The filtering service function is used to set boundaries to restrict the forwarding of frames between members of different VLANs and different protocols using a single MAC address and a group MAC address. Frame filtering relies on certain rules that the switch determines whether to forward or discard the frame according to these rules.
The Early 802.1D Standard (1993) defines the basic filtering service that the switch must broadcast all of the group MAC address packets to all the ports. The New 802.1D Standard (1998) defines an extended filtering service that filters packets to the MAC address of the group, and filters out all multicast address packets for the external port of the switch.
If static or dynamic filtering conditions are not set, the switch will use the default filter condition. The Extended filtering service function uses GMRP (group multicast registration Protocol) to control dynamic group forwarding and group filtering of the switch by generating or deleting a group or group member.
Switches and workstations use GMRP to declare whether they are willing to receive frames for a group MAC address. The GMRP protocol waves Such group information between switches on the web, allowing the switch to update their filtering information to achieve extended service functions.
The switch has filtering services and extended filtering services without any configuration. For older switches, hubs, routers, because it does not support dynamic multicast address filtering, it is necessary to extend the filtering configuration on the corresponding ports to which they are connected.
The switch filters the frame according to the filtering database, and the switch can maintain the filtering database by Dynamic learning and manual configuration. The switch checks the filter database to determine whether a MAC address or a packet identified by a VLAN should be forwarded to a port based on the following conditions:
On the second level, you can support port based VLANs and VLAN based on MAC addresses. Port-based VLANs can quickly divide conflict domains on a single switch, and Mac-based VLAN can support mobile applications for laptops.
The third layer of the third layer of the Switch VLAN, not only can be manually configured, can also be automatically generated by the switch. After analyzing the packet, the switch automatically configures the VLAN and updates the members of the VLAN automatically. The third tier switches can work in a network environment where DHCP (Dynamic Host control Protocol) assigns IP addresses.
Switch can automatically find IP address, dynamic generation based on IP subnet VLAN, when the DHCP allocation of a new IP address, the third layer switch can quickly locate this address. Third-tier switches update their three-tier VLAN member groups through IGMP, GMRP, ARP, and packet probing techniques. Through web-based network management interface, the scope of automatic learning can be set up: automatic learning can be completely unrestricted, partially restricted or completely forbidden.
VLANs increase the performance of the network by restricting the sending and filtering. The third tier switch updates the VLAN member table by listening, making forwarding or filtering decisions based on the member information of the packet header. The following are several procedures for the switch processing VLANs.
Data Frame Inbound:
The switch classifies them according to the VLAN identification Number (VID) of the inbound data frames, without marking the same as a class with the same label. The switch decides to forward or discard a packet based on the vid, and the switch can also assign a vid to an unmarked frame or a frame labeled with a priority.