首先
1.合理分配ip地址 这里需要六条骨干链路 七个环回地址
192.168.1.0/24
划分六个网段
192.168.1. 000 00000 27 ----骨干链路
这里再分六个
192.168.1.000 000 00 /30 192.168.1.0/30
192.168.1.000 001 00 /30 192.168.1.4/30
192.168.1.000 010 00 /30 192.168.1.8/30
192.168.1.000 011 00 /30 192.168.1.12/30
192.168.1.000 100 00 /30 192.168.1.16/30
192.168.1.000 101 00 /30 192.168.1.20/30
192.168.1.000 110 00 /30 192.168.1.24/30
192.168.1.000 111 00 /30 192.168.1.28/30
192.168.1. 001 0 0000 27------192.168.1.32/27 划分为两个环回
192.168.1.32/28
192.168.1.48/28
192.168.1. 010 00000 27------192.168.1.64/27 同上
192.168.1.64/28
192.168.1.80/28
192.168.1. 011 00000 27------192.168.1.96/27-------R3不分
192.168.1. 100 00000 27-------192.168.1.128/27
192.168.1.128/28
192.168.1.144/28
192.168.1. 101 00000 27-------192.168.1.160/27----R5不分
192.168.1. 110 00000 27不用
192.168.1. 111 00000 27不用
r1上的配置
R1
[r1-GigabitEthernet0/0/0]ip address 192.168.1.1 30
[r1-GigabitEthernet0/0/1]ip address 192.168.1.5 30
[r1]int LoopBack 0
[r1-LoopBack0]ip address 192.168.1.33 28
[r1]int LoopBack 1
[r1-LoopBack1]ip address 192.168.1.49 28
[r1]ip route-static 0.0.0.0 0 192.168.1.2
[r1]ip route-static 0.0.0.0 0 192.168.1.6
[r1]ip route-static 192.168.1.8 30 192.168.1.2
[r1]ip route-static 192.168.1.12 30 192.168.1.6
[r1]ip route-static 192.168.1.96 27 192.168.1.6
[r1]ip route-static 192.168.1.32 27 NULL 0
[r1]aaa 开启aaa
[r1-aaa]local-user aaa privilege level 15 password cipher 123456 创建本地用户并赋予密码
[r1-aaa]local-user aaa service-type telnet
[r1]user-interface vty 0 4 telnet0-4接口
[r1-ui-vty0-4]authentication-mode aaa 使用aaa
r2上的配置
R2
[r2-GigabitEthernet0/0/0]ip address 192.168.1.2 30
r2-GigabitEthernet0/0/1]ip address 192.168.1.9 30
[r2]int LoopBack 0
[r2-LoopBack0]ip address 192.168.1.65 28
[r2]int LoopBack 1
[r2-LoopBack1]ip address 192.168.1.81 28
[r2]ip route-static 0.0.0.0 0 192.168.1.10
[r2]ip route-static 192.168.1.96 27 192.168.1.10
[r2]ip route-static 192.168.1.96 27 192.168.1.1
[r2]ip route-static 192.168.1.4 30 192.168.1.1
[r2]ip route-static 192.168.1.32 27 192.168.1.1
[r2]ip route-static 192.168.1.64 27 NULL 0 ----防止黑洞
r3上的配置
R3
[r3-GigabitEthernet0/0/0]ip address 192.168.1.6 30
[r3-GigabitEthernet0/0/1]ip address 192.168.1.13 30
[r3-GigabitEthernet2/0/0]ip address 192.168.1.97 27
[r3]dhcp enable----开启dhcp服务
Info: The operation may take a few seconds. Please wait for a moment.done.
[r3]ip policy-based-route
[r3]ip pool aaa 创建地址池
Info: It's successful to create an IP address pool.
[r3-ip-pool-aaa]network 192.168.1.96 mask 27
[r3-ip-pool-aaa]gateway-list 192.168.1.97
[r3-ip-pool-aaa]dns-list 8.8.8.8 114.114.114.114
[r3-GigabitEthernet2/0/0]dhcp select global ---在接口启用
在pc1上启用dhcp
[r3]ip route-static 0.0.0.0 0 192.168.1.14
[r3]ip route-static 192.168.1.64 27 192.168.1.14
[r3]ip route-static 192.168.1.64 27 192.168.1.5
[r3]ip route-static 192.168.1.0 30 192.168.1.5
[r3]ip route-static 192.168.1.32 27 192.168.1.5
r4上的配置
R4
[r4-GigabitEthernet0/0/0]ip address 192.168.1.10 30
[r4-GigabitEthernet0/0/1]ip address 192.168.1.14 30
[r4-GigabitEthernet1/0/0]ip address 192.168.1.17 30
[r4]interface LoopBack 0
[r4-LoopBack0]ip address 192.168.1.129 28
[r4]int LoopBack 1
[r4-LoopBack1]ip address 192.168.1.145 28
[r4]ip route-static 0.0.0.0 0 192.168.1.18
[r4]ip route-static 192.168.1.64 27 192.168.1.9
[r4]ip route-static 192.168.1.96 27 192.168.1.13
[r4]ip route-static 192.168.1.0 30 192.168.1.9
[r4]ip route-static 192.168.1.4 30 192.168.1.13
[r4]ip route-static 192.168.1.32 27 192.168.1.9
[r4]ip route-static 192.168.1.32 27 192.168.1.13
[r4]ip route-static 192.168.1.160 27 192.168.1.18
[r4]ip route-static 192.168.1.160 27 192.168.1.22 preference 70 优先级升高
[r4]ip route-static 192.168.1.0 24 NULL 0
r5上的配置
R5
[r5]ip address 192.168.1.22 30
[r5]ip address 12.0.0.1 24
[r5]int LoopBack 0
[r5-LoopBack0]ip add
[r5-LoopBack0]ip address 192.168.1.161 27
[r5]ip route-static 0.0.0.0 0 12.0.0.2
[r5]ip route-static 192.168.1.0 24 192.168.1.21 preference 70 优先级升高
[r5]acl 2000
[r5-acl-basic-2000]rule permit source 192.168.1.0 0.0.0.255
[r5-GigabitEthernet2/0/0]nat outbound 2000
R5端口映射
进入接口
nat server protocol tcp global current-interface 23 inside 192.168.1.1
r6上的配置
R6
[r6-GigabitEthernet0/0/0]ip address 12.0.0.2 24
[r6]int LoopBack 0
[r6-LoopBack0]ip address 6.6.6.6 24
自己的配置图
流程简述
1.分配ip
2.配置r3上的dhcp并启动
3.写缺省
4.给汇总的网段接口写null 0
5.创建telnet