[Network] VLAN (Virtual Local Area Network)

๊น€๋ฆฌ์˜ยท2025๋…„ 1์›” 26์ผ

Network

๋ชฉ๋ก ๋ณด๊ธฐ
4/13

๐Ÿ“Œ ๋ณธ ๊ฒŒ์‹œ๋ฌผ์€ ์ž๊ธฐ ํ•™์Šต ๋ชฉ์ ์œผ๋กœ ์ž‘์„ฑ๋˜์–ด ์ผ๋ถ€ ๋‚ด์šฉ์ด ๋ถ€์ •ํ™•ํ•˜๊ฑฐ๋‚˜ ์ตœ์‹  ์ •๋ณด์™€๋Š” ๋‹ค๋ฅผ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
๐Ÿ’ฌ ์ž˜๋ชป๋œ ๋ถ€๋ถ„์ด๋‚˜ ๋ณด์™„ํ•  ์ ์ด ์žˆ๋‹ค๋ฉด ๋Œ“๊ธ€๋กœ ๊ณต์œ ํ•˜์—ฌ ์ฃผ์‹œ๋ฉด ๊ฐ์‚ฌํ•˜๊ฒ ์Šต๋‹ˆ๋‹ค!

1๏ธโƒฃ VLAN (Virtual Local Area Network)

  • ํ•˜๋‚˜์˜ ๋ฌผ๋ฆฌ์ ์ธ ๋„คํŠธ์›จํฌ์—์„œ ์—ฌ๋Ÿฌ ๊ฐœ์˜ ๋…ผ๋ฆฌ์ ์ธ ๋„คํŠธ์›Œํฌ๋ฅผ ์ƒ์„ฑํ•˜์—ฌ ๋„คํŠธ์›Œํฌ๋ฅผ ๋ถ„๋ฆฌํ•˜๊ณ  ํšจ์œจ์„ฑ์„ ํ–ฅ์ƒ์‹œํ‚ค๋Š” ๊ธฐ์ˆ 
  • ์„œ๋กœ ๋‹ค๋ฅธ VLAN์— ์†ํ•œ ์žฅ์น˜๋“ค์€ ๊ธฐ๋ณธ์ ์œผ๋กœ ์„œ๋กœ ์†Œํ†ตํ•  ์ˆ˜ ์—†์–ด ๋„คํŠธ์›Œํฌ ๋ณด์•ˆ ๋ฐ ์„ฑ๋Šฅ์„ ๊ฐ•ํ™”ํ•จ

- ์ฃผ์š” ํŠน์ง•

  1. ๋…ผ๋ฆฌ์  ๋„คํŠธ์›Œํฌ ๋ถ„๋ฆฌ : VLAN์„ ์‚ฌ์šฉํ•˜๋ฉด ๋ฌผ๋ฆฌ์  ๋„คํŠธ์›Œํฌ๊ฐ€ ํ•˜๋‚˜๋”๋ผ๋„ ๋…ผ๋ฆฌ์ ์œผ๋กœ ์—ฌ๋Ÿฌ ๋„คํŠธ์›Œํฌ๋กœ ๋‚˜๋ˆŒ ์ˆ˜ ์žˆ์Œ
    • ์˜ˆ : IT ๋ถ€์„œ, ๋งˆ์ผ€ํŒ… ๋ถ€์„œ, ํšŒ๊ณ„ ๋ถ€์„œ๊ฐ€ ๊ฐ๊ฐ ๋ณ„๋„์˜ VLAN์— ์†ํ•˜๋„๋ก ๊ตฌ์„ฑ
  2. ๋ณด์•ˆ ๊ฐ•ํ™” : ์„œ๋กœ ๋‹ค๋ฅธ VLAN์— ์†ํ•œ ํŠธ๋ž˜ํ”ฝ์€ ๋ถ„๋ฆฌ๋˜์–ด ์žˆ๊ธฐ ๋•Œ๋ฌธ์— ๋ถˆํ•„์š”ํ•œ ์ ‘๊ทผ ๋ฐฉ์ง€ ๊ฐ€๋Šฅ
  3. ๋ธŒ๋กœ๋“œ์บ์ŠคํŠธ ๋„๋ฉ”์ธ ๊ฐ์†Œ : ๊ฐ VLAN๋งˆ๋‹ค ๋ณ„๋„์˜ ๋ธŒ๋กœ๋“œ์บ์ŠคํŠธ ๋„๋ฉ”์ธ์„ ์ƒ์„ฑํ•˜์—ฌ ํŠธ๋ž˜ํ”ฝ ํ˜ผ์žก์„ ์ค„์ž„

2๏ธโƒฃ VLAN ์ข…๋ฅ˜

VLAN ์œ ํ˜• ์„ค๋ช…
Port Based VLAN - ๋„คํŠธ์›Œํฌ ์žฅ๋น„์˜ ํŠน์ • ํฌํŠธ๋ฅผ VLAN์— ์ง์ ‘์ ์œผ๋กœ ํ• ๋‹นํ•˜๋Š” ๋ฐฉ์‹
- ๊ฐ€์žฅ ๋„๋ฆฌ ์‚ฌ์šฉ๋˜๋ฉฐ ๋ฌผ๋ฆฌ์  ๊ด€๋ฆฌ๊ฐ€ ์šฉ์ด
- Tagged ๋˜๋Š” Untagged ๋ฐฉ์‹์œผ๋กœ ๋™์ž‘
MAC Address Based VLAN - ๋„คํŠธ์›Œํฌ ์žฅ์น˜์˜ MAC ์ฃผ์†Œ๋ฅผ ๊ธฐ์ค€์œผ๋กœ VLAN์„ ๊ตฌ์„ฑ
- MAC ์ฃผ์†Œ๋ฅผ ์‚ฌ์ „์— ๋“ฑ๋กํ•˜๊ณ  ๊ด€๋ฆฌํ•ด์•ผ ํ•จ
IP Subnet Based VLAN - IP ์ฃผ์†Œ ์„œ๋ธŒ๋„ท์„ ๊ธฐ๋ฐ˜์œผ๋กœ VLAN์„ ๊ตฌ๋ถ„ํ•˜์—ฌ ์„ค์ •
Protocol Based VLAN - ๋™์ผํ•œ ๋„คํŠธ์›Œํฌ ํ”„๋กœํ† ์ฝœ์„ ์‚ฌ์šฉํ•˜๋Š” ์žฅ์น˜๋“ค์„ ํ•˜๋‚˜์˜ VLAN์œผ๋กœ ๋ฌถ์Œ
- ํŠน์ • ๋ฐ์ดํ„ฐ ์œ ํ˜•์— ๋”ฐ๋ผ ์ฐจ๋ณ„ํ™”๋œ ํฌ์›Œ๋”ฉ ์ •์ฑ…์„ ์ ์šฉ ๊ฐ€๋Šฅ

3๏ธโƒฃ VLAN ํƒœ๊ทธ (Tag)

  • VLAN ํƒœ๊ทธ๋Š” ์ด๋”๋„ท ํ”„๋ ˆ์ž„์— ์ถ”๊ฐ€๋˜์–ด ํ”„๋ ˆ์ž„์ด ์†ํ•œ VLAN์„ ๊ตฌ๋ถ„ํ•˜๊ธฐ ์œ„ํ•œ ์ •๋ณด
  • ์Šค์œ„์น˜๊ฐ€ ํŠน์ • VLAN์— ์†ํ•œ ํŠธ๋ž˜ํ”ฝ์„ ์‹๋ณ„ํ•˜๊ณ  ๊ด€๋ฆฌํ•˜๊ธฐ ์œ„ํ•ด ์‚ฌ์šฉ
  • ๋ชจ๋“  ์ƒํ™ฉ์—์„œ VLAN ํƒœ๊น…์ด ์ด๋ฃจ์–ด์ง€๋Š” ๊ฒƒ์ด ์•„๋‹ˆ๋ฉฐ ๋„คํŠธ์›Œํฌ ์„ค์ •์— ๋”ฐ๋ผ ํƒœ๊น…์ด ์ƒ๋žต๋˜๊ธฐ๋„ ํ•จ

- IEEE 802.1Q

  • VLAN ํƒœ๊น…์„ ์ง€์›ํ•˜๋Š” ํ‘œ์ค€ ํ”„๋กœํ† ์ฝœ๋กœ Trunk Port์—์„œ ์ฃผ๋กœ ์‚ฌ์šฉ

  • ์ด๋”๋„ท ํ”„๋ ˆ์ž„์˜ Source MAC Address(SMAC)์™€ EtherType ํ•„๋“œ ์‚ฌ์ด์— 4๋ฐ”์ดํŠธ ํฌ๊ธฐ์˜ VLAN ํƒœ๊ทธ๋ฅผ ์ถ”๊ฐ€

  • 802.1Q ํƒœ๊ทธ ๊ตฌ์„ฑ

ํ•„๋“œ ํฌ๊ธฐ ์„ค๋ช…
EtherType (TPID) 16 bits ํ˜„์žฌ ํ”„๋ ˆ์ž„์ด 802.1Q ํ”„๋ ˆ์ž„์ž„์„ ๋‚˜ํƒ€๋ƒ„
๊ฐ’์€ ํ•ญ์ƒ 0x8100์œผ๋กœ ๊ณ ์ •
Priority (PCP) 3 bits ํŠธ๋ž˜ํ”ฝ์˜ ์šฐ์„ ์ˆœ์œ„๋ฅผ ๋‚˜ํƒ€๋ƒ„
๊ฐ’์€ 0~7 ๋ฒ”์œ„์ด๋ฉฐ, ๊ฐ’์ด ํด์ˆ˜๋ก ์šฐ์„ ์ˆœ์œ„๊ฐ€ ๋†’์Œ
CFI (DEI) 1 bit ํ˜ผ์žก ์‹œ ์ œ๊ฑฐ ๊ฐ€๋Šฅํ•œ ํ”„๋ ˆ์ž„ ํ‘œ์‹œ
Drop Eligible Indicator๋กœ๋„ ๋ถˆ๋ฆผ
VLAN ID (VID) 12 bits VLAN ๋ฒˆํ˜ธ๋ฅผ ๋‚˜ํƒ€๋ƒ„
์ด 4096๊ฐœ(0~4095)์˜ VLAN ID ์ค‘ ์ผ๋ถ€ ์˜ˆ์•ฝ๋จ
  • VLAN ๋ฒˆํ˜ธ
    • ์˜ˆ์•ฝ๋œ VLAN ID : 0: ์‹œ์Šคํ…œ ์˜ˆ์•ฝ / 4095 : ์‹œ์Šคํ…œ ์˜ˆ์•ฝ / 1002~1005 : ํ† ํฐ๋ง ๋ฐ FDDI ์šฉ๋„
    • ์‚ฌ์šฉ ๊ฐ€๋Šฅํ•œ VLAN ID : 2 ~ 1001 : Normal VLAN / 1006 ~ 4094 : Extended VLAN

- Native VLAN

  • ํƒœ๊ทธ๊ฐ€ ์—†๋Š”(Untagged) ํ”„๋ ˆ์ž„์„ ์ฒ˜๋ฆฌํ•˜๊ธฐ ์œ„ํ•ด ์„ค์ •๋œ VLAN
  • VLAN ํƒœ๊ทธ๊ฐ€ ์—†๋Š” ํ”„๋ ˆ์ž„์ด ์Šค์œ„์น˜์— ๋„์ฐฉํ•˜๋ฉด Native VLAN์— ์†ํ•œ ํ”„๋ ˆ์ž„์œผ๋กœ ๊ฐ„์ฃผ
  • ์Šค์œ„์น˜๋Š” VLAN ํƒœ๊ทธ๊ฐ€ ์—†๋Š” ํ”„๋ ˆ์ž„์„ ๊ตฌ๋ถ„ํ•  ์ˆ˜ ์—†๊ธฐ ๋•Œ๋ฌธ์— Native VLAN์€ ๋‹จ ํ•˜๋‚˜๋งŒ ์„ค์ • ๊ฐ€๋Šฅ
  • ๊ธฐ๋ณธ์ ์œผ๋กœ Native VLAN์€ VLAN ID 1๋กœ ์„ค์ •๋˜๋‚˜ Native VLAN์„ ํ†ตํ•ด ํƒœ๊ทธ๊ฐ€ ์—†๋Š” ํŠธ๋ž˜ํ”ฝ์„ ์•…์šฉํ•œ ๊ณต๊ฒฉ(VLAN Hopping)์ด ๋ฐœ์ƒํ•  ์ˆ˜ ์žˆ์Œ
  • ๋”ฐ๋ผ์„œ ๋ณด์•ˆ์ƒ ๊ธฐ๋ณธ ID 1์—์„œ ๋ณ€๊ฒฝํ•˜๊ณ  ํƒœ๊ทธ๊ฐ€ ์—†๋Š” ํŠธ๋ž˜ํ”ฝ์˜ ์ˆ˜์‹ ์„ ์ตœ์†Œํ™”ํ•˜๋Š” ๊ฒƒ์ด ๊ถŒ์žฅ๋จ

4๏ธโƒฃ Port-based VLAN

๐Ÿ“Œ 1. Access Port Mode

  • ๋ฌผ๋ฆฌ์ ์ธ LAN ๋‚ด๋ถ€์—์„œ VLAN ๊ฐ„(๊ฐ™์€ VLAN ID๋ฅผ ๊ฐ€์ง„)์˜ ํ†ต์‹ ์„ ์ง€์›ํ•˜๋Š” ๋ฐฉ์‹
  • ๊ฐ ํฌํŠธ(Port)๋Š” ํŠน์ • VLAN ID(PVID, Port VLAN ID)์™€ ๋งคํ•‘๋˜์–ด VLAN์„ ์‹๋ณ„
  • ๋™์ผ VLAN ID๋ฅผ ๊ฐ€์ง„ L2 ์žฅ์น˜ ๊ฐ„ ํ†ต์‹ ์„ ์œ„ํ•ด ์ถ”๊ฐ€์ ์ธ ํฌํŠธ๊ฐ€ ํ•„์š” -> ํŠน์ • VLAN ID๋กœ๋งŒ ํ†ต์‹  ๊ฐ€๋Šฅํ•˜์—ฌ VLAN ID ๊ฐœ์ˆ˜์— ๋น„๋ก€ํ•˜์—ฌ ํฌํŠธ๊ฐ€ ์š”๊ตฌ
  • ํ”„๋ ˆ์ž„์— ํƒœ๊ทธ๋ฅผ ์ถ”๊ฐ€ํ•˜์ง€ ์•Š์•„๋„ ์Šค์œ„์น˜๊ฐ€ ํฌํŠธ์— ๋งคํ•‘๋œ VLAN ID๋ฅผ ํ†ตํ•ด ์–ด๋–ค VLAN์— ์†ํ•˜๋Š”์ง€ ํŒŒ์•…

๐Ÿ“Œ 2. Trunk Port Mode

  • ๋ฌผ๋ฆฌ์ ์ธ LAN ๋‚ด๋ถ€์—์„œ ์—ฌ๋Ÿฌ VLAN ๊ฐ„์˜ ํ†ต์‹ ์„ ์ง€์›ํ•˜๋Š” ๋ฐฉ์‹
  • Frame์— VLAN ID๋ฅผ ํฌํ•จํ•˜๋Š” ์ถ”๊ฐ€ ํ—ค๋”(VLAN Tag)๋ฅผ ๋ถ€์ฐฉ
    • VLAN ํƒœ๊ทธ๋Š” IEEE 802.1Q ๋˜๋Š” ISL ํ”„๋กœํ† ์ฝœ์— ์˜ํ•ด ์ง€์›
    • L2 ์žฅ์น˜๋Š” Frame์˜ VLAN ID ํ•„๋“œ๋ฅผ ํ†ตํ•ด ํ•ด๋‹น ํŒจํ‚ท์ด ์–ด๋–ค VLAN์— ์†ํ•˜๋Š”์ง€ ํ™•์ธํ•˜๊ณ  Forwarding์„ ์ˆ˜ํ–‰
  • Access Port Mode์™€ ๋‹ฌ๋ฆฌ ๋‹จ์ผ ํšŒ์„ ์„ ํ†ตํ•ด ์—ฌ๋Ÿฌ VLAN ํŠธ๋ž˜ํ”ฝ์„ ์ „๋‹ฌํ•  ์ˆ˜ ์žˆ์–ด ํšŒ์„  ์‚ฌ์šฉ๋Ÿ‰์„ ์ค„์ผ ์ˆ˜ ์žˆ์Œ
ํ•ญ๋ชฉ Access Port Mode Trunk Port Mode
VLAN ํƒœ๊ทธ ํƒœ๊ทธ ์—†์Œ ํƒœ๊ทธ ์ถ”๊ฐ€ (802.1Q/ISL ์‚ฌ์šฉ)
ํšŒ์„  ํšจ์œจ์„ฑ VLAN ID๋ณ„ ๋ณ„๋„ ํšŒ์„  ํ•„์š” ๋‹จ์ผ ํšŒ์„ ์œผ๋กœ ๋‹ค์ค‘ VLAN ํŠธ๋ž˜ํ”ฝ ์ฒ˜๋ฆฌ
์‚ฌ์šฉ ์‚ฌ๋ก€ ๋‹จ์ผ VLAN ์—ฐ๊ฒฐ ์žฅ์น˜ ๊ฐ„ ํ†ต์‹  ์—ฌ๋Ÿฌ VLAN ๋ฐ L2 ์žฅ์น˜ ๊ฐ„ ํŠธ๋ž˜ํ”ฝ ์ „๋‹ฌ
ํ—ค๋” ์ฒ˜๋ฆฌ ํ—ค๋” ์ถ”๊ฐ€ ์—†์Œ VLAN ID ํƒœ๊ทธ ํฌํ•จ

๐Ÿ“Œ 3. Dynamic Mode

  • VLAN ํฌํŠธ ์„ค์ •์„ ์ž๋™ํ™”ํ•˜์—ฌ ๊ด€๋ฆฌ์ž์˜ ์ž‘์—…๋Ÿ‰์„ ์ค„์ด๊ธฐ ์œ„ํ•ด ์‚ฌ์šฉ๋˜๋Š” ๋ชจ๋“œ
  • ์Šค์œ„์น˜๊ฐ€ DTP(Dynamic Trunking Protocol)์„ ์‚ฌ์šฉํ•˜์—ฌ ํ˜‘์ƒ์„ ์ˆ˜ํ–‰ํ•˜๊ณ  ํฌํŠธ ๋ชจ๋“œ(Access/Trunk)๋ฅผ ์ž๋™์œผ๋กœ ์„ค์ •
  • ๊ณต๊ฒฉ์ž๊ฐ€ DTP ๋ฉ”์‹œ์ง€๋ฅผ ์•…์šฉํ•˜์—ฌ Trunk Port๋ฅผ ์„ค์ •ํ•  ์ˆ˜ ์žˆ์Œ -> VLAN ํ˜ธํ•‘ ๊ณต๊ฒฉ

- ๋™์ž‘ ๋ฐฉ์‹

  1. ๊ธฐ๋ณธ์ ์œผ๋กœ Access Mode ์ƒํƒœ์—์„œ ์‹œ์ž‘
  2. ์—ฐ๊ฒฐ๋œ ์ƒ๋Œ€๋ฐฉ ํฌํŠธ๋กœ๋ถ€ํ„ฐ DTP ๋ฉ”์‹œ์ง€๋ฅผ ์ˆ˜์‹ ํ•˜๋ฉด ํ˜‘์ƒ(Negotiation)์„ ํ†ตํ•ด ํฌํŠธ ๋ชจ๋“œ๋ฅผ ๊ฒฐ์ •
  3. ํ˜‘์ƒ ๊ฒฐ๊ณผ์— ๋”ฐ๋ผ ํ•ด๋‹น ํฌํŠธ๊ฐ€ Access Port ๋˜๋Š” Trunk Port๋กœ ์„ค์ •

- DTP ํ˜‘์ƒ ๊ณผ์ •

๋ชจ๋“œ DTP ๋ชจ๋“œ ์„ค๋ช…
Static Access Mode DTP ๋ฉ”์‹œ์ง€๋ฅผ ์ „์†กํ•˜์ง€ ์•Š์Œ
์ƒ๋Œ€๋ฐฉ ํฌํŠธ๊ฐ€ ๋ณด๋‚ธ DTP ๋ฉ”์‹œ์ง€๋ฅผ ๋ฌด์‹œ
ํ•ญ์ƒ Access Port๋กœ ๋™์ž‘
Trunk Mode DTP ๋ฉ”์‹œ์ง€๋ฅผ ๋จผ์ € ์ „์†กํ•˜๊ณ  ์ƒ๋Œ€๋ฐฉ ํฌํŠธ๊ฐ€ ๋ณด๋‚ธ DTP ๋ฉ”์‹œ์ง€๋ฅผ ๋ฌด์‹œ
ํ•ญ์ƒ Trunk Port๋กœ ๋™์ž‘
Dynamic Dynamic Auto DTP ๋ฉ”์‹œ์ง€๋ฅผ ๋จผ์ € ์ „์†กํ•˜์ง€ ์•Š์Œ
์ƒ๋Œ€๋ฐฉ ํฌํŠธ๊ฐ€ DTP ๋ฉ”์‹œ์ง€๋ฅผ ์ „์†กํ–ˆ์„ ๊ฒฝ์šฐ Trunk Port๋กœ ์„ค์ •
Dynamic Desirable DTP ๋ฉ”์‹œ์ง€๋ฅผ ๋จผ์ € ์ „์†ก
์ƒ๋Œ€๋ฐฉ ํฌํŠธ์™€ ํ˜‘์ƒํ•ด Trunk Port๋กœ ์„ค์ • ๊ฐ€๋Šฅ

๐Ÿ“ ์ฐธ๊ณ 

https://daengsik.tistory.com/35
https://pak-j.tistory.com/30

0๊ฐœ์˜ ๋Œ“๊ธ€