一、题目
1.尽可能减少广播的洪泛范围
2.AR1,SW1,SW2之间启OSPF
3.消除网关OSPFhello的洪泛
4.AR2为互联网设备,不配置路由,vlan2,3,4,5能够访问AR2的回环地址
5.client1能够访问server2的HTTP服务
6.vlan划分如图
7.全网互通
二、配置
1.网络拓扑图
2.ip 配置
设备 | IP |
---|---|
R1 | g0/0/0 10.1.11.1/24 |
g0/0/1 10. 1.14.1/24 | |
g0/0/2 100.1.1.1/24 | |
R2 | g0/0/0 100.1.1.2/24 |
g0/01 200.1.1.1/24 | |
Client1 | 200.1.1.2/24 |
server1 | 10.1.101.1 |
server2 | 10.1.200.1 |
LSW1 | g0/0/1 10.1.114.1/24 |
g0/0/4 10.1.101.254/24 | |
g0/0/4 10.1.11.2/24 | |
LSW4 | g0/0/1 10.1.114.2/24 |
g0/0/4 10.1.200.254/24 | |
g0/0/5 10.1.14.2/24 |
PC地址通过LSW1和LSW4 DHCP地址获取
3.配置
启vlan
SW1
vlan batch 2 3 4 5
SW4
vlan batch 2 to 5
SW2
vlan batch 2 to 5
SW3
vlan batch 2 to 5
SW5
vlan batch 2 to 5
SW6
vlan batch 2 to 5
调整交换机接口
SW2
int g0/0/2
port link-type access
port default vlan 2
int g0/0/3
port link-type access
port default vlan 3
SW3
int g0/0/2
port link-type access
port default vlan 2
SW5
int g0/0/2
port link-type access
port default vlan 4
SW6
int g0/0/3
port link-type access
port default vlan 4
int g0/0/2
port link-type access
port default vlan 5
配置骨干
SW2
int g0/0/1
port link-type trunk
port trunk allow-pass vlan 2 3
SW3
int g0/0/1
port link-type trunk
port trunk allow-pass vlan 2
SW5
int g0/0/1
port link-type trunk
port trunk allow-pass vlan 4
SW6
int g0/0/1
port link-type trunk
port trunk allow-pass vlan 4 5
SW1
int g0/0/2
port link-type trunk
port trunk allow-pass vlan 2 3
int g0/0/3
port link-type trunk
port trunk allow-pass vlan 2
SW4
int g0/0/2
port link-type trunk
port trunk allow-pass vlan 4
int g0/0/3
port link-type trunk
port trunk allow-pass vlan 4 5
SW1与SW4实现三层互联(使用vlan 114)
SW1
vlan 114
int g0/0/1
port link-type trunk
port trunk allow-pass vlan 114
SW4
vlan 114
int g0/0/1
port link-type trunk
port trunk allow-pass vlan 114
SW1
int Vlan 114
ip add 10.1.114.1 24
SW4
int Vlan 114
ip add 10.1.114.2 24
测试连通性
LSW1和LSW4创建与R1的连接
SW1
vlan 11
int g0/0/5
port link-type access
port default vlan 11
int vlan 11
ip add 10.1.11.2 24
R1
int g0/0/0
ip add 10.1.11.1 24
int g0/0/1
ip add 10.1.14.1 24
测试SW1与R1的连接
SW4
vlan 14
int g0/0/5
port link-type access
port default vlan 14
int vlan 14
ip add 10.1.14.2 24
测试与R1的连接
设置vlan2 和vlan3网关
SW1
int Vlan 2
ip add 10.1.2.254 24
q
int Vlan3
ip add 10.1.3.254 24
设置vlan3和vlan4的网关
int Vlan 4
ip add 10.1.4.254 24
q
int Vlan5
ip add 10.1.5.254 24
配置地址池,给pc分配地址
SW1
dhcp enable
ip pool vlan2
network 10.1.2.0 mask 24
gateway-list 10.1.2.254
q
ip pool vlan2
network 10.1.3.0 mask 24
gateway-list 10.1.3.254
int vlan 2
dhcp select global
int vlan 3
dhcp select global
不使用地址池,使用接口IP找到相应的网段,给pc分配地址
SW4
dhcp enable
int vlan 4
dhcp select interface
dhcp server dns-list 8.8.8.8 #添加dns服务器
int vlan 5
dhcp select interface
调整所有pc为DHCP获取IP
查看是否获取成功
下半区域构建完成,接下来构建服务器 server
SW7
vlan batch 101 200
int g0/0/3
port link-type access
port default vlan 101
int g0/0/4
port link-type access
port default vlan 200
int g0/0/1 #防止成环,分别使两个不同vlan走不同线路,vlan101 走LSW7-LSW1 ,vlan200走LSW7-LSW4
port link-type trunk
port trunk allow-pass vlan 101
int g0/0/2
port link-type trunk
port trunk allow-pass vlan 200
SW1
int g0/0/4
port link-type trunk
port trunk allow-pass vlan 101
q
vlan 101
int vlan 101
ip add 10.1.101.254 24
SW4
int g0/0/4
port link-type trunk
port trunk allow-pass vlan 200
q
vlan 200
int vlan 200
ip add 10.1.200.254 24
配置server的IP
配置R1和R2
R1
int g0/0/2
ip add 100.1.1.1 30
R2
int g0/0/0
ip add 100.1.1.2 30
int l0
ip add 8.8.8.8 32
实现ospf协议
SW1
ospf 1 router-id 11.11.11.11
a 0
network 10.1.114.0 0.0.0.255
network 10.1.11.0 0.0.0.255
q
a 1
network 10.1.2.0 0.0.0.255
network 10.1.3.0 0.0.0.255
stub no-summary
q
a 3
network 10.1.100.0 0.0.0.255
stub no-summary
SW4
ospf 1 router-id 4.4.4.4
a 0
network 10.1.114.0 0.0.0.255
network 10.1.14.0 0.0.0.255
q
a 2
network 10.1.4.0 0.0.0.255
network 10.1.5.0 0.0.0.255
stub
stub no-summary
q
a 4
network 10.1.200.0 0.0.0.255
stub no-summary
R1
ospf 1 router-id 1.1.1.1
a 0
network 10.1.11.0 0.0.0.255
network 10.1.14.0 0.0.0.255
q
q
#因为要连外网,所以写一个缺省路由
ip route-static 0.0.0.0 0 100.1.1.2
ospf
default-route-advertise #缺省重发布
q
acl 2000 #构建nat服务
rule permit source 10.1.0.0 0.0.255.255
q
int g0/0/2
nat outbound 2000
构建server的HTTP服务
选择需要共享的文件并启动服务
client1能够访问server2的HTTP服务
做端口映射,方便访HTTP服务
R1
int g0/0/2
nat server protocol tcp global current-interface 80 inside 10.1.200.1 80
Warning:The port 80 is well-known port. If you continue it may cause function fa
ilure.
Are you sure to continue?[Y/N]:y
R2
int g0/0/1
ip add 200.1.1.1 24
配置client1
测试全网互通