,367],{"class":146}," ge-0\u002F0\u002F9.0,",[136,369,370],{"class":146}," ge-0\u002F0\u002F10.0,",[136,372,373],{"class":146}," ge-0\u002F0\u002F11.0,",[136,375,376],{"class":146}," ge-0\u002F0\u002F12.0,",[136,378,379],{"class":146}," ge-0\u002F0\u002F13.0,",[136,381,382],{"class":146}," ge-0\u002F0\u002F14.0,\n",[136,384,385,388,391,394,397,400,403,406,409,412,415,418,421],{"class":138,"line":183},[136,386,387],{"class":142},"                       ge-0\u002F0\u002F15.0,",[136,389,390],{"class":146}," ge-0\u002F0\u002F16.0,",[136,392,393],{"class":146}," ge-0\u002F0\u002F17.0,",[136,395,396],{"class":146}," ge-0\u002F0\u002F18.0,",[136,398,399],{"class":146}," ge-0\u002F0\u002F19.0,",[136,401,402],{"class":146}," ge-0\u002F0\u002F20.0,",[136,404,405],{"class":146}," ge-0\u002F0\u002F21.0,",[136,407,408],{"class":146}," ge-0\u002F0\u002F22.0,",[136,410,411],{"class":146}," ge-0\u002F0\u002F23.0,",[136,413,414],{"class":146}," ge-0\u002F0\u002F24.0,",[136,416,417],{"class":146}," ge-0\u002F0\u002F25.0,",[136,419,420],{"class":146}," ge-0\u002F0\u002F26.0,",[136,422,423],{"class":146}," ge-0\u002F0\u002F27.0,\n",[136,425,426,429,432,435,438,441,444,447,450,453,456,459,462],{"class":138,"line":194},[136,427,428],{"class":142},"                       ge-0\u002F0\u002F28.0,",[136,430,431],{"class":146}," ge-0\u002F0\u002F29.0,",[136,433,434],{"class":146}," ge-0\u002F0\u002F30.0,",[136,436,437],{"class":146}," ge-0\u002F0\u002F31.0,",[136,439,440],{"class":146}," ge-0\u002F0\u002F32.0,",[136,442,443],{"class":146}," ge-0\u002F0\u002F33.0,",[136,445,446],{"class":146}," ge-0\u002F0\u002F34.0,",[136,448,449],{"class":146}," ge-0\u002F0\u002F35.0,",[136,451,452],{"class":146}," ge-0\u002F0\u002F36.0,",[136,454,455],{"class":146}," ge-0\u002F0\u002F37.0,",[136,457,458],{"class":146}," ge-0\u002F0\u002F38.0,",[136,460,461],{"class":146}," ge-0\u002F0\u002F39.0,",[136,463,464],{"class":146}," ge-0\u002F0\u002F40.0,\n",[136,466,467,470,473,476,479,482,485,488,491,494],{"class":138,"line":201},[136,468,469],{"class":142},"                       ge-0\u002F0\u002F41.0,",[136,471,472],{"class":146}," ge-0\u002F0\u002F42.0,",[136,474,475],{"class":146}," ge-0\u002F0\u002F43.0,",[136,477,478],{"class":146}," ge-0\u002F0\u002F44.0,",[136,480,481],{"class":146}," ge-0\u002F0\u002F45.0,",[136,483,484],{"class":146}," ge-0\u002F0\u002F46.0,",[136,486,487],{"class":146}," ge-0\u002F0\u002F47.0,",[136,489,490],{"class":146}," ge-1\u002F0\u002F0.0,",[136,492,493],{"class":146}," ge-1\u002F0\u002F1.0,",[136,495,496],{"class":146}," ge-1\u002F0\u002F23.0\n",[10,498,500],{"id":499},"configuring-vlans","Configuring VLANs",[15,502,503,504,507],{},"We'll create various tagged VLANs (",[26,505,506],{},"VLAN ID",") as shown in the table below:",[15,509,510],{},"Interfacesge-0\u002F0\u002F0ge-0\u002F1\u002F0ge-0\u002F2\u002F0ge-0\u002F3\u002F0ge-0\u002F4\u002F0ge-0\u002F3\u002F0ge-0\u002F4\u002F0VLAN ID10203040506070VLANadminserversprintersuserswirelessvoipguest",[15,512,513],{},"Creating the various tagged VLANs is done with the following command (configure mode):",[126,515,517],{"className":128,"code":516,"language":130,"meta":131,"style":131},"set vlans admin vlan-id 10\nset vlans servers vlan-id 20\nset vlans printers vlan-id 30\nset vlans users vlan-id 40\nset vlans wireless vlan-id 50\nset vlans voip vlan-id 60\nset vlans invite vlan-id 70\n",[133,518,519,537,551,565,579,593,607],{"__ignoreMap":131},[136,520,521,525,528,531,534],{"class":138,"line":139},[136,522,524],{"class":523},"s2Zo4","set",[136,526,527],{"class":146}," vlans",[136,529,530],{"class":146}," admin",[136,532,533],{"class":146}," vlan-id",[136,535,536],{"class":177}," 10\n",[136,538,539,541,543,546,548],{"class":138,"line":163},[136,540,524],{"class":523},[136,542,527],{"class":146},[136,544,545],{"class":146}," servers",[136,547,533],{"class":146},[136,549,550],{"class":177}," 20\n",[136,552,553,555,557,560,562],{"class":138,"line":171},[136,554,524],{"class":523},[136,556,527],{"class":146},[136,558,559],{"class":146}," printers",[136,561,533],{"class":146},[136,563,564],{"class":177}," 30\n",[136,566,567,569,571,574,576],{"class":138,"line":183},[136,568,524],{"class":523},[136,570,527],{"class":146},[136,572,573],{"class":146}," users",[136,575,533],{"class":146},[136,577,578],{"class":177}," 40\n",[136,580,581,583,585,588,590],{"class":138,"line":194},[136,582,524],{"class":523},[136,584,527],{"class":146},[136,586,587],{"class":146}," wireless",[136,589,533],{"class":146},[136,591,592],{"class":177}," 50\n",[136,594,595,597,599,602,604],{"class":138,"line":201},[136,596,524],{"class":523},[136,598,527],{"class":146},[136,600,601],{"class":146}," voip",[136,603,533],{"class":146},[136,605,606],{"class":177}," 60\n",[136,608,609,611,613,616,618],{"class":138,"line":207},[136,610,524],{"class":523},[136,612,527],{"class":146},[136,614,615],{"class":146}," invite",[136,617,533],{"class":146},[136,619,620],{"class":177}," 70\n",[15,622,623],{},"Here, we need to configure our various interfaces to belong to the selected VLAN, and there are two approaches to configuring an interface within a VLAN:",[39,625,626],{},[42,627,628],{},"Method 1: Add the member VLAN via the interface's configuration.",[126,630,632],{"className":128,"code":631,"language":130,"meta":131,"style":131},"set interfaces ge-0\u002F0\u002F0 unit 0 family ethernet-switching vlan members admin\nset interfaces ge-0\u002F0\u002F1 unit 0 family ethernet-switching vlan members servers\nset interfaces ge-0\u002F0\u002F2 unit 0 family ethernet-switching vlan members printers\nset interfaces ge-0\u002F0\u002F3 unit 0 family ethernet-switching vlan members users\nset interfaces ge-0\u002F0\u002F4 unit 0 family ethernet-switching vlan members wireless\nset interfaces ge-0\u002F0\u002F5 unit 0 family ethernet-switching vlan members voip\nset interfaces ge-0\u002F0\u002F6 unit 0 family ethernet-switching vlan members invite\n",[133,633,634,663,687,711,735,759,783],{"__ignoreMap":131},[136,635,636,638,641,644,647,649,652,654,657,660],{"class":138,"line":139},[136,637,524],{"class":523},[136,639,640],{"class":146}," interfaces",[136,642,643],{"class":146}," ge-0\u002F0\u002F0",[136,645,646],{"class":146}," unit",[136,648,178],{"class":177},[136,650,651],{"class":146}," family",[136,653,189],{"class":146},[136,655,656],{"class":146}," vlan",[136,658,659],{"class":146}," members",[136,661,662],{"class":146}," admin\n",[136,664,665,667,669,672,674,676,678,680,682,684],{"class":138,"line":163},[136,666,524],{"class":523},[136,668,640],{"class":146},[136,670,671],{"class":146}," ge-0\u002F0\u002F1",[136,673,646],{"class":146},[136,675,178],{"class":177},[136,677,651],{"class":146},[136,679,189],{"class":146},[136,681,656],{"class":146},[136,683,659],{"class":146},[136,685,686],{"class":146}," servers\n",[136,688,689,691,693,696,698,700,702,704,706,708],{"class":138,"line":171},[136,690,524],{"class":523},[136,692,640],{"class":146},[136,694,695],{"class":146}," ge-0\u002F0\u002F2",[136,697,646],{"class":146},[136,699,178],{"class":177},[136,701,651],{"class":146},[136,703,189],{"class":146},[136,705,656],{"class":146},[136,707,659],{"class":146},[136,709,710],{"class":146}," printers\n",[136,712,713,715,717,720,722,724,726,728,730,732],{"class":138,"line":183},[136,714,524],{"class":523},[136,716,640],{"class":146},[136,718,719],{"class":146}," ge-0\u002F0\u002F3",[136,721,646],{"class":146},[136,723,178],{"class":177},[136,725,651],{"class":146},[136,727,189],{"class":146},[136,729,656],{"class":146},[136,731,659],{"class":146},[136,733,734],{"class":146}," users\n",[136,736,737,739,741,744,746,748,750,752,754,756],{"class":138,"line":194},[136,738,524],{"class":523},[136,740,640],{"class":146},[136,742,743],{"class":146}," ge-0\u002F0\u002F4",[136,745,646],{"class":146},[136,747,178],{"class":177},[136,749,651],{"class":146},[136,751,189],{"class":146},[136,753,656],{"class":146},[136,755,659],{"class":146},[136,757,758],{"class":146}," wireless\n",[136,760,761,763,765,768,770,772,774,776,778,780],{"class":138,"line":201},[136,762,524],{"class":523},[136,764,640],{"class":146},[136,766,767],{"class":146}," ge-0\u002F0\u002F5",[136,769,646],{"class":146},[136,771,178],{"class":177},[136,773,651],{"class":146},[136,775,189],{"class":146},[136,777,656],{"class":146},[136,779,659],{"class":146},[136,781,782],{"class":146}," voip\n",[136,784,785,787,789,792,794,796,798,800,802,804],{"class":138,"line":207},[136,786,524],{"class":523},[136,788,640],{"class":146},[136,790,791],{"class":146}," ge-0\u002F0\u002F6",[136,793,646],{"class":146},[136,795,178],{"class":177},[136,797,651],{"class":146},[136,799,189],{"class":146},[136,801,656],{"class":146},[136,803,659],{"class":146},[136,805,806],{"class":146}," invite\n",[15,808,809],{},"Run a check on your interface:",[126,811,813],{"className":128,"code":812,"language":130,"meta":131,"style":131},"show configuration interfaces ge-0\u002F0\u002F0\n",[133,814,815],{"__ignoreMap":131},[136,816,817,819,822,824],{"class":138,"line":139},[136,818,143],{"class":142},[136,820,821],{"class":146}," configuration",[136,823,640],{"class":146},[136,825,826],{"class":146}," ge-0\u002F0\u002F0\n",[126,828,830],{"className":128,"code":829,"language":130,"meta":131,"style":131},"unit 0 {\n    family ethernet-switching {\n        vlan {\n            members admin;\n        }\n    }\n}\n",[133,831,832,841,850,857,866,870,875],{"__ignoreMap":131},[136,833,834,837,839],{"class":138,"line":139},[136,835,836],{"class":142},"unit",[136,838,178],{"class":177},[136,840,160],{"class":146},[136,842,843,846,848],{"class":138,"line":163},[136,844,845],{"class":142},"    family",[136,847,189],{"class":146},[136,849,160],{"class":146},[136,851,852,855],{"class":138,"line":171},[136,853,854],{"class":142},"        vlan",[136,856,160],{"class":146},[136,858,859,862,864],{"class":138,"line":183},[136,860,861],{"class":142},"            members",[136,863,530],{"class":146},[136,865,239],{"class":238},[136,867,868],{"class":138,"line":194},[136,869,204],{"class":197},[136,871,872],{"class":138,"line":201},[136,873,874],{"class":197},"    }\n",[136,876,877],{"class":138,"line":207},[136,878,277],{"class":197},[39,880,881],{},[42,882,883,884,887],{},"Method 2: Add the interface via the ",[26,885,886],{},"member VLAN's"," configuration.",[126,889,891],{"className":128,"code":890,"language":130,"meta":131,"style":131},"set vlans admin interface ge-0\u002F0\u002F0\nset vlans servers interface ge-0\u002F0\u002F1\nset vlans printers interface ge-0\u002F0\u002F2\nset vlans users interface ge-0\u002F0\u002F3\nset vlans wirless interface ge-0\u002F0\u002F4\nset vlans voip interface ge-0\u002F0\u002F5\nset vlans invite interface ge-0\u002F0\u002F6\n",[133,892,893,906,919,932,945,959,972],{"__ignoreMap":131},[136,894,895,897,899,901,904],{"class":138,"line":139},[136,896,524],{"class":523},[136,898,527],{"class":146},[136,900,530],{"class":146},[136,902,903],{"class":146}," interface",[136,905,826],{"class":146},[136,907,908,910,912,914,916],{"class":138,"line":163},[136,909,524],{"class":523},[136,911,527],{"class":146},[136,913,545],{"class":146},[136,915,903],{"class":146},[136,917,918],{"class":146}," ge-0\u002F0\u002F1\n",[136,920,921,923,925,927,929],{"class":138,"line":171},[136,922,524],{"class":523},[136,924,527],{"class":146},[136,926,559],{"class":146},[136,928,903],{"class":146},[136,930,931],{"class":146}," ge-0\u002F0\u002F2\n",[136,933,934,936,938,940,942],{"class":138,"line":183},[136,935,524],{"class":523},[136,937,527],{"class":146},[136,939,573],{"class":146},[136,941,903],{"class":146},[136,943,944],{"class":146}," ge-0\u002F0\u002F3\n",[136,946,947,949,951,954,956],{"class":138,"line":194},[136,948,524],{"class":523},[136,950,527],{"class":146},[136,952,953],{"class":146}," wirless",[136,955,903],{"class":146},[136,957,958],{"class":146}," ge-0\u002F0\u002F4\n",[136,960,961,963,965,967,969],{"class":138,"line":201},[136,962,524],{"class":523},[136,964,527],{"class":146},[136,966,601],{"class":146},[136,968,903],{"class":146},[136,970,971],{"class":146}," ge-0\u002F0\u002F5\n",[136,973,974,976,978,980,982],{"class":138,"line":207},[136,975,524],{"class":523},[136,977,527],{"class":146},[136,979,615],{"class":146},[136,981,903],{"class":146},[136,983,984],{"class":146}," ge-0\u002F0\u002F6\n",[15,986,987],{},"The difference here is that the VLAN's configuration isn't available on the interface, only via the following command:",[126,989,991],{"className":128,"code":990,"language":130,"meta":131,"style":131},"show vlan admin interface\n",[133,992,993],{"__ignoreMap":131},[136,994,995,997,999,1001],{"class":138,"line":139},[136,996,143],{"class":142},[136,998,656],{"class":146},[136,1000,530],{"class":146},[136,1002,1003],{"class":146}," interface\n",[15,1005,1006,64,1010,1017],{},[1007,1008,1009],"em",{},"To wrap up, whichever method you use makes no difference. We've seen how to create VLANs and assign a VLAN to an interface. Now the goal is to do",[70,1011,1014],{"href":1012,"rel":1013},"http:\u002F\u002Fwww.youtube.com\u002Fwatch?v=AsItAtTQ3EE",[74],[1007,1015,1016],{},"inter-VLAN routing",[1007,1018,86],{},[15,1020,1021,1022,1025,1026,1028],{},"Tip: it's possible to group ",[26,1023,1024],{},"several interfaces"," into a ",[26,1027,59],{}," very simply, here's an example:",[126,1030,1032],{"className":128,"code":1031,"language":130,"meta":131,"style":131},"set interfaces interface-range users unit 0 family ethernet-switching vlan members users\nset interfaces interface-range users member-range ge-0\u002F0\u002F3 to ge-0\u002F0\u002F6\n",[133,1033,1034,1059],{"__ignoreMap":131},[136,1035,1036,1038,1040,1043,1045,1047,1049,1051,1053,1055,1057],{"class":138,"line":139},[136,1037,524],{"class":523},[136,1039,640],{"class":146},[136,1041,1042],{"class":146}," interface-range",[136,1044,573],{"class":146},[136,1046,646],{"class":146},[136,1048,178],{"class":177},[136,1050,651],{"class":146},[136,1052,189],{"class":146},[136,1054,656],{"class":146},[136,1056,659],{"class":146},[136,1058,734],{"class":146},[136,1060,1061,1063,1065,1067,1069,1072,1074,1077],{"class":138,"line":163},[136,1062,524],{"class":523},[136,1064,640],{"class":146},[136,1066,1042],{"class":146},[136,1068,573],{"class":146},[136,1070,1071],{"class":146}," member-range",[136,1073,719],{"class":146},[136,1075,1076],{"class":146}," to",[136,1078,984],{"class":146},[10,1080,1082],{"id":1081},"configuring-inter-vlan-routing-interfaces","Configuring inter-VLAN routing interfaces.",[15,1084,1085,1086,1091,1092,1095,1096,1099,1100,1102],{},"Explaining inter-VLAN routing, or a ",[70,1087,1090],{"href":1088,"rel":1089},"http:\u002F\u002Fwww.juniper.net\u002Ftechpubs\u002Fen_US\u002Fjunos12.1\u002Ftopics\u002Fconcept\u002Fbridging-routed-vlan-interface.html",[74],"routed VLAN interface"," (",[26,1093,1094],{},"RVI",") at ",[26,1097,1098],{},"Juniper,"," lets us make VLANs communicate with each other. Let's take an example with the servers and users ",[26,1101,36],{},". We want users to be able to access the servers.",[15,1104,1105,1106,1108,1109,1091,1112,1114,1115,1118],{},"We'll first create two VLAN ",[26,1107,157],{}," with the ",[26,1110,1111],{},"logical unit",[26,1113,836],{},") of our ",[26,1116,1117],{},"VLAN IDs",", like this:",[126,1120,1122],{"className":128,"code":1121,"language":130,"meta":131,"style":131},"set interfaces vlan unit 20 family inet address 192.168.20.1\u002F24 \nset interfaces vlan unit 40 family inet address 192.168.40.1\u002F24\n",[133,1123,1124,1151],{"__ignoreMap":131},[136,1125,1126,1128,1130,1132,1134,1137,1139,1142,1145,1148],{"class":138,"line":139},[136,1127,524],{"class":523},[136,1129,640],{"class":146},[136,1131,656],{"class":146},[136,1133,646],{"class":146},[136,1135,1136],{"class":177}," 20",[136,1138,651],{"class":146},[136,1140,1141],{"class":146}," inet",[136,1143,1144],{"class":146}," address",[136,1146,1147],{"class":146}," 192.168.20.1\u002F24",[136,1149,1150],{"class":197}," \n",[136,1152,1153,1155,1157,1159,1161,1164,1166,1168,1170],{"class":138,"line":163},[136,1154,524],{"class":523},[136,1156,640],{"class":146},[136,1158,656],{"class":146},[136,1160,646],{"class":146},[136,1162,1163],{"class":177}," 40",[136,1165,651],{"class":146},[136,1167,1141],{"class":146},[136,1169,1144],{"class":146},[136,1171,1172],{"class":146}," 192.168.40.1\u002F24\n",[15,1174,1175],{},"Now we can link our VLAN interfaces to the RVI in order to make our two VLANs communicate:",[126,1177,1179],{"className":128,"code":1178,"language":130,"meta":131,"style":131},"set vlans serveurs l3-interface vlan.20\nset vlans users l3-interface vlan.40\n",[133,1180,1181,1196],{"__ignoreMap":131},[136,1182,1183,1185,1187,1190,1193],{"class":138,"line":139},[136,1184,524],{"class":523},[136,1186,527],{"class":146},[136,1188,1189],{"class":146}," serveurs",[136,1191,1192],{"class":146}," l3-interface",[136,1194,1195],{"class":146}," vlan.20\n",[136,1197,1198,1200,1202,1204,1206],{"class":138,"line":163},[136,1199,524],{"class":523},[136,1201,527],{"class":146},[136,1203,573],{"class":146},[136,1205,1192],{"class":146},[136,1207,1208],{"class":146}," vlan.40\n",[15,1210,1211],{},"Try it out and connect a host to VLAN ID 20, then to VLAN ID 40, and run the command:",[126,1213,1215],{"className":128,"code":1214,"language":130,"meta":131,"style":131},"show interfaces terse | match vlan\nvlan                    up    up\nvlan.20                 up    up   inet     192.168.20.1\u002F24\nvlan.40                 up    up   inet     192.168.40.1\u002F24\n",[133,1216,1217,1235,1246,1263],{"__ignoreMap":131},[136,1218,1219,1221,1223,1226,1229,1232],{"class":138,"line":139},[136,1220,143],{"class":142},[136,1222,640],{"class":146},[136,1224,1225],{"class":146}," terse",[136,1227,1228],{"class":238}," |",[136,1230,1231],{"class":142}," match",[136,1233,1234],{"class":146}," vlan\n",[136,1236,1237,1240,1243],{"class":138,"line":163},[136,1238,1239],{"class":142},"vlan",[136,1241,1242],{"class":146},"                    up",[136,1244,1245],{"class":146},"    up\n",[136,1247,1248,1251,1254,1257,1260],{"class":138,"line":171},[136,1249,1250],{"class":142},"vlan.20",[136,1252,1253],{"class":146},"                 up",[136,1255,1256],{"class":146},"    up",[136,1258,1259],{"class":146},"   inet",[136,1261,1262],{"class":146},"     192.168.20.1\u002F24\n",[136,1264,1265,1268,1270,1272,1274],{"class":138,"line":183},[136,1266,1267],{"class":142},"vlan.40",[136,1269,1253],{"class":146},[136,1271,1256],{"class":146},[136,1273,1259],{"class":146},[136,1275,1276],{"class":146},"     192.168.40.1\u002F24\n",[15,1278,1279,1280],{},"Your two hosts should now be able to reach each other with a simple ",[26,1281,1282],{},"ping.",[10,1284,1286],{"id":1285},"configuring-trunk-links","Configuring trunk links",[15,1288,1289,1290,1293,1294,1297,1298,1300],{},"In my case, one ",[26,1291,1292],{},"virtual chassis"," is an EX3300, and the other an EX4200, connected via ",[26,1295,1296],{},"SFP+"," (10G).",[122,1299],{},"\nFirst, we'll configure the SFP+ (xe) interface in trunk mode, as shown below:",[126,1302,1304],{"className":128,"code":1303,"language":130,"meta":131,"style":131},"set interfaces xe-0\u002F1\u002F0 unit 0 family ethernet-switching port-mode trunk\n",[133,1305,1306],{"__ignoreMap":131},[136,1307,1308,1310,1312,1315,1317,1319,1321,1323,1326],{"class":138,"line":139},[136,1309,524],{"class":523},[136,1311,640],{"class":146},[136,1313,1314],{"class":146}," xe-0\u002F1\u002F0",[136,1316,646],{"class":146},[136,1318,178],{"class":177},[136,1320,651],{"class":146},[136,1322,189],{"class":146},[136,1324,1325],{"class":146}," port-mode",[136,1327,1328],{"class":146}," trunk\n",[15,1330,1331],{},"Then we'll allow our various VLANs to use the trunk link:",[126,1333,1335],{"className":128,"code":1334,"language":130,"meta":131,"style":131},"set interfaces xe-0\u002F1\u002F0 unit 0 family ethernet-switching vlan members [serveurs users]\n",[133,1336,1337],{"__ignoreMap":131},[136,1338,1339,1341,1343,1345,1347,1349,1351,1353,1355,1357,1360],{"class":138,"line":139},[136,1340,524],{"class":523},[136,1342,640],{"class":146},[136,1344,1314],{"class":146},[136,1346,646],{"class":146},[136,1348,178],{"class":177},[136,1350,651],{"class":146},[136,1352,189],{"class":146},[136,1354,656],{"class":146},[136,1356,659],{"class":146},[136,1358,1359],{"class":197}," [serveurs ",[136,1361,1362],{"class":146},"users]\n",[15,1364,1365],{},[1007,1366,1367],{},"Remember that as long as you don't explicitly add a VLAN member to the (xe) interface, no TCP\u002FIP data will pass through it!",[15,1369,1370,1371,1374,1375,1378,1379,1381],{},"I encourage you to repeat the same steps on your other ",[26,1372,1373],{},"switch"," (or ",[26,1376,1377],{},"chassis",") to finish this tutorial and let your ",[26,1380,36],{}," flow through!",[15,1383,1384,1385,86],{},"This walkthrough ends here, and for more information, head to this address: ",[70,1386,1389],{"href":1387,"rel":1388},"http:\u002F\u002Fwww.juniper.net\u002Fdocumentation\u002Fen_US\u002Fjunos11.4\u002Ftopics\u002Fconcept\u002Fbridging-ex-series-understanding.html#jd0e202",[74],"Understanding bridge mode and VLANs on EX switches",[10,1391,1393],{"id":1392},"conclusion","Conclusion",[15,1395,1396],{},"This tutorial covers creating tagged VLANs under JunOS, associating them with interfaces using the two available methods, as well as setting up inter-VLAN routing (RVI) and trunk links between chassis. These elements form the essential foundation for segmenting and enabling communication across a Juniper network in a secure and organized way. A solid grasp of VLANs and inter-VLAN routing then makes it easier to build more complex network architectures.",[1398,1399,1400],"style",{},"html pre.shiki code .sBMFI, html code.shiki .sBMFI{--shiki-light:#E2931D;--shiki-default:#FFCB6B;--shiki-dark:#FFCB6B}html pre.shiki code .sfazB, html code.shiki .sfazB{--shiki-light:#91B859;--shiki-default:#C3E88D;--shiki-dark:#C3E88D}html .light .shiki span {color: var(--shiki-light);background: var(--shiki-light-bg);font-style: var(--shiki-light-font-style);font-weight: var(--shiki-light-font-weight);text-decoration: var(--shiki-light-text-decoration);}html.light .shiki span {color: var(--shiki-light);background: var(--shiki-light-bg);font-style: var(--shiki-light-font-style);font-weight: var(--shiki-light-font-weight);text-decoration: var(--shiki-light-text-decoration);}html .default .shiki span {color: var(--shiki-default);background: var(--shiki-default-bg);font-style: var(--shiki-default-font-style);font-weight: var(--shiki-default-font-weight);text-decoration: var(--shiki-default-text-decoration);}html .shiki span {color: var(--shiki-default);background: var(--shiki-default-bg);font-style: var(--shiki-default-font-style);font-weight: var(--shiki-default-font-weight);text-decoration: var(--shiki-default-text-decoration);}html .dark .shiki span {color: var(--shiki-dark);background: var(--shiki-dark-bg);font-style: var(--shiki-dark-font-style);font-weight: var(--shiki-dark-font-weight);text-decoration: var(--shiki-dark-text-decoration);}html.dark .shiki span {color: var(--shiki-dark);background: var(--shiki-dark-bg);font-style: var(--shiki-dark-font-style);font-weight: var(--shiki-dark-font-weight);text-decoration: var(--shiki-dark-text-decoration);}html pre.shiki code .sbssI, html code.shiki .sbssI{--shiki-light:#F76D47;--shiki-default:#F78C6C;--shiki-dark:#F78C6C}html pre.shiki code .sTEyZ, html code.shiki .sTEyZ{--shiki-light:#90A4AE;--shiki-default:#EEFFFF;--shiki-dark:#BABED8}html pre.shiki code .sMK4o, html code.shiki .sMK4o{--shiki-light:#39ADB5;--shiki-default:#89DDFF;--shiki-dark:#89DDFF}html pre.shiki code .s2Zo4, html code.shiki .s2Zo4{--shiki-light:#6182B8;--shiki-default:#82AAFF;--shiki-dark:#82AAFF}",{"title":131,"searchDepth":163,"depth":163,"links":1402},[1403,1404,1407,1408,1409,1410],{"id":12,"depth":163,"text":13},{"id":20,"depth":163,"text":21,"children":1405},[1406],{"id":109,"depth":171,"text":110},{"id":499,"depth":163,"text":500},{"id":1081,"depth":163,"text":1082},{"id":1285,"depth":163,"text":1286},{"id":1392,"depth":163,"text":1393},[1412],"Réseau","\u002Fimages\u002Fblog\u002Fconfiguration-vlan-avec-junos\u002F1b4814003c.jpg",null,"2014-11-18","Discover how to create your VLANs, inter-VLANs, and your trunk interfaces! Get started with multilayer switching using Juniper's EX series.","md",{},"\u002Fen\u002Fblog\u002Fconfiguration-vlan-avec-junos",[1421],"certificat-junos-associe-jncia-junos",{"title":5,"description":1416},"configuration-vlan-avec-junos","en\u002Fblog\u002Fconfiguration-vlan-avec-junos","SJZL4KiYSgrfz-nzS0kn_xmCnCkLVMlqKWTdNgBxqVo",[1427,1433,1440,1448,1456,1463,1470,1476],{"title":1428,"path":1429,"stem":1430,"date":1431,"cover":1432,"categories":1414,"children":-1},"Migrating to KVM with WebVirtMgr","\u002Fen\u002Fblog\u002Fmigration-vers-kvm-avec-webvirtmgr","en\u002Fblog\u002Fmigration-vers-kvm-avec-webvirtmgr","2015-03-02","\u002Fimages\u002Fblog\u002Fmigration-vers-kvm-avec-webvirtmgr\u002F1ecef34685.jpg",{"title":1434,"path":1435,"stem":1436,"date":1437,"cover":1438,"categories":1439,"children":-1},"Configuring a Virtual Chassis under Junos","\u002Fen\u002Fblog\u002Fconfiguration-chassis-virtuel-sous-junos","en\u002Fblog\u002Fconfiguration-chassis-virtuel-sous-junos","2014-12-15","\u002Fimages\u002Fblog\u002Fconfiguration-chassis-virtuel-sous-junos\u002F1b4814003c.jpg",[1412],{"title":1441,"path":1442,"stem":1443,"date":1444,"cover":1445,"categories":1446,"children":-1},"My Feedback on Training at Greta-Viva5 in Valence: Mind-Blowing Anecdotes","\u002Fen\u002Fblog\u002Ftemoignage-formation-greta-viva5-valence-des-anecdotes-hallucinantes","en\u002Fblog\u002Ftemoignage-formation-greta-viva5-valence-des-anecdotes-hallucinantes","2014-12-01","\u002Fimages\u002Fblog\u002Ftemoignage-formation-greta-viva5-valence-des-anecdotes-hallucinantes\u002Fc0ef05db34.jpg",[1447],"Évènement",{"title":1449,"path":1450,"stem":1451,"date":1452,"cover":1453,"categories":1454,"children":-1},"Install CyanogenMod Unofficial on OnePlus One","\u002Fen\u002Fblog\u002Finstaller-cyanogenmod-unofficial-sur-oneplus-one","en\u002Fblog\u002Finstaller-cyanogenmod-unofficial-sur-oneplus-one","2014-11-24","\u002Fimages\u002Fblog\u002Finstaller-cyanogenmod-unofficial-sur-oneplus-one\u002F83621431fb.png",[1455],"Google",{"title":1457,"path":1458,"stem":1459,"date":1460,"cover":1461,"categories":1462,"children":-1},"Basic Configuration under Junos","\u002Fen\u002Fblog\u002Fconfiguration-base-sous-junos","en\u002Fblog\u002Fconfiguration-base-sous-junos","2014-09-10","\u002Fimages\u002Fblog\u002Fconfiguration-base-sous-junos\u002F1b4814003c.jpg",[1412],{"title":1464,"path":1465,"stem":1466,"date":1467,"cover":1468,"categories":1469,"children":-1},"My Feedback on Training at Greta-Viva5 in Valence: Work-Study, the Start of the Year, the Classes","\u002Fen\u002Fblog\u002Fle-temoignage-formation-greta-viva5-valence-alternance-rentree-les-cours","en\u002Fblog\u002Fle-temoignage-formation-greta-viva5-valence-alternance-rentree-les-cours","2014-09-01","\u002Fimages\u002Fblog\u002Fle-temoignage-formation-greta-viva5-valence-alternance-rentree-les-cours\u002Fe27f7627f8.jpg",[1447],{"title":1471,"path":1472,"stem":1473,"date":1474,"cover":1475,"categories":1414,"children":-1},"Installing a Gandi SSL Certificate with Pound","\u002Fen\u002Fblog\u002Finstallation-certificat-ssl-gandi-avec-pound","en\u002Fblog\u002Finstallation-certificat-ssl-gandi-avec-pound","2014-08-12","\u002Fimages\u002Fblog\u002Finstallation-certificat-ssl-gandi-avec-pound\u002Fec4618d7ad.jpg",{"title":1477,"path":1478,"stem":1479,"date":1480,"cover":1481,"categories":1414,"children":-1},"Security Patches and Updates on VMware ESXi 5","\u002Fen\u002Fblog\u002Fpatchs-securite-mises-jour-sous-vmware-esxi","en\u002Fblog\u002Fpatchs-securite-mises-jour-sous-vmware-esxi","2014-07-15","\u002Fimages\u002Fblog\u002Fpatchs-securite-mises-jour-sous-vmware-esxi\u002Fd8c6089e77.png",[1483],{"id":1484,"title":1485,"body":1486,"categories":1545,"cover":1547,"cover_contain":210,"credly_badge_id":1548,"date":1549,"description":1550,"extension":1417,"meta":1551,"navigation":210,"path":1552,"related_certifications":1414,"seo":1553,"slug":1421,"stem":1554,"__hash__":1555},"blog\u002Fen\u002Fblog\u002Fcertificat-junos-associe-jncia-junos.md","Junos Associate (JNCIA-Junos)",{"type":7,"value":1487,"toc":1541},[1488,1490,1493,1496,1533,1536,1538],[10,1489,13],{"id":12},[15,1491,1492],{},"To confidently work on Juniper equipment for clients, I completed this Arrow course and obtained the JNCIA-Junos certification.",[15,1494,1495],{},"The \"Junos Associate (JNCIA-Junos)\" training path is designed for IT professionals in charge of computer networks.\nThe course catalog covers the following modules:",[39,1497,1498,1503,1508,1513,1518,1523,1528],{},[42,1499,1500],{},[26,1501,1502],{},"Networking fundamentals",[42,1504,1505],{},[26,1506,1507],{},"Junos OS fundamentals",[42,1509,1510],{},[26,1511,1512],{},"User interfaces",[42,1514,1515],{},[26,1516,1517],{},"Configuration basics",[42,1519,1520],{},[26,1521,1522],{},"Monitoring and maintaining operations",[42,1524,1525],{},[26,1526,1527],{},"Routing fundamentals",[42,1529,1530],{},[26,1531,1532],{},"Routing policy and firewall filters",[15,1534,1535],{},"The training takes about 3 days.\nYou should then allow around 1h30 for the certification exam itself: Junos Associate (JNCIA-Junos).",[10,1537,1393],{"id":1392},[15,1539,1540],{},"This Arrow course covers networking fundamentals and the Junos OS, from basic configuration to routing and firewall filters. It validates a solid understanding of Juniper network equipment, useful for any professional in charge of network infrastructure administration. A certification that complements skills already acquired on other environments.",{"title":131,"searchDepth":163,"depth":163,"links":1542},[1543,1544],{"id":12,"depth":163,"text":13},{"id":1392,"depth":163,"text":1393},[1546,1412],"Certifications","\u002Fimages\u002Fblog\u002Fcertificat-junos-associe-jncia-junos\u002F773018337d.png","907dbe59-515c-4d6b-9ce1-e40082c63c2e","2023-01-17","Junos Associate (JNCIA-Junos): Arrow course, completed as part of my professional watch in cybersecurity and IT.",{},"\u002Fen\u002Fblog\u002Fcertificat-junos-associe-jncia-junos",{"title":1485,"description":1550},"en\u002Fblog\u002Fcertificat-junos-associe-jncia-junos","xYQ66vuN9RwTPB6jnNJm-LxGXEEPDQ3Buj_X9Dx3_pg",1786644890550]