思科配置HSRP、ospf,rip,NAT,ACL以及定时ACL配置和路由重分发大型网络综合实验题

上传人:微*** 文档编号:72791436 上传时间:2022-04-09 格式:DOCX 页数:17 大小:289.40KB
返回 下载 相关 举报
思科配置HSRP、ospf,rip,NAT,ACL以及定时ACL配置和路由重分发大型网络综合实验题_第1页
第1页 / 共17页
思科配置HSRP、ospf,rip,NAT,ACL以及定时ACL配置和路由重分发大型网络综合实验题_第2页
第2页 / 共17页
思科配置HSRP、ospf,rip,NAT,ACL以及定时ACL配置和路由重分发大型网络综合实验题_第3页
第3页 / 共17页
点击查看更多>>
资源描述
MLFMI 注。小思科配置HSRP ospf,rip,NAT,ACL 以及定时ACL配置和路由重分发大型网络综合实验题NiWBTJ-MKP初;I*.工 JSaUX24, LaHIM L、Y 烈1 .设设设设设设设设设设设设设设设设设设之的地址如所示,按照拓扑配置IP地址2 .R1和R2之属于设设设area 8,R1和SW1,SW之属于设设设area 0,SW1和SW2t所有VLA限口属于area 10.SW1和R3之是属于设设设设 RIP区域的。要求配置RIP和OSP股设网之能通信。把设设设设设设设设设 Area 8配置完全末梢区域3 .在R3上存在着10.100.0.0/24 至U 10.100.7.0/24 设8个网段。要求在 R1上看到设8个网段是设设的。4 .在 SW1 SW2 SW3 SW41 配置 VTP,SW评口 SW2 server 模式,SW3和 SW客机模式。域名设设设设设设设设 benet,密设设cisco 。添加VLAN 10 VLAN 50、VLAN 80 VLAN90 设 4 个 VLAN5 .另外在SW体口 SW2k配置HSRP要求SW健VLAN 10和VLAN 50的活路由设设设器,SW2是VLAN 80和VLAN 90的活路由器设设设设,在配置PVS假设注意与HSRP设设7.R4是模设ISP在R4上配置LO0:200.1.20.1/24, 在R1上配置PAT设设内网的所有PC能设去设设200.1.20.1 设设设个地址。另外 R4可以telnet 到Server上8.配置ACL要求在周一到周五的8:30到17:30之禁止工去登设设设设设设设设QQ除此以外在所有设设设设设设设设设设设设设设设设段要求保工能正常的去外网的WWW,FTP,SMTP,TELNET设设些服,禁止工去其他的服。设设设设设设设设设设设我先用GNS3f建起来的拓扑设注意,明:实实实实实本文中的所有命令都是写的 , 因思科的命令都是支持写的实实实实实实实实实实实实实实实实实实先敲所有网的配命令先实实实实实实实实实EnConfig tEnable password 1234No ip domain-loLine con 0Password 1234No exec-tLogging syn配置地址R1Inter f0/0Ip add 10.255.0.5 255.255.255.252No shutInter f1/0Ip add 10.255.0.9 255.255.255.252No shutInter f2/0Ip add 10.255.0.1 255.255.255.252No shutInter f3/0Ip add 202.1.10.1 255.255.255.252No shutR2Inter f0/0Ip add 10.255.0.2 255.255.255.252No shutR3Inter f0/0Ip add 10.255.0.13 255.255.255.252No shutInter lo0Ip add 10.100.0.3 255.255.255.0No shutInter lo1Ip add 10.100.1.3 255.255.255.0No shutInter lo2Ip add 10.100.2.3 255.255.255.0No shutInter lo3Ip add 10.100.3.3 255.255.255.0No shutInter lo4Ip add 10.100.4.3 255.255.255.0No shutInter lo5Ip add 10.100.5.3 255.255.255.0No shutInter lo6Ip add 10.100.6.3 255.255.255.0No shutInter lo7Ip add 10.100.7.3 255.255.255.0No shutR4Inter f0/0Ip add 202.1.10.2 255.255.255.252No shutInter lo0Sw1Ip routing ( 三交机启路由功能实实实实实实实实实实 )Inter f0/0No switchport ( 实实实实实实启三路由功能)Ip add 10.255.0.6 255.255.255.252No shutInter f0/10No switchport ( 实实实实实实启三路由功能)Ip add 10.255.0.14 255.255.255.252No shutInter range f0/14 -15 ,做以太通道 ,Sw mo tr ( 接口做实 trunk 模式 )Inter range f0/1 -2Sw mo trExitSw2Ip routingInter f0/0No swIp add 10.255.0.9 255.255.255.252No shutInter range f0/14 -15Sw mo trInter range f0/1 -2Sw mo trExitInter range f0/0 -1Sw mo trSw4Inter range f0/1 -2Sw mo trExit在 SW1 SW2 SW3 SW4k配置 VTP,SW1ffi SW2t server 模式,SW3和 SW4客设机模式。域名设benet, 密设设 cisco 。添加 VLAN 10、 VLAN 50、 VLAN 80、VLAN 90设 4 个VLAN并按照要求配置vlan 地址Sw1Vlan daVtp domain benetVtp password ciscoVlan 10 name vlan10Vlan 50 name vlan50Vlan 80 name vlan80Vlan 90 name vlan90ExitConfig tInter vlan 10Ip add 10.255.10.1 255.255.255.0No shutInter vlan 50Ip add 10.255.50.1 255.255.255.0No shutInter vlan 80Ip add 10.255.80.1 255.255.255.0No shutInter vlan 90Ip add 10.255.90.1 255.255.255.0No shutSw2Vlan daVtp domain benetVtp password ciscoExitConfig tInter vlan 10Ip add 10.255.10.2 255.255.255.0No shutInter vlan 50Ip add 10.255.50.2 255.255.255.0No shutInter vlan 80Ip add 10.255.80.2 255.255.255.0No shutInter vlan 90Ip add 10.255.90.2 255.255.255.0No shutVlan daVtp domain benetVtp password ciscoVtp clientExitSw4Vlan daVtp domain benetVtp password ciscoVtp clientExitSW体口 SW2k配置HSRP要求SW促VLAN 10和VLAN 50的活路由器,设设设设设SW配VLAN 80和 VLAN 90的活路由器设设设设Sw1Inter vlan 10Standby 1 ip 10.255.10.254 Standby 1 priority 150Standby 1 preemptStandby 1 track f0/0 100Inter vlan 50Standby 5 ip 10.255.50.254Standby 5 priority 150Standby 5 preemptStandby 5 track f0/0 100Inter vlan 80Standby 8 ip 10.255.80.254Standby 8 pri 100Standby 8 preeInter vlan 90Standby 9 ip 10.255.90.254Standby 9 pri 100Standby 9 preeexitSw2Inter vlan 80Standby 8 ip 10.255.80.254 Standby 8 priority 150Standby 8 preemptStandby 8 track f0/0 100Inter vlan 90Standby 9 ip 10.255.90.254Standby 9 priority 150Standby 9 preemptStandby 9 track f0/0 100Inter vlan 10Standby 1 ip 10.255.10.254Standby 1 pri 100Standby 1 preeInter vlan 50Standby 5 ip 10.255.50.254Standby 5 pri 100Standby 5 preeExit配置PVSTS设设设设设设设设设流量的均衡,在配置PVSTS设注意与HSR成 设Sw1Spanning-tree vlan 10 priority 4096Spanning-tree vlan 50 priority4096Sw2Spanning-tree vlan 80 priority 4096Spanning-tree vlan 90 priority4096Sw3Inter f0/2Switchport mode accessSw access vlan 10Inter f0/3Switchport mode accessSw acc vlan 50Sw4Inter f0/2Switchport mode accessSw acc vlan 80Inter f0/3Switchport mode accessSw acc vlan 90Pc1No ip routing (因是路由器模的设设设设设设设设 PC所以需要品&由功能,后面的都一设设设设设设设设设设设设设)Inter f0/0Ip add 10.255.10.10 255.255.255.0No shutIp default-ga 10.255.10.254Pc2No ip routingInter f0/0Ip add 10.255.50.50 255.255.255.0No shutIp default-g 10.255.50.254 ServerNo ip routingInter f0/0Ip add 10.255.80.80 255.255.255.0No shutIp default-g 10.255.80.254Line vty 0 4Password 1234LoginExitPc3No ip routingInter f0/0Ip add 10.255.90.90 255.255.255.0No shutIp default-ga 10.255.90.254R1 和 R2之属于设设设 area 8,R1 和 SW1,SW2属于设设设area 0,SW1和SW2t所有VLAN接口属于area 10.SW1和R3之是属于设设设设RIP区域的。要求配置RIP和OSP股设设设设网之能通信。把设设设设设Area 8 配置完全末梢区域R1Ip route 0.0.0.0 0.0.0.0 202.1.10.2Router ospf 1Router-id 1.1.1.1Network 10.255.0.0 0.0.0.3 area 8Network 10.255.0.4 0.0.0.3 area0Network 10.255.0.8 0.0.0.3 area 0area 8 stub no-summarydefault-information originateexitr2router ospf 1router-id 2.2.2.2network 10.255.0.0 0.0.0.3 area 8area 8 stub no-summaryexitr3router ripversion 2no auto-summnetwork 10.100.0.0network 10.100.1.0network 10.100.2.0network 10.100.3.0network 10.100.4.0network 10.100.5.0network 10.100.6.0network 10.100.7.0network 10.255.0.12exitsw1router ospf 1router-id 3.3.3.3network 10.255.0.4 0.0.0.3 area 0network 10.255.10.0 0.0.0.255 area 10network 10.255.50.0 0.0.0.255 area 10network 10.255.80.0 0.0.0.255 area 10network 10.255.90.0 0.0.0.255 area 10redistribute rip metric 200 subnetssummary-address 10.100.0.0 255.255.248.0exitrouter ripversion 2no auto-summnetwork 10.255.0.12redistribute ospf 1 metric 3exitsw2router ospf 1router-id 4.4.4.4network 10.255.0.8 0.0.0.3 area 0network 10.255.10.0 0.0.0.255 area 10network 10.255.50.0 0.0.0.255 area 10network 10.255.80.0 0.0.0.255 area 10network 10.255.90.0 0.0.0.255 area 10exitr4ip route 0.0.0.0 0.0.0.0 202.1.10.1exit实实,用PC机或者server机Ping实实R1或者R4上的地址pclfping 2QZ. k. 10.1Type escape sequence to abort, sending 5.100-byre icmp Echos conds tto ?0Z. 1.10-1, tiirjedsuccess rate is 100 percenr (58/119/272 mspcl*p1ng 200. . 20. 15) round-trip min/Type escape sequence tp abort. Sending 5. 100-byte ICMP Ethos conds:success rare is 100 percenr (S 4/140/186 mspdf5), rownri-rrlp min/Type escape sequence to abortISerxiing 5. 100-byte ICMP Echos to 202. conds:51KC35 rate is percent (5/5), round- 0/108/160 mspcZ*ping . 1.20.1Type escape sequence to abort.sending 5. 100-byte icmp Echos rn 20QJd corals:success rate fs icio percent (5/5) round-Type escape sequence ro aiKrn.andhig 51 lOO-byt c ICMP EC Ms ta J conds:success rate is 100 percent (5/5)t0/106/128 msserverping 2(X 1.20.1rype escape sequence io abori.Sendirtg 5f 100-byte ICMP Echas to 2 conds:pc3fpieg 202.1.10.1Type asc&pe saquarice. to abort.SbihJiriy 5. IGO-Uyte icmp Edes ro condi:success rave fs 80 percent 14/5). /109/124 ms200.1. 20.1rouType escape sequence to abort.?erxl ing 5 e l_0O-byve TCMP FcIiqs ro conris:(W在R1上配置PAT设设内网的所有PC能去设设设设200.1.20.1设设设个地址。另外R4可以telnet至U Server上R1:Access-list 1 permit anyIp nat pool yang 200.1.10.1 200.1.10.1 netmask 255.255.255.0Ip nat inside source list 1 pool yang overloadInter f3/0Ip nat outsideInter f2/0Ip nat insideInter f0/0Ip nat insideInter f1/0Ip nat inside用命令debug ip nat 实实实实是否配置ACL要求在周一到周五的8:30到17:30之禁止工去登设设设设设设设设QQ除此以外在所有设设段要求保工能正常的去外网的设设设设设设设设设设设设设设WWW,FTP,SMTP,TELNE设设设设设些服,禁止工去其他的服。设设设设设设设设R1:r1(config)#Time-range yangjunr1(config-time-range)#Periodic weekdays 8:30 to 17:30r1(config-time-range)#Exitr1(config)#Ip access-list extended tianr1(config-ext-nacl)#Deny udp any any eq 4000 time-rangeyangjunr1(config-ext-nacl)#Deny udp any any eq 8000 time-rangeyangjunr1(config-ext-nacl)#Permit tcp any any eq 80r1(config-ext-nacl)#Permit tcp any any eq 25r1(config-ext-nacl)#Permit tcp any any eq21U(config-ext-nacl)#Permit tcp any any eq 23r1(config-ext-nacl)#Interf3/0r1(config-if)#Ip access-group tian out
展开阅读全文
相关资源
正为您匹配相似的精品文档
相关搜索

最新文档


当前位置:首页 > 商业管理 > 营销创新


copyright@ 2023-2025  zhuangpeitu.com 装配图网版权所有   联系电话:18123376007

备案号:ICP2024067431-1 川公网安备51140202000466号


本站为文档C2C交易模式,即用户上传的文档直接被用户下载,本站只是中间服务平台,本站所有文档下载所得的收益归上传人(含作者)所有。装配图网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。若文档所含内容侵犯了您的版权或隐私,请立即通知装配图网,我们立即给予删除!