R8和r9的环回分别是172.16.1.0/24和172.16.2.0/24
中间使用78.1.1.0/24
剩下的路由器2-6使用172.16.0.0/16
R1为运营商 r1远程登录r2实际登录r7
R2访问r7要求走r5去访问
全网可达
先对其进行子网划分。
一、R8和r9的环回分别是172.16.1.0/24和172.16.2.0/24
中间使用78.1.1.0/24
剩下的路由器2-6使用172.16.0.0/16
ip地址配置:
r1:
<Huawei>system-view
[Huawei]sysname r1
[r1]interface LoopBack 0
[r1-LoopBack0]ip address 1.1.1.1 32
[r1-LoopBack0]quit
[r1]interface g0/0/0
[r1-GigabitEthernet0/0/0]ip address 12.1.1.1 24
[r1-GigabitEthernet0/0/0]quit
[r1]display ip int brief
r2:
<Huawei>system-view
[Huawei]sysname r2
[r2]interface g0/0/0
[r2-GigabitEthernet0/0/0]ip address 12.1.1.2 24
[r2-GigabitEthernet0/0/0]quit
[r2]interface g0/0/1
[r2-GigabitEthernet0/0/1]ip address 172.16.3.1 24
[r2-GigabitEthernet0/0/1]quit
[r2]display ip int brief
r3:
<Huawei>system-view
[Huawei]sysname r3
[r3]interface g0/0/0
[r3-GigabitEthernet0/0/0]ip address 172.16.3.2 24
[r3-GigabitEthernet0/0/0]quit
[r3]interface g0/0/1
[r3-GigabitEthernet0/0/1]ip address 172.16.4.1 24
[r3-GigabitEthernet0/0/1]quit
[r3]interface g0/0/2
[r3-GigabitEthernet0/0/2]ip address 172.16.5.1 24
[r3-GigabitEthernet0/0/2]quit
[r3]display ip int brief
r4:
<Huawei>system-view
[Huawei]sysname r4
[r4]interface LoopBack 0
[r4-LoopBack0]ip address 4.4.4.4 32
[r4-LoopBack0]quit
[r4]interface g0/0/0
[r4-GigabitEthernet0/0/0]ip address 172.16.4.2 24
[r4-GigabitEthernet0/0/0]quit
[r4]interface g0/0/1
[r4-GigabitEthernet0/0/1]ip address 172.16.6.1 24
[r4-GigabitEthernet0/0/1]quit
[r4]display ip int brief
r5:
<Huawei>system-view
[Huawei]sysname r5
[r5]interface g0/0/0
[r5-GigabitEthernet0/0/0]ip address 172.16.5.2 24
[r5-GigabitEthernet0/0/0]quit
[r5]interface g0/0/1
[r5-GigabitEthernet0/0/1]ip address 172.16.8.1 24
[r5-GigabitEthernet0/0/1]quit
[r5]display ip int brief
r6:
<Huawei>system-view
[Huawei]sysname r6
[r6]interface g0/0/0
[r6-GigabitEthernet0/0/0]ip address 172.16.8.2 24
[r6-GigabitEthernet0/0/0]quit
[r6]interface g0/0/1
[r6-GigabitEthernet0/0/1]ip address 172.16.7.1 24
[r6-GigabitEthernet0/0/1]quit
[r6]interface g0/0/2
[r6-GigabitEthernet0/0/2]ip address 172.16.9.1 24
[r6-GigabitEthernet0/0/2]quit
[r6]display ip int brief
r7:
<Huawei>system-view
[Huawei]sysname r7
[r7]interface g0/0/0
[r7-GigabitEthernet0/0/0]ip address 172.16.6.2 24
[r7-GigabitEthernet0/0/0]quit
[r7]interface g0/0/1
[r7-GigabitEthernet0/0/1]ip address 172.16.7.2 24
[r7-GigabitEthernet0/0/1]quit
[r7]interface LoopBack 0
[r7-LoopBack0]ip address 7.7.7.7 32
[r7-LoopBack0]quit
[r7]display ip int brief
r8:
<Huawei>system-view
[Huawei]sysname r8
[r8]interface g0/0/0
[r8-GigabitEthernet0/0/0]ip address 172.16.9.2 24
[r8-GigabitEthernet0/0/0]quit
[r8]interface g0/0/1
[r8-GigabitEthernet0/0/1]ip address 78.1.1.1 24
[r8-GigabitEthernet0/0/1]quit
[r8]interface LoopBack 0
[r8-LoopBack0]ip address 172.16.1.1 24
[r8-LoopBack0]quit
[r8]display ip int brief
r9:
<Huawei>system-view
[Huawei]sysname r9
[r9]interface LoopBack 0
[r9-LoopBack0]ip address 172.16.2.1 24
[r9-LoopBack0]quit
[r9]interface g0/0/0
[r9-GigabitEthernet0/0/0]ip address 78.1.1.2 24
[r9-GigabitEthernet0/0/0]quit
[r9]display ip int brief
二、全网可达
1、内网全网可达
r2:
[r2]rip 1
[r2-rip-1]version 2
[r2-rip-1]network 172.16.0.0
r3:
[r3]rip 1
[r3-rip-1]version 2
[r3-rip-1]network 172.16.0.0
r4:
[r4]rip 1
[r4-rip-1]version 2
[r4-rip-1]network 172.16.0.0
r5:
[r5]rip 1
[r5-rip-1]version 2
[r5-rip-1]network 172.16.0.0
r6:
[r6]rip 1
[r6-rip-1]version 2
[r6-rip-1]network 172.16.0.0
r7:
[r7]rip 1
[r7-rip-1]version 2
[r7-rip-1]network 172.16.0.0
[r7-rip-1]network 7.0.0.0
r8:
[r8]rip 1
[r8-rip-1]version 1
[r8-rip-1]network 172.16.0.0
[r8-rip-1]network 78.0.0.0
[r8]interface g0/0/0
[r8-GigabitEthernet0/0/0]rip version 2
[r8-GigabitEthernet0/0/0]quit
r9:
[r9]rip 1
[r9-rip-1]version 1
[r9-rip-1]network 172.16.0.0
[r9-rip-1]network 78.0.0.0
查看r2、r8、r9路由表
display ip routing-table
r2:
r8:
r9:
测试结果如下:
2.外网全网可达
r2:
[r2]acl 2000
[r2-acl-basic-2000]rule permit source any
[r2-acl-basic-2000]quit
[r2]interface g0/0/0
[r2-GigabitEthernet0/0/0]nat outbound 2000
[r2-GigabitEthernet0/0/0]quit
[r2]ip route-static 0.0.0.0 0 12.1.1.1
[r2]rip 1
[r2-rip-1]default-route originate
查看下放的缺省:
display ip routing-table
测试如下:
成功则实现全网可达。
三、 R2访问r7要求走r5去访问
r3:
[r3]acl 2000
[r3-acl-basic-2000]rule permit source 7.7.7.7 0.0.0.0
[r3-acl-basic-2000]quit
[r3]interface g0/0/1
[r3-GigabitEthernet0/0/1]rip metricin 2000 4
[r3-GigabitEthernet0/0/1]quit
查看是否修改成功:
[r3]display ip routing-table
走 g0/0/2 口修改成功.
四、R1为运营商 r1远程登录r2实际登录r7
r7打开远程登录:
[r7]user-interface vty 0 4
[r7-ui-vty0-4]authentication-mode password
Please configure the login password (maximum length 16):1234
r2:
[r2]interface g0/0/0
[r2-GigabitEthernet0/0/0]nat static protocol tcp global 12.1.1.3 23 inside 7
.7.7.7 23
在r1测试:
成功登录r7,小实验圆满成功。