datocp
2022-09-13 11:22:05 +08:00
我也是把 s5720s li 划了很多 VLAN ,当时主要是按 vlan 划分 有线网 /无线网 /监控 /门禁 /,主要还是是起安全隔离作用+访问控制,防止可能的广播风暴。家里的网络是小,主要问题还是是那个萤石平台吧。有网管功能就上,必竟海康的东西还是有萤石平台在上传。那真正要防的就是切断这个 vlan 的外网访问功能,然后用 vpn 进入内网通过 ivms 客户端进行访问。
我查看了一下录相机产生的包,还好。当时有砖家提到划分多 vlan ,可能导致 3 层交换 vlan 之间的性能不佳,老实说我没认真测试过。但这交换机上线上年多了,也就是 1000mbps 的内网,100mbps 的外网,似乎也关心不起这个性能问题。
GigabitEthernet0/0/42 current state : UP
Line protocol current state : UP
Description:
Switch Port, Link-type : access(configured),
PVID : 8, TPID : 8100(Hex), The Maximum Frame Length is 9216
IP Sending Frames' Format is PKTFMT_ETHNT_2, Hardware address is 2c97-b1d2-5260
Last physical up time : 2022-08-22 17:01:21 UTC+08:00
Last physical down time : 2022-08-22 17:01:14 UTC+08:00
Current system time: 2022-09-13 11:13:54+08:00
Port Mode: COMMON COPPER
Speed : 1000, Loopback: NONE
Duplex: FULL, Negotiation: ENABLE
Mdi : AUTO, Flow-control: DISABLE
Last 300 seconds input rate 520 bits/sec, 0 packets/sec
Last 300 seconds output rate 1032 bits/sec, 0 packets/sec
Input peak rate 6693768 bits/sec, Record time: 2022-08-23 19:26:19
Output peak rate 438584 bits/sec, Record time: 2022-09-12 12:46:31
Input: 407782 packets, 144859343 bytes
Unicast: 396642, Multicast: 175
Broadcast: 10965, Jumbo: 0
Discard: 0, Pause: 0
Frames: 0
Total Error: 0
CRC: 0, Giants: 0
Runts: 0, DropEvents: 0
Alignments: 0, Symbols: 0
Ignoreds: 0
Output: 1639702 packets, 243581607 bytes
Unicast: 163433, Multicast: 1064943
Broadcast: 411326, Jumbo: 0
Discard: 0, Pause: 0
Total Error: 0
Collisions: 0, Late Collisions: 0
Deferreds: 0
Input bandwidth utilization threshold : 80.00%
Output bandwidth utilization threshold: 80.00%
Input bandwidth utilization : 0%
Output bandwidth utilization : 0%