hcia基础实验

一、先在交换机上配置

1.先创建vlan

[LW1]vlan 2

[LW1]vlan 3

[LW1]vlan 4

2.给vlan放行

[LW1]int g0/0/2

[LW1-GigabitEthernet0/0/2]port link-type access  

[LW1-GigabitEthernet0/0/2]port default vlan 2

[LW1]int g0/0/3

[LW1-GigabitEthernet0/0/3]port link-type access 

[LW1-GigabitEthernet0/0/3]port default vlan 3

[LW1]int g0/0/4

[LW1-GigabitEthernet0/0/4]port link-type access 

[LW1-GigabitEthernet0/0/4]port default vlan 4

[LW1]int g0/0/1   

[LW1-GigabitEthernet0/0/1]port link-type trunk 

[LW1-GigabitEthernet0/0/1]port trunk allow-pass vlan 2 3 4

(2)给LW2创建vlan

[LW2]vlan 2

[LW2]vlan 3

给vlan放行

[LW2]int g0/0/2

[LW2-GigabitEthernet0/0/2]port link-type access

[LW2-GigabitEthernet0/0/2]port default vlan 2

[LW2]int g0/0/3

[LW2-GigabitEthernet0/0/3]port link-type access 

[LW2-GigabitEthernet0/0/3]port default vlan 3

[LW2]int g0/0/1 

[LW2-GigabitEthernet0/0/1]port link-type trunk 

[LW2-GigabitEthernet0/0/1]port trunk allow-pass vlan 2 3 

二、在交换机上配置IP

(1)R1上配置IP

[R1]int g0/0/1

[R1-GigabitEthernet0/0/1]ip address 192.168.1.1 26

[R1-GigabitEthernet0/0/1]int g0/0/0.1

[R1-GigabitEthernet0/0/0.1]ip address 192.168.1.65 28

[R1-GigabitEthernet0/0/0.1]dot1q termination vid 2 

[R1-GigabitEthernet0/0/0.1]arp broadcast enable 

[R1-GigabitEthernet0/0/0.1]int g0/0/0.2

[R1-GigabitEthernet0/0/0.2]ip address 192.168.1.81 28

[R1-GigabitEthernet0/0/0.2]dot1q termination vid 3

[R1-GigabitEthernet0/0/0.2]arp broadcast enable 

[R1-GigabitEthernet0/0/0.2]int g0/0/0.3

[R1-GigabitEthernet0/0/0.3]ip address 192.168.1.97 28

[R1-GigabitEthernet0/0/0.3]dot1q termination vid 4

[R1-GigabitEthernet0/0/0.3]arp broadcast enable 

(2)R2上配置IP

R2]int g0/0/1

[R2-GigabitEthernet0/0/1]ip address 192.168.1.2 26

[R2]int g0/0/0.1 

[R2-GigabitEthernet0/0/0.1]ip address 192.168.1.129 27

[R2-GigabitEthernet0/0/0.1]dot1q termination vid 2

[R2-GigabitEthernet0/0/0.1]arp broadcast enable 

[R2]int g0/0/0.2

[R2-GigabitEthernet0/0/0.2]ip address 192.168.1.161 27

[R2-GigabitEthernet0/0/0.2]dot1q termination vid 3

[R2-GigabitEthernet0/0/0.2]arp broadcast enable

[R2]int g0/0/2

[R2-GigabitEthernet0/0/2]ip address 202.1.1.1 30

(3)在Telnet Server上配置IP

[Telnet Server]int g0/0/0

[Telnet Server-GigabitEthernet0/0/0]ip address 192.168.1.98 28

开始配置实验:

1.ISP路由器仅配置IP地址

[ISP]int g0/0/0

[ISP-GigabitEthernet0/0/0]ip address 202.1.1.2 30

[ISP-GigabitEthernet0/0/1]ip address 203.1.1.1 24

[test-1-GigabitEthernet0/0/0]ip add 203.1.1.2 24
[test-2-GigabitEthernet0/0/0]ip add 203.1.1.3 24

3.使用OSPF协议下发IP地址

(1)在R1上配置OSPF协议

[R1]ospf 1 router-id 1.1.1.1

[R1-ospf-1]area 0

[R1-ospf-1-area-0.0.0.0]network 192.168.1.0 0.0.0.255 

(2)在R2上配置OSPF协议

[R2]ospf 1 router-id 2.2.2.2

[R2-ospf-1]area 0

[R2-ospf-1-area-0.0.0.0]network 192.168.1.0 0.0.0.255  

4.配置DHCP动态协议

(1)R1配置DHCP

[R1]dhcp enable 

[R1]ip pool 1 

[R1-ip-pool-1]network 192.168.1.64 mask 28  

[R1-ip-pool-1]gateway-list 192.168.1.65  

[R1-ip-pool-1]dns-list 144.144.144.144

[R1]ip pool 2 

[R1-ip-pool-2]network 192.168.1.80 mask 28

[R1-ip-pool-2]gateway-list 192.168.1.81

[R1-ip-pool-2]dns-list 144.144.144.144

[R1]int g0/0/0.1

[R1-GigabitEthernet0/0/0.1]dhcp select global 

[R1]int g0/0/0.2

[R1-GigabitEthernet0/0/0.2]dhcp select global 

(2)R2配置DHCP动态协议

[R2]dhcp enable 

[R2]ip pool 1  

[R2-ip-pool-1]network 192.168.1.128 mask 27

[R2-ip-pool-1]gateway-list 192.168.1.129

[R2-ip-pool-1]dns-list 144.144.144.144

[R2]ip pool 2 

[R2-ip-pool-2]network 192.168.1.160 mask 27

[R2-ip-pool-2]gateway-list 192.168.1.161

[R2-ip-pool-2]dns-list 144.144.144.144

[R2]int g0/0/0.1

[R2-GigabitEthernet0/0/0.1]dhcp select global

[R2]int g0/0/0.2

[R2-GigabitEthernet0/0/0.2]dhcp select global 

[R2]acl 2000

[R2-acl-basic-2000]rule permit source 192.168.1.0 0.0.0.255

[R2]int g0/0/2

[R2-GigabitEthernet0/0/2]nat outbound 2000  

[R2]ip route-static 0.0.0.0 0 202.1.1.2

[R2]ospf 1

[R2-ospf-1]default-route-advertise 

[R1]acl 3000

[R1-acl-adv-3000]rule deny icmp source 192.168.1.64 0.0.0.0 destination 203.1.1.
100 0.0.0.0  

[R1-GigabitEthernet0/0/0.1]traffic-filter inbound acl 3000

[R1]acl 3000
[R1-acl-adv-3000]rule deny tcp source 203.1.1.2 0 destination-port eq 23
[R1-acl-adv-3000]int g 0/0/2
[R1-GigabitEthernet0/0/2]traffic-filter inbound acl 3000

[Telnet Server]user-interface vty 0 4

[Telnet Server-ui-vty0-4]authentication-mode aaa

[Telnet Server-aaa][Telnet Server-aaa]local-user huawei privilege level 15 password  cipher 123456

[R2-GigabitEthernet0/0/2]nat server protocol tcp global current-interface telnet
 inside 192.168.1.98 telnet

[test-1]ip rou 202.1.1.1 32 203.1.1.1

[test-2]ip rou 202.1.1.1 32 203.1.1.1

f88aec4d5708472892fc4b209b6a890d.png

128d7f35e54d4c71bb1f6bc770b7cb20.png

 

  • 14
    点赞
  • 13
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值