1.拓扑图
2.实验要求
综合实验要求:
1、AR6理解为ISP设备,所连接的两个网段为公网;R1-R5构建为一个私有的局域网;
2、AR6上只能进行ip地址配置,之后不得对该路由器进行其他任何配置
3、公网范围IP地址已经指定,剩余R1-R5整个私网使用192.168.1.0/24进行合理分配
4、PC1/3为划分到VLAN2,PC2/4/HTTP 服务器划分到VLAN3;PC1-4通过DHCP自动获取ip地址;
5、所有路由器路由表应尽量控制减少,预防出现环路,所有选路均为最佳路径;R4与R5之间正常使用1000M链路,
1000M链路故障时自动切换到100m链路,整个网络仅使用静态路由协议;
6、PC1—PC4均可ping通PC5,同时PC5可以通过域名www.beixin.com来访问http服务器;
7、全网仅R1可以telnet登录R2
3.配置命令
交换机1 配置命令:
[SW1]vlan batch 2 to 3
[SW1]interface GigabitEthernet 0/0/2
[SW1-GigabitEthernet0/0/2]port link-type access
[SW1-GigabitEthernet0/0/2]port default vlan 2
[SW1]interface GigabitEthernet 0/0/4
[SW1-GigabitEthernet0/0/4]port default vlan 3
[SW1]interface GigabitEthernet 0/0/1
[SW1-GigabitEthernet0/0/1]port link-type trunk
[SW1-GigabitEthernet0/0/1]port trunk allow-pass vlan 2 to 3
R1 配置命令
配置路由器子接口
[R1]interface GigabitEthernet 0/0/0.1
[R1-GigabitEthernet0/0/0.1]dot1q termination vid 2
[R1-GigabitEthernet0/0/0.1]ip address 192.168.1.1 27
[R1-GigabitEthernet0/0/0.1]arp broadcast enable
[R1]interface GigabitEthernet 0/0/0.2
[R1-GigabitEthernet0/0/0.2]dot1q termination vid 3
[R1-GigabitEthernet0/0/0.2]ip address 192.168.1.33 27
[R1-GigabitEthernet0/0/0.2]arp broadcast enable
[R1]dhcp enable
启动DHCP
[R1]ip pool xixi
[R1-ip-pool-xixi]network 192.168.1.0 mask 27
[R1-ip-pool-xixi]gateway-list 192.168.1.1
[R1-ip-pool-xixi]dns-list 114.114.114.114
[R1]interface GigabitEthernet 0/0/0.1
[R1-GigabitEthernet0/0/0.1]dhcp select global
[R1]ip pool haha
[R1-ip-pool-haha]network 192.168.1.32 mask 27
[R1-ip-pool-haha]gateway-list 192.168.1.33
[R1-ip-pool-haha]dns-list 114.114.114.114
[R1]interface GigabitEthernet 0/0/0.2
[R1-GigabitEthernet0/0/0.2]dhcp select global
配IP和静态路由
[R1]interface GigabitEthernet 0/0/1
[R1-GigabitEthernet0/0/1]ip address 192.168.1.129 30
[R1]interface GigabitEthernet 0/0/2
[R1-GigabitEthernet0/0/2]ip address 192.168.1.133 30
[R1]ip route-static 192.168.1.128 27 192.168.1.130
[R1]ip route-static 192.168.1.0 24 192.168.1.134
[R1]ip route-static 0.0.0.0 0 192.168.1.130
[R1]ip route-stati 192.168.1.0 26 NULL 0
交换机2 配置
[SW2]vlan batch 2 to 3
[SW2]interface GigabitEthernet 0/0/2
[SW2-GigabitEthernet0/0/2]port link-type access
[SW2-GigabitEthernet0/0/2]port default vlan 2
[SW2]port-group group-member GigabitEthernet 0/0/3 GigabitEthernet 0/0/4
[SW2-port-group]port link-type access
[SW2-port-group]port default vlan 3
[SW2]interface GigabitEthernet 0/0/1
[SW2-GigabitEthernet0/0/1]port link-type trunk
[SW2-GigabitEthernet0/0/1]port trunk allow-pass vlan 2 to 3
R3配置
配置路由器子接口
[R3]interface GigabitEthernet 0/0/0.1
[R3-GigabitEthernet0/0/0.1]dot1q termination vid 2
[R3-GigabitEthernet0/0/0.1]ip address 192.168.1.65 27
[R3-GigabitEthernet0/0/0.1]arp broadcast enable
[R3]interface GigabitEthernet 0/0/0.2
[R3-GigabitEthernet0/0/0.2]dot1q termination vid 3
[R3-GigabitEthernet0/0/0.2]ip address 192.168.1.97 27
[R3-GigabitEthernet0/0/0.2]arp broadcast enable
启动DHCP
[R3]ip pool xixi
[R3-ip-pool-xixi]network 192.168.1.64 mask 27
[R3-ip-pool-xixi]gateway-list 192.168.1.65
[R3-ip-pool-xixi]dns-list 114.114.114.114
[R3]interface GigabitEthernet 0/0/0.1
[R3-GigabitEthernet0/0/0.1]dhcp select global
[R3]ip pool haha
[R3-ip-pool-haha]network 192.168.1.96 mask 27
[R3-ip-pool-haha]gateway-list 192.168.1.97
[R3-ip-pool-haha]dns-list 114.114.114.114
[R3]interface GigabitEthernet 0/0/0.2
[R3-GigabitEthernet0/0/0.2]dhcp select global
R3 路由配置
[R3]interface GigabitEthernet 0/0/1
[R3-GigabitEthernet0/0/1]ip address 192.168.1.134 30
[R3]interface GigabitEthernet 0/0/2
[R3-GigabitEthernet0/0/2]ip address 192.168.1. 137 30
[R3]ip route-static 192.168.1.0 24 192.168.1.133
[R3]ip route-static 192.168.1.128 27 192.168.138
[R3]ip route-static 0.0.0.0 0 192.168.1.138
[R3]ip route-static 192.168.1.64 26 NULL 0
R2配置命令
[R2]interface GigabitEthernet 0/0/0
[R2-GigabitEthernet0/0/0]ip address 192.168.1.130 30
[R2]interface GigabitEthernet 0/0/1
[R2-GigabitEthernet0/0/1]ip address 192.168.1.141 30
[R2]ip route-static 192.168.1.0 24 192.168.1.129
[R2]ip route-static 192.168.1.128 27 192.168.1.142
[R2]ip route-static 0.0.0.0 0 192.168.1.142
[R2]user-interface vty 0 4
[R2-ui-vty0-4]authentication-mode aaa
[R2]aaa
[R2-aaa]local-user xixi password cipher 123456
[R2-aaa]local-user xixi privilege level 15
[R2-aaa]local-user xixi service-type telnet
R4配置命令
[R4]interface GigabitEthernet 0/0/0
[R4-GigabitEthernet0/0/0]ip address 192.168.1.142 30
[R4]interface GigabitEthernet 0/0/2
[R4-GigabitEthernet0/0/2]ip address 192.168.1.145 30
[R4]interface GigabitEthernet 0/0/1
[R4-GigabitEthernet0/0/1]ip address 192.168.1.138 30
[R4]interface GigabitEthernet 4/0/0
[R4-GigabitEthernet4/0/0]ip address 192.168.1.149 30
[R4]ip route-static 0.0.0.0 0 192.168.1.146
[R4]ip route-static 0.0.0.0 0 192.168.1.150 preference 70
[R4]ip route-static 192.168.1.128 30 192.168.1.141
[R4]ip route-static 192.168.1.0 24 192.168.1.137
R5配置命令
[R5]interface GigabitEthernet 0/0/0
[R5-GigabitEthernet0/0/0]ip address 192.168.1.146 30
[R5]interface GigabitEthernet 0/0/1
[R5-GigabitEthernet0/0/1]ip address 12.1.1.1 24
[R5]interface GigabitEthernet 0/0/2
[R5-GigabitEthernet0/0/2]ip address 192.168.1.150 30
[R5]ip route-static 0.0.0.0 0 12.1.1.2
[R5]ip route-static 192.168.1.0 24 192.168.1.149 preference 70
[R5]ip route-static 192.168.1.0 24 192.168.1.145
[R5-GigabitEthernet0/0/1]nat server protocol tcp global current-interface 80 inside 192.168.1.100 80
Are you sure to continue?[Y/N]:y
AR6配置命令
[R6]interface GigabitEthernet 0/0/0
[R6-GigabitEthernet0/0/0]ip address 12.1.1.2 24
[R6]interface GigabitEthernet 0/0/1
[R6-GigabitEthernet0/0/1]ip address 1.1.1.1 24
4.实现要求
1. p1-4 ping通 p5
PC5通过www.beixin.com访问http