目录
8.验证PC1可以ping通全网,PC2可以ping通PC6,PC4/5不能ping通PC6
一、实验要求
1.PC1和PC3所在接口为access,属于vlan 2
PC2/4/5/6处于同一网段;其中PC2可以访问PC4/5/6,且PC4可以访问PC5,不能访问PC6
2.PC5不能访问PC6
3.PC1/3与PC2/4/5/6不在同一个网段
4.所有PC通过DHCP获取IP地址,且PC1/3可以正常访问PC2/4/5/6
二、实验步骤
1.创建vlan
[sw1]vlan batch 2 to 5—批量创建vlan 2-5
[sw2]vlan batch 2 to 5
[sw2]vlan batch 2 to 5
2.将接口划入vlan
PC1/3接口类型使用access,PC2/4/5/6接口类型使用hybrid
[sw1]int g 0/0/1
[sw1-GigabitEthernet0/0/1]port link-type access—修改接口类型
[sw1-GigabitEthernet0/0/1]port default vlan 2—放通vlan 2
[sw1-GigabitEthernet0/0/1]int g 0/0/2
[sw1-GigabitEthernet0/0/2]port hybrid pvid vlan 3
[sw1-GigabitEthernet0/0/2]port hybrid untagged vlan 2 to 5
[sw2]int g 0/0/1
[sw2-GigabitEthernet0/0/1]port link-type access
[sw2-GigabitEthernet0/0/1]port default vlan 2
[sw2-GigabitEthernet0/0/1]int g 0/0/2
[sw2-GigabitEthernet0/0/2]port hybrid pvid vlan 4
[sw2-GigabitEthernet0/0/2]port hybrid untagged vlan 2 to 4
[sw3]int g 0/0/1
[sw3-GigabitEthernet0/0/1]port hybrid pvid vlan 4
[sw3-GigabitEthernet0/0/1]port hybrid untagged vlan 2 to 4
[sw3-GigabitEthernet0/0/1]int g 0/0/2
[sw3-GigabitEthernet0/0/2]port hybrid pvid vlan 5
[sw3-GigabitEthernet0/0/2]port hybrid untagged vlan 2 3 5
3.trunk干道
三台交换机中间的干道链路全部为trunk接口,允许2/3/4/5vlan通过
[sw1-GigabitEthernet0/0/2]int g 0/0/3
[sw1-GigabitEthernet0/0/3]port link-type trunk
[sw1-GigabitEthernet0/0/3]port trunk allow-pass vlan 2 3 4 5
[sw2-GigabitEthernet0/0/2]int g 0/0/3
[sw2-GigabitEthernet0/0/3]port link-type trunk
[sw2-GigabitEthernet0/0/3]port trunk allow-pass vlan 2 3 4 5
[sw3-GigabitEthernet0/0/2]int g 0/0/3
[sw3-GigabitEthernet0/0/3]port link-type trunk
[sw3-GigabitEthernet0/0/3]port trunk allow-pass vlan 2 3 4 5
4.vlan间路由器
单臂路由:连接路由器的交换机sw1接口0/0/4上设置接口类型为hybird,允许vlan 2携带标签转发,vlan 3 to 5剥离标签转发
子接口:放通vlan 2
[sw1-GigabitEthernet0/0/3]int g 0/0/4
[sw1-GigabitEthernet0/0/4]port hybrid untagged vlan 3 to 5
[sw1-GigabitEthernet0/0/4]port hybrid tagged vlan 2
[sw2]int g 0/0/4
[sw2-GigabitEthernet0/0/4]port hybrid tagged vlan 2 to 5
[r1]int g 0/0/0
[r1-GigabitEthernet0/0/0]ip add 192.168.1.1 24
[r1-GigabitEthernet0/0/0]int g 0/0/0.1
[r1-GigabitEthernet0/0/0.1]dot1q termination vid 2
[r1-GigabitEthernet0/0/0.1]ip add 192.168.2.1 24
[r1-GigabitEthernet0/0/0.1]arp broadcast enable
5.配置DHCP服务
[r1]dhcp enable—全局开启DHCP服务
[r1]ip pool a—创建地址池
[r1-ip-pool-a]network 192.168.1.0 mask 24—宣告可以下发地址范围
[r1-ip-pool-a]gateway-list 192.168.1.1—下发网关的IP地址
[r1-ip-pool-a]dns-list 114.114.114.114 8.8.8.8—下发DNS服务器地址
[r1]ip pool b
[r1-ip-pool-b]network 192.168.2.0 mask 24
[r1-ip-pool-b]gateway-list 192.168.2.1
[r1-ip-pool-b]dns-list 114.114.114.114 8.8.8.8
[r1]int g 0/0/0—进入物理接口和子接口上单独开启dhcp
[r1-GigabitEthernet0/0/0]dhcp select global
[r1-GigabitEthernet0/0/0]int g 0/0/0.1
[r1-GigabitEthernet0/0/0.1]dhcp select global