综合实验1
3、配置DHCP技术,使得PC获得IP地址。(1)创建OSPF的协议进程,配置RID。配置trunk链路,放行相应vlan。一、企业A内网配置思路。(1)启动DHCP服务。二、企业B内网配置思路。2、配置vlan技术。3、配置DHCP技术。4、配置OSPF协议。2、配置vlan技术。
一、企业A内网配置思路
1、配置IP地址
2、配置vlan技术
(1)创建vlan
浏览器配置:[r1]vlan batch 10 20 30
[r2]vlan batch 40 50
r3]vlan batch 100
[r7]vlan 60
交换机配置:
[sw1]vlan b 10 20 30
[sw2]vlan b 40 50
[sw3]vlan batch 60 70
- 将接口加到相应vlan:
[sw1-GigabitEthernet0/0/2]port link-type access
[sw1-GigabitEthernet0/0/2]port default vlan 10
[sw1-GigabitEthernet0/0/3]port link-type access
[sw1-GigabitEthernet0/0/3]port default vlan 20
[sw1-GigabitEthernet0/0/4]port link-type access
[sw2-GigabitEthernet0/0/2]port link-type access
[sw2-GigabitEthernet0/0/2]PORT default VLAN 40
[sw2-GigabitEthernet0/0/3]port link-type access
[sw2-GigabitEthernet0/0/3]port default vlan 50
[sw3-GigabitEthernet0/0/3]port link-type access
[sw3-GigabitEthernet0/0/3]port default vlan 60
[sw3-GigabitEthernet0/0/4]port link-type access
[sw3-GigabitEthernet0/0/4]port default vlan 60
[sw3-GigabitEthernet0/0/2]port link-type access
[sw3-GigabitEthernet0/0/2]port default vlan 70
- 配置trunk链路,放行相应vlan:
[sw1-GigabitEthernet0/0/1]port link-type trunk
[sw1-GigabitEthernet0/0/1]port trunk allow-pass vlan 10 20 30
[sw2-GigabitEthernet0/0/1]port link-type trunk
[sw2-GigabitEthernet0/0/1]port trunk allow-pass vlan 40 50
[sw3-GigabitEthernet0/0/1]port link-type trunk
[sw3-GigabitEthernet0/0/1]port trunk allow-pass vlan 60 70
- 配置单臂路由子接口
[sw1-GigabitEthernet0/0/4]port default vlan 30
[r1-GigabitEthernet0/0/1.10]dot1q termination vid 10
[r1-GigabitEthernet0/0/1.10]arp broadcast enable
[r1-GigabitEthernet0/0/1.20]dot1q termination vid 20
[r1-GigabitEthernet0/0/1.20]arp broadcast enable
[r1-GigabitEthernet0/0/1.30]dot1q termination vid 30
[r1-GigabitEthernet0/0/1.30]arp broadcast enable
[r2-GigabitEthernet0/0/1.40]dot1q termination vid 40
[r2-GigabitEthernet0/0/1.40]arp broadcast enable
[r2-GigabitEthernet0/0/1.50]dot1q termination vid 50
[r2-GigabitEthernet0/0/1.50]arp broadcast enable
[r7-GigabitEthernet0/0/2.70]dot1q termination vid 70
[r7-GigabitEthernet0/0/2.70]arp broadcast enable
[r7-GigabitEthernet0/0/2.60]dot1q termination vid 60
[r7-GigabitEthernet0/0/2.60]arp broadcast enable
3、配置DHCP技术
(1)启动DHCP服务
[r1]dhcp enable
[r2]dhcp enable
- 创建地址池
[r1-ip-pool-vlan10]network 172.16.64.0 mask 24
[r1-ip-pool-vlan10]gateway-list 172.16.64.1
[r1-ip-pool-vlan10]dns-list 8.8.8.8
[r1-ip-pool-vlan20]network 172.16.65.0 mask 24
[r1-ip-pool-vlan20]gateway-list 172.16.65.1
[r1-ip-pool-vlan20]dns-list 8.8.8.8
[r1-ip-pool-vlan30]network 172.16.66.0 mask 24
[r1-ip-pool-vlan30]gateway-list 172.16.66.1
[r1-ip-pool-vlan30]dns-list 8.8.8.8
[r2-ip-pool-vlan40]network 172.16.0.0 mask 24
[r2-ip-pool-vlan40]gateway-list 172.16.1.0 mask 24
[r2-ip-pool-vlan40]dns-list 8.8.8.8
[r2-ip-pool-vlan50]network 172.16.1.0 mask 24
[r2-ip-pool-vlan50]gateway-list 172.16.1.1
[r2-ip-pool-vlan50]dns-list 8.8.8.8
- 在网关接口下发DHCP服务,是的PC获得IP地址
[r1-GigabitEthernet0/0/1.10]dhcp select global
[r1-GigabitEthernet0/0/1.20]dhcp select global
[r1-GigabitEthernet0/0/1.30]dhcp select global
[r2-GigabitEthernet0/0/1.40]dhcp select global
[r2-GigabitEthernet0/0/1.50]dhcp select global
4、配置OSPF协议
(1)创建OSPF的协议进程,配置RID
- 进入相应的area,network网段(接口地址)
[r1-ospf-1-area-0.0.0.1]network 172.16.64.1 0.0.0.0
[r1-ospf-1-area-0.0.0.1]network 172.16.65.1 0.0.0.0
[r1-ospf-1-area-0.0.0.1]network 172.16.66.1 0.0.0.0
[r1-ospf-1-area-0.0.0.1]network 172.16.67.1 0.0.0.0
[r2-ospf-1-area-0.0.0.0]network 172.16.0.1 0.0.0.0
[r2-ospf-1-area-0.0.0.0]network 172.16.1.1 0.0.0.0
[r2-ospf-1-area-0.0.0.0]network 172.16.2.1 0.0.0.0
[r2-ospf-1-area-0.0.0.1]net 172.16.67.2 0.0.0.0
[r3-ospf-3-area-0.0.0.0]net 172.16.2.2 0.0.0.0
- 查看OSPF的邻居表、路由表。做全网通测试---ping测试



- 配置OSPF的区域汇总--ABR汇总,精简路由表的路由条目数量。
[r2-ospf-1-area-0.0.0.1]abr-summary172.16.64.0255.255.252.0
[r2-ospf-1-area-0.0.0.0]abr-summary 172.16.0.0 255.255.252.0
- 配置静态路由空接口防环
[r2]ip route-static 172.16.64.0 22 NULL 0
[r2]ip route-static 172.16.0.0 22 NULL
- 配置OPSF区域0的认证
[r2-GigabitEthernet0/0/2]ospf authentication-mode md5 1 cipher 123456
[r3-GigabitEthernet0/0/0]ospf authentication-mode md5 1 cipher 123456
- 配置easy ip 实现内网访问外网
[r2-acl-basic-2000]rule permit source 172.16.0.0 0.0.255.255
- 让OSPF协议下发缺省,给内网路由器,保证内网设备访问外网
[r3-ospf-3]default-route-advertise always
- 配置telnet服务器,配置NAT SERVER实现外网访问内网的服务
[t s-aaa]local-user huanwei privilege level 15
[t s-aaa]local-user huanwei password cipher 123456
[t s-aaa]local-user huanwei service-type telnet
二、企业B内网配置思路
1、配置IP地址
2、配置vlan技术
3、配置DHCP技术,使得PC获得IP地址
[r7]dhcp enable
[r7-ip-pool-vlan70]network 172.16.128.128 mask 25
[r7-ip-pool-vlan70]gateway-list 172.16.128.129
[r7-ip-pool-vlan70]dns-list 8.8.8.8
[r7-GigabitEthernet0/0/2.70]dhcp select global

- 配置静态路由协议,使得全网通(PING)
Destination/Mask Proto Pre Cost Flags NextHop Interface
172.16.128.0/24 Static 60 0 RD 172.16.129.2 GigabitEthernet
0/0/1
172.16.131.0/24 Static 60 0 RD 172.16.129.2 GigabitEthernet
0/0/1
Static 60 0 RD 172.16.130.2 Ethernet4/0/0
172.16.132.0/24 Static 60 0 RD 172.16.129.2 GigabitEthernet
0/0/1
Static 60 0 RD 172.16.130.2 Ethernet4/0/0
172.16.133.0/24 Static 60 0 RD 172.16.130.2 Ethernet4/0/0
Static 60 0 RD 172.16.129.2 GigabitEthernet
0/0/1
172.16.134.0/24 Static 60 0 RD 172.16.129.2 GigabitEthernet
0/0/1
Static 60 0 RD 172.16.130.2 Ethernet4/0/0
[r4]ip route-static 172.16.133.0 24 172.16.131.2
IP route-static 172.16.128.0 24 172.16.131.2
[r4]ip route-static 172.16.134.0 24 172.16.132.2
[r4]ip route-static 172.16.128.0 24 172.16.132.2
[r4]ip route-static 172.16.134.0 24 172.16.131.2
[r5]ip route-static 172.16.128.0 24 172.16.133.2
[r5]ip route-static 172.16.134.0 24 172.16.133.2
[r5]ip route-static 172.16.132.0 24 172.16.131.1
[r5]ip route-static 172.16.130.0 24 172.16.131.1
[r5]ip route-static 172.16.129.0 24 172.16.131.1
[r6]ip route-static 172.16.130.0 24 172.16.132.1
[r6]ip route-static 172.16.129.0 24 172.16.132.1
[r6]ip route-static 172.16.131.0 24 172.16.132.1
[r6]ip route-static 172.16.133.0 24 172.16.134.2
[r6]ip route-static 172.16.128.0 24 172.16.134.2
[r7]ip route-static 172.16.132.0 24 172.16.134.1
[r7]ip route-static 172.16.130.0 24 172.16.134.1
[r7]ip route-static 172.16.129.0 24 172.16.134.1
[r7]ip route-static 172.16.129.0 24 172.16.133.1
[r7]ip route-static 172.16.130.0 24 172.16.133.1
[r7]ip route-static 172.16.131.0 24 172.16.133.1
- 配置静态路由空接口防环
[r4]ip route-static 172.16.128.0 22 NULL 0
- 配置静态缺省保证内网设备访问
[r7]ip route-static 0.0.0.0 0 172.16.133.1
[r7]ip route-static 0.0.0.0 0 172.16.134.1
[r6]ip route-static 0.0.0.0 0 172.16.131.1
[r5]ip route-static 0.0.0.0 0 172.16.132.1
[r4]ip route-static 0.0.0.0 0 172.16.129.1
[r4]ip route-static 0.0.0.0 0 172.16.130.1
6.
[r3]ip route-static 172.16.131.0 24 172.16.130.2 preference 100
三、公网通
1、配置IP地址
[r3-GigabitEthernet0/0/2]ip ad 100.0.0.1 24
[test-GigabitEthernet0/0/0]ip ad 100.0.0.2 24
DAMO开发者矩阵,由阿里巴巴达摩院和中国互联网协会联合发起,致力于探讨最前沿的技术趋势与应用成果,搭建高质量的交流与分享平台,推动技术创新与产业应用链接,围绕“人工智能与新型计算”构建开放共享的开发者生态。
更多推荐


所有评论(0)