实验要求:
1. R6为isp,接口IP地址均为共有地址;该设备只能配置IP地址, 之后不能在对其进行其他任何配置
2. R1 - R5 为局域网, 私有IP地址192.168.1.0 /24 , 请合理分配
3. R1 , R2 , R4 , 各自有两个环回地址; R5 , R6各有一个环回地址;所有路由器上环回地址代表连接用户的接口
4. R3 下两台pc通过dhcp自动获取IP地址
5. 选路最佳,路由表尽量小, 避免环路
6. R1 - R5均可访问R6的回环
7. R6 telnet R5的共有IP地址时, 实际登录到R1上
8. R4与R5正常通过1000M链路, 故障时通过100M链路
一. 规划, 配置IP
二, 为R3配置DHCP
具体操作:
[R3]dhcp enable
[r3]ip pool niubi
[r3-ip-pool-niubi]network 192.168.1.96 mask 27
[r3-ip-pool-niubi]gateway-list 192.168.1.97
[r3-ip-pool-niubi]dns-list 192.168.2.2 114.114.114.114
三. 路由配置
具体操作:
1)静态路由配置
R1:
[R1]ip route-static 192.168.1.64 27 192.168.1.2
[R1]ip route-static 192.168.1.4 30 192.168.1.2
[R1]ip route-static 192.168.1.128 27 192.168.1.2
[R1]ip route-static 192.168.1.16 30 192.168.1.2
[R1]ip route-static 192.168.1.160 27 192.168.1.2
[R1]ip route-static 12.0.0.0 24 192.168.1.2
[R1]ip route-static 192.168.1.96 27 192.168.1.10
[R1]ip route-static 192.168.1.128 27 192.168.1.10
[R1]ip route-static 192.168.1.12 30 192.168.1.10
[R1]ip route-static 192.168.1.16 30 192.168.1.10
[R1]ip route-static 192.168.1.160 27 192.168.1.10
[R1]ip route-static 12.0.0.0 24 192.168.1.10
R2:
[R2]ip route-static 192.168.1.32 27 192.168.1.1
[R2]ip route-static 192.168.1.8 30 192.168.1.1
[R2]ip route-static 192.168.1.96 27 192.168.1.1
[R2]ip route-static 192.168.1.96 27 192.168.1.6
[R2]ip route-static 192.168.1.128 27 192.168.1.6
[R2]ip route-static 192.168.1.12 30 192.168.1.6
[R2]ip route-static 192.168.1.16 30 192.168.1.6
[R2]ip route-static 192.168.1.160 27 192.168.1.6
[R2]ip route-static 12.0.0.0 24 192.168.1.6
R3:
[R3]ip route-static 192.168.1.32 27 192.168.1.9
[R3]ip route-static 192.168.1.0 30 192.168.1.9
[R3]ip route-static 192.168.1.64 27 192.168.1.9
[R3]ip route-static 192.168.1.64 27 192.168.1.14
[R3]ip route-static 192.168.1.128 27 192.168.1.14
[R3]ip route-static 192.168.1.4 30 192.168.1.14
[R3]ip route-static 192.168.1.16 30 192.168.1.14
[R3]ip route-static 192.168.1.160 27 192.168.1.14
[R3]ip route-static 12.0.0.0 24 192.168.1.14
R4:
[R4]ip route-static 192.168.1.64 27 192.168.1.5
[R4]ip route-static 192.168.1.32 27 192.168.1.5
[R4]ip route-static 192.168.1.0 30 192.168.1.5
[R4]ip route-static 192.168.1.8 30 192.168.1.13
[R4]ip route-static 192.168.1.32 27 192.168.1.13
[R4]ip route-static 192.168.1.96 27 192.168.1.13
[R4]ip route-static 192.168.1.160 27 192.168.1.18
[R4]ip route-static 12.0.0.0 24 192.168.1.18
R5:
[R5]ip route-static 192.168.1.64 27 192.168.1.17
[R5]ip route-static 192.168.1.32 27 192.168.1.17
[R5]ip route-static 192.168.1.96 27 192.168.1.17
[R5]ip route-static 192.168.1.128 27 192.168.1.17
[R5]ip route-static 192.168.1.0 30 192.168.1.17
[R5]ip route-static 192.168.1.8 30 192.168.1.17
[R5]ip route-static 192.168.1.12 30 192.168.1.17
[R5]ip route-static 192.168.1.4 30 192.168.1.17
2)缺省路由配置
R1:
[R1]ip route-static 0.0.0.0 0.0.0.0 192.168.1.2
[R1]ip route-static 0.0.0.0 0.0.0.0 192.168.1.10
R2:
[R2]ip route-static 0.0.0.0 0.0.0.0 192.168.1.6
R3:
[R3]ip route-static 0.0.0.0 0.0.0.0 192.168.1.14
R4:
[R4]ip route-static 0.0.0.0 0.0.0.0 192.168.1.18
R5:
[R5]ip route-static 0.0.0.0 0.0.0.0 12.0.0.2
3) 空接口配置(防止环路)
R1:
[R1]ip route-static 192.168.1.32 27 NULL 0
R2:
[R2]ip route-static 192.168.1.64 27 null 0
R3:
[R3]ip route-static 192.168.1.96 27 null 0
R4:
[R4]ip route-static 192.168.1.128 27 null 0
R5:
[R5]ip route-static 192.168.1.160 27 null 0
4)备用链路配置
R1:
[R1]ip route-static 192.168.1.20 255.255.255.252 192.168.1.10 preference 61
[R1]ip route-static 192.168.1.20 255.255.255.252 192.168.1.2 preference 61
[R1]ip route-static 192.168.1.160 255.255.255.224 192.168.1.10 preference 61
Info: Succeeded in modifying route.
[R1]ip route-static 192.168.1.160 255.255.255.224 192.168.1.2 preference 61
Info: Succeeded in modifying route.
[R1]ip route-static 12.0.0.0 255.255.255.0 192.168.1.2 preference 61
Info: Succeeded in modifying route.
[R1]ip route-static 12.0.0.0 255.255.255.0 192.168.1.10 preference 61
R2:
[R2]ip route-static 192.168.1.20 255.255.255.252 192.168.1.6 preference 61
[R2]ip route-static 192.168.1.160 255.255.255.224 192.168.1.6 preference 61
Info: Succeeded in modifying route.
[R2]ip route-static 12.0.0.0 255.255.255.0 192.168.1.6 preference 61
R3:
[R3]ip route-static 192.168.1.20 255.255.255.252 192.168.1.14 preference 61
[R3]ip route-static 192.168.1.160 255.255.255.224 192.168.1.14 preference 61
Info: Succeeded in modifying route.
[R3]ip route-static 12.0.0.0 255.255.255.0 192.168.1.14 preference 61
R4:
[R4]ip route-static 192.168.1.160 255.255.255.224 192.168.1.22 preference 61
[R4]ip route-static 12.0.0.0 255.255.255.0 192.168.1.22 preference 61
[R4]ip route-static 0.0.0.0 0.0.0.0 192.168.1.22 preference 61
R5:
[R5]ip route-static 192.168.1.32 255.255.255.224 192.168.1.21 preference 61
[R5]ip route-static 192.168.1.64 255.255.255.224 192.168.1.21 preference 61
[R5]ip route-static 192.168.1.96 255.255.255.224 192.168.1.21 preference 61
[R5]ip route-static 192.168.1.128 255.255.255.224 192.168.1.21 preference 61
[R5]ip route-static 192.168.1.0 255.255.255.252 192.168.1.21 preference 61
[R5]ip route-static 192.168.1.8 255.255.255.252 192.168.1.21 preference 61
[R5]ip route-static 192.168.1.4 255.255.255.252 192.168.1.21 preference 61
[R5]ip route-static 192.168.1.12 255.255.255.252 192.168.1.21 preference 61
5)为R5配置NAT
[r5]acl 2000
[r5-acl-basic-2000]rule permit source 192.168.1.0 0.0.0.255
[r5-GigabitEthernet0/0/1]nat outbound 2000
[R5-GigabitEthernet0/0/1]nat server protocol tcp global current-interface telnet
inside 192.168.1.1 telnet
Warning:The port 23 is well-known port. If you continue it may cause function fa
ilure.
Are you sure to continue?[Y/N]:y
6)为R1配置Telnet 远程登陆
[R1-aaa]local-user baga privilege level 15 password cipher 123456
Info: Add a new user.
[R1-aaa]local-user baga service-type telnet
[R1-aaa]q
[R1]user-interface vty 0 4
[R1-ui-vty0-4]authentication-mode aaa
四. 测试
1)pc1, R1等访问R6回环
2)R6TelnetR5公有IP
3)测试备用链路(100M)
将1000M链路接口关闭后进行测试
测试通过!