Daftar Pertemuan
VTP Tips
- Domain & password harus sama
- Hanya Server yang bisa buat VLAN
- Client menerima VLAN database
- VTP pruning efisienkan bandwidth
Pertemuan 3: VTP Configuration
Bobot: 5%Tujuan Pembelajaran
Setelah menyelesaikan praktikum ini, mahasiswa mampu:
- Memahami konsep dan arsitektur VTP (VLAN Trunking Protocol)
- Mengkonfigurasi VTP domain, mode, dan pruning
- Mengelola VLAN secara dinamis melalui VTP
- Melakukan troubleshooting VTP operation
Materi Teori - VLAN Trunking Protocol
1. Konsep Dasar VTP
VLAN Trunking Protocol (VTP) adalah protocol Cisco proprietary yang digunakan untuk menyinkronisasi informasi VLAN across multiple switches dalam domain yang sama.
- VLAN Consistency: Maintain konsistensi VLAN database
- Simplified Management: Konfigurasi VLAN terpusat
- Dynamic Updates: Perubahan VLAN otomatis terdistribusi
- Reduced Errors: Minimalkan konfigurasi manual
- VTP Domain: Grup switches yang berbagi VLAN info
- VTP Modes: Server, Client, Transparent
- VTP Advertisements: Summary, Subset, Request
- VTP Pruning: Optimasi bandwidth trunk
2. VTP Modes dan Karakteristik
Setiap switch dalam VTP domain dapat beroperasi dalam salah satu dari tiga mode:
| VTP Mode | Dapat Membuat VLAN | Dapat Menghapus VLAN | Menyimpan VLAN Database | Meneruskan Advertisement | Penggunaan |
|---|---|---|---|---|---|
| Server | ✓ | ✓ | ✓ | ✓ | Default mode, untuk management |
| Client | ✗ | ✗ | ✗ | ✓ | Switch akses, read-only |
| Transparent | ✓ | ✓ | ✓ | ✓ | Boundary antara domain |
3. VTP Advertisement Types
VTP menggunakan tiga jenis advertisement untuk sinkronisasi VLAN database:
Dikirim setiap 5 menit atau saat perubahan
- VTP domain name
- Configuration revision
- Timestamp
Dikirim saat ada perubahan VLAN
- VLAN information
- VLAN parameters
- Deleted VLANs
Dikirim oleh client saat butuh update
- Domain change
- Revision reset
- Startup
4. VTP Pruning
VTP pruning mengoptimalkan bandwidth dengan mencegah flood traffic VLAN yang tidak diperlukan ke switches yang tidak memiliki devices di VLAN tersebut.
Before Pruning:
Broadcast traffic dikirim ke semua switches
After Pruning:
Traffic hanya dikirim ke switches yang membutuhkan
5. VTP Versions
Cisco mendukung tiga versi VTP dengan fitur yang berbeda:
| Feature | VTP Version 1 | VTP Version 2 | VTP Version 3 |
|---|---|---|---|
| Domain Security | ✓ | ✓ | ✓ |
| Token Ring Support | ✓ | ✓ | ✗ |
| Unrecognized TLVs | ✗ | ✓ | ✓ |
| Consistency Checks | ✓ | ✗ | ✓ |
| Extended VLANs | ✗ | ✗ | ✓ |
| Primary Server | ✗ | ✗ | ✓ |
Job Sheet Praktikum
Informasi Job Sheet
Mengelola VLAN secara dinamis dengan VTP
Cisco Packet Tracer
5%
Unjuk Kerja
Diagram Topologi VTP Domain
Switch 1 (Server)
Switch 2 (Client)
Switch 3 (Client)
Keterangan Topologi:
- 3 Switch Cisco 2960 dalam hierarki VTP
- Switch 1: VTP Server (membuat dan mendistribusi VLAN)
- Switch 2 & 3: VTP Client (menerima VLAN database)
- 9 PC terdistribusi di 3 VLAN berbeda
- VLAN 10: ADMIN department
- VLAN 20: SALES department
- VLAN 30: IT department
- VLAN 99: Native VLAN untuk trunk
VTP Configuration Plan
| Parameter | Value | Keterangan |
|---|---|---|
| VTP Domain | ENTERPRISE | Nama domain untuk semua switch |
| VTP Password | cisco123 | Password untuk keamanan domain |
| VTP Version | 2 | Mendukung fitur tambahan |
| VTP Pruning | Enabled | Optimasi bandwidth trunk |
| Native VLAN | 99 | VLAN untuk untagged traffic |
VLAN Configuration Plan
| VLAN ID | VLAN Name | IP Subnet | Port Assignment | Department |
|---|---|---|---|---|
| 10 | ADMIN | 192.168.10.0/24 | Switch1: Fa0/1-2, Switch2: Fa0/1-2, Switch3: Fa0/1-2 | Administration |
| 20 | SALES | 192.168.20.0/24 | Switch1: Fa0/3-4, Switch2: Fa0/3-4, Switch3: Fa0/3-4 | Sales & Marketing |
| 30 | IT | 192.168.30.0/24 | Switch1: Fa0/5-6, Switch2: Fa0/5-6, Switch3: Fa0/5-6 | Information Technology |
| 99 | NATIVE | - | Trunk ports (semua switch) | Native VLAN for Trunk |
Langkah Kerja Detail
Buat topologi dan konfigurasi trunk antara semua switch:
Physical Connections:
- Switch1 Fa0/24 ↔ Switch2 Fa0/24
- Switch2 Fa0/23 ↔ Switch3 Fa0/24
- PC1-3 → Switch1 (VLAN 10,20,30)
- PC4-6 → Switch2 (VLAN 10,20,30)
- PC7-9 → Switch3 (VLAN 10,20,30)
Trunk Configuration:
configure terminal
interface fastethernet 0/24
switchport mode trunk
switchport trunk native vlan 99
no shutdown
exit
Pastikan:
- Semua trunk ports dalam mode trunk
- Native VLAN konsisten (VLAN 99)
- Trunk links aktif (status up/up)
Konfigurasi Switch 1 sebagai VTP Server dan buat VLAN database:
configure terminal
! Konfigurasi VTP domain dan security
vtp domain ENTERPRISE
vtp password cisco123
vtp version 2
vtp mode server
vtp pruning ! Aktifkan pruning
! Buat VLAN di server (akan didistribusi)
vlan 10
name ADMIN
exit
vlan 20
name SALES
exit
vlan 30
name IT
exit
vlan 99
name NATIVE
exit
! Assign port access ke VLAN
interface range fastethernet 0/1-2
switchport mode access
switchport access vlan 10
no shutdown
exit
interface range fastethernet 0/3-4
switchport mode access
switchport access vlan 20
no shutdown
exit
interface range fastethernet 0/5-6
switchport mode access
switchport access vlan 30
no shutdown
exit
! Verifikasi VTP status
show vtp status
show vlan brief
Expected VTP Status:
VTP version running : 2
VTP Domain Name : ENTERPRISE
VTP Pruning Mode : Enabled
VTP Traps Generation : Disabled
Device ID : 0011.bb0b.3600
Configuration last modified by 0.0.0.0 at 0-0-00 00:00:00
Local updater ID is 0.0.0.0 (no valid interface found)
Konfigurasi Switch 2 dan 3 sebagai VTP Client dengan domain yang sama:
Switch 2 Configuration:
! Set VTP domain dan password
vtp domain ENTERPRISE
vtp password cisco123
vtp version 2
vtp mode client
! Tidak perlu membuat VLAN
! VLAN akan diterima dari server
! Assign port ke VLAN
interface range fastethernet 0/1-2
switchport mode access
switchport access vlan 10
exit
interface range fastethernet 0/3-4
switchport mode access
switchport access vlan 20
exit
interface range fastethernet 0/5-6
switchport mode access
switchport access vlan 30
exit
Switch 3 Configuration:
! Set VTP domain dan password
vtp domain ENTERPRISE
vtp password cisco123
vtp version 2
vtp mode client
! Assign port ke VLAN
interface range fastethernet 0/1-2
switchport mode access
switchport access vlan 10
exit
interface range fastethernet 0/3-4
switchport mode access
switchport access vlan 20
exit
interface range fastethernet 0/5-6
switchport mode access
switchport access vlan 30
exit
Important Note:
VTP Client tidak dapat membuat, mengubah, atau menghapus VLAN. Semua perubahan VLAN harus dilakukan di VTP Server.
Konfigurasi IP address untuk semua PC sesuai VLAN assignment:
| PC | VLAN | IP Address | Subnet Mask | Default Gateway | Switch |
|---|---|---|---|---|---|
| PC1, PC4, PC7 | 10 (ADMIN) | 192.168.10.10/24 | 255.255.255.0 | 192.168.10.1 | All Switches |
| PC2, PC5, PC8 | 20 (SALES) | 192.168.20.10/24 | 255.255.255.0 | 192.168.20.1 | All Switches |
| PC3, PC6, PC9 | 30 (IT) | 192.168.30.10/24 | 255.255.255.0 | 192.168.30.1 | All Switches |
Testing Basic Connectivity:
ping 192.168.10.10 ! Local - Should SUCCESS
ping 192.168.10.11 ! PC4 - Should SUCCESS
ping 192.168.10.12 ! PC7 - Should SUCCESS
ping 192.168.20.10 ! PC2 (VLAN20) - Should FAIL
ping 192.168.30.10 ! PC3 (VLAN30) - Should FAIL
Lakukan verifikasi untuk memastikan VTP beroperasi dengan benar:
VTP Status Verification:
show vtp status
show vtp password
show vlan brief
show vtp counters
Expected Results:
- VTP Domain: ENTERPRISE
- VTP Mode: Server/Client
- VLAN Database: Sama di semua switch
- Revision Number: Sama di semua switch
VTP Counters Analysis:
VTP statistics:
Summary advertisements received : 5
Subset advertisements received : 2
Request advertisements received : 0
Summary advertisements transmitted : 10
Subset advertisements transmitted : 3
Request advertisements transmitted : 0
Number of config revision errors : 0
Number of config digest errors : 0
Number of V1 summary errors : 0
Test VTP pruning functionality dan berbagai scenario VTP:
Pruning Verification:
show interface trunk
show vtp status
! Expected output:
Port Vlans allowed on trunk
Fa0/24 10,20,30,99
Port Vlans pruned on trunk
Fa0/24 10,20,30
Scenario Testing:
- Add New VLAN: Buat VLAN baru di server, verifikasi di client
- Delete VLAN: Hapus VLAN di server, verifikasi di client
- Domain Mismatch: Test efek domain yang berbeda
- Password Mismatch: Test efek password yang salah
VTP Domain Mismatch Test:
configure terminal
vtp domain WRONG_DOMAIN
! Verifikasi efeknya
show vtp status
show vlan brief
! Kembalikan ke domain correct
vtp domain ENTERPRISE
Kriteria Penilaian
| Kriteria | Indikator | Bobot | Status |
|---|---|---|---|
| VTP Server Configuration | Domain, password, version, mode server terkofigurasi benar | 1.5% | Check |
| VTP Client Configuration | Client mode dengan domain dan password yang sama | 1.0% | Check |
| VLAN Database Synchronization | VLAN database sama di semua switch (show vlan brief) | 1.5% | Check |
| VTP Pruning | Pruning enabled dan berfungsi dengan baik | 0.5% | Check |
| Connectivity Testing | Intra-VLAN connectivity across switches berhasil | 0.3% | Check |
| Troubleshooting | Mampu identifikasi dan selesaikan VTP issues | 0.2% | Check |
| Total | 5% | Complete | |
Tips dan Best Practices VTP
- Selalu gunakan VTP password untuk mencegah unauthorized domain joins
- Gunakan VTP version 2 atau 3 untuk security features yang lebih baik
- Monitor VTP revision number secara berkala
- Hindari VTP di network dengan untrusted switches
- Plan VTP domain structure sebelum implementasi
- Gunakan hanya satu VTP Server aktif dalam domain
- Enable VTP pruning untuk optimasi bandwidth
- Documentasikan VTP configuration dan changes
Common VTP Issues and Solutions:
- VLAN tidak tersinkronisasi: Cek domain name dan password
- Switch tidak belajar VLAN: Verifikasi trunk connections
- VTP revision number conflict: Reset revision number jika diperlukan
- Pruning tidak bekerja: Pastikan VTP version mendukung pruning