项目场景:
出接口路由通过pppoe获取地址
主机通过dhcp获取地址
实现主机通信百度
实搭拓扑图:
具体操作:
R1:
内网接口:
[Huawei-Vlanif1]int Vlanif 1 //
[Huawei-Vlanif1]ip address 192.168.1.1 24
[Huawei-Vlanif1]q
缺省路由:
[Huawei]ip route-static 0.0.0.0 0 dialer1
配置进行NAT的acl:
[Huawei]acl number 2000
[Huawei-acl-basic-2000]rule 5 permit source 192.168.1.0 0.0.0.255
[Huawei-acl-basic-2000]q
PPPOE虚拟接口:
[Huawei]interface Dialer 1
[Huawei-Dialer 1 ]link-protocol ppp
[Huawei-Dialer 1]ip address ppp-negotiate /通过ppp协商阶段获取ip地址/
[Huawei-Dialer 1]ppp pap local-user garliccc password simple dasao
[Huawei-Dialer 1]dialer user garliccc (和pppoe 服务端的名字保持一致)
[Huawei]dialer bundle 2
[Huawei]nat outbound 2000
将e0/0/8和dialer 1口进行绑定关联:
interface e0/0/8
pppoeclient dialbundlenumber 2
DHCP 配置:
[Huawei]dhcp enable
[Huawei]ip pool aa
[Huawei-ip-pool-aa]network 192.168.1.0 mask 24
[Huawei-ip-pool-aa]gateway-list 192.168.1.1
[Huawei-ip-pool-aa]dns-list 114.114.114.114 8.8.8.8
[Huawei-ip-pool-aa]q
[Huawei]int Vlanif 1
[Huawei-Vlanif1]dhcp select global
优化:更改数据封装的MTU值:
int dialer 1
mtu 1492 (因为以太网接口mtu默认是1500 字节,pppoe和ppp占8字节)
R2:
百度网关:
[Huawei]int GigabitEthernet 0/0/1
[Huawei-GigabitEthernet0/0/1]ip ad
[Huawei-GigabitEthernet0/0/1]ip address 9.9.9.1 24
建地址池:
[Huawei]ip pool pool1
[Huawei-ip-pool-pool1]network 202.1.1.0 mask 24
[Huawei-ip-pool-pool1]gateway-list 202.1.1.2
[Huawei-ip-pool-pool1]q
pppoe用户名 密码:
[Huawei]aaa
[Huawei-aaa]local-user garliccc password cipher dasao
[Huawei-aaa]local-user garliccc service-type ppp
[Huawei-aaa]q
虚拟拨入接口:
[Huawei]int Virtual-Template 1
[Huawei-Virtual-Template1]ppp authentication-mode pap
[Huawei-Virtual-Template1]remote address pool pool1
[Huawei-Virtual-Template1]ip address 202.1.1.2 255.255.255.0
[Huawei-Virtual-Template1]q
将虚拟接口virtual-Template1 和物理接口关联:
[Huawei]interface GigabitEthernet 0/0/0
[Huawei-GigabitEthernet0/0/0]pppoe-server bind virtual-template 1
完成效果:
出口路由通过pppoe拨号获得ip地址,内网通过dhcp获取到ip地址,实现通信。