(J1-7)科睿信息技术有限公司网络搭建与配置:全局DHCP、中继、VLANIF、静态路由

 

模块一 试题编号:J1-7,科睿信息技术有限公司网络搭建与配置

(1)任务描述

科睿信息技术有限公司是一家新兴的的从事网络集成的科技公司,由于近来互联网技术的快速发展,科睿公司也得到了飞速发展,公司员工数量急剧增加,原有网络已经不能满足业务不断增长的需要。公司高层要求网络部网络管理员小华对公司网络进行重新规划,统一管理,以提升网络性能并增强安全性。

小华经过认真仔细的调研与分析决定,对科睿公司的现有网络的进行扩容,重新规划拓扑结构,其拓扑结构采用比较通用的三层架构(接入层、汇聚层、核心层),为了保证该网络能够安全、正常、稳定的运行,根据业务不同,有生产业务、办公业务、网管业务,将每个业务放在一个单独的广播域里,实现业务分隔。科睿公司的拓扑结构图下图所示:

公司网络IP地址分配如下:

任务一:网络设备选型与互联(4 分)

①根据需要,将网线连接到各网络设备接口上,注意:LSW1的最后一个接口与 R1的GE0/0/1相连,LSW1的GE0/0/1与 LSW2的GE0/0/1接口相连,LSW1的GE0/0/2与 LSW3的GE0/0/1接口相连,LSW1的GE0/0/3与 LSW4的 GE0/0/1接口相连。(4分)

任务二:交换机基本配置(14 分)

①使用eNSP对R1、LSW1、LSW2、LSW3、LSW4进行基本配置,R1主机名配置为R1,LSW1配置主机名为LSW1, LSW2 配置主机名为LSW2,LSW3配置主机名为LSW3,LSW4配置主机名为LSW4。(8分)

R1

sysname R1

LSW1

sysname LSW1

LSW2

sysname LSW2

LSW3

sysname LSW3

LSW4

sysname LSW4

②在 LSW1上配置CONSOLE口登录口令为admin。(6分)

user-interface console 0
authentication-mode password
set authentication password cipher admin

任务三:划分vlan (30分)

①根据需求,在 LSW1 划分vlan,创建 vlan10,vlan20,vlan30,vlan10描述为 shengchanyewu,vlan20描述为 bangongyewu,vlan30描述为 wangguanyewu。(6分)

vlan batch 10 20 30
vlan 10 
description shengchanyewu
vlan 20
description bangongyewu
vlan 30
description wangguanyewu

②在 LSW2划分vlan,创建 vlan10。在 LSW3划分vlan,创建 vlan20。在 LSW4划分vlan,创建 vlan30。在 LSW2上将 E0/0/11-15划分到 vlan10 .在 LSW3上将 E0/0/11-15划分到 vlan20 (5分)。在 LSW4上将 E0/0/11-15划分到 vlan30 (18分)

LSW2

vlan 10port-group vlan10
group-member e 0/0/11 to e0/0/15
port link-type access
port default vlan 10

LSW3

vlan 20port-group vlan20
group-member e 0/0/11 to e0/0/15
port link-type access
port default vlan 20

LSW4

vlan 30port-group vlan30
group-member e 0/0/11 to e0/0/15
port link-type access
port default vlan 30

③将交换机与交换机相连的接口设置为 Trunk。(6分)

LSW1

port-group trunk
group-member g 0/0/1 to g0/0/3
port link-type trunk
port trunk allow-pass vlan 10 20 30

LSW2、LSW3、LSW4上都执行:

interface GigabitEthernet 0/0/1
port link-type trunk
port trunk allow-pass vlan 10 20 30

任务四:配置 DHCP 中继(32 分)

①在 LSW1上给每个VLANIF接口分配IP,对应的VLANIF是每个vlan的网关地址。(3分)

interface Vlanif 1
ip address 192.168.1.2 255.255.255.252
interface Vlanif 10	
ip address 192.168.10.254 255.255.255.0
interface Vlanif 20	
ip address 192.168.11.254 255.255.255.0
interface Vlanif 30	
ip address 192.168.12.254 255.255.255.0

②在 LSW1上开启中继(2分)

dhcp enable
interface vlanif 10
dhcp select relay
dhcp relay server-ip 192.168.1.1
interface vlanif 20
dhcp select relay
dhcp relay server-ip 192.168.1.1
interface vlanif 30
dhcp select relay
dhcp relay server-ip 192.168.1.1

③将R1配置为DHCP服务器,创建vlan 10的地址池的名shengchanyewu,DNS服务器地址为 202.103.96.68,创建 vlan 20的地址池的名bangongyewu,DNS服务器地址为 202.103.96.68,创建vlan 30 的 地 址 池 的 名 wangguanyewu,DNS服务器地址202.103.96.68。(19分)

interface GigabitEthernet0/0/1
 ip address 192.168.1.1 255.255.255.252 
ip route-static 0.0.0.0 0.0.0.0 192.168.1.2
dhcp enable

ip pool shengchanyewu
 gateway-list 192.168.10.254 
 network 192.168.10.0 mask 255.255.255.0 
 dns-list 202.103.96.68 

ip pool bangongyewu
 gateway-list 192.168.11.254 
 network 192.168.11.0 mask 255.255.255.0 
 dns-list 202.103.96.68 

ip pool wangguanyewu
 gateway-list 192.168.12.254 
 network 192.168.12.0 mask 255.255.255.0 
 dns-list 202.103.96.68 

④不允许 DHCP 服务器分配 192.168.10.1-192.168.10.20,192.168.11.1-192.168.11.30这些 IP地址;(2分)

ip pool shengchanyewu 
excluded-ip-address 192.168.10.1 192.168.10.20

ip pool bangongyewu
excluded-ip-address 192.168.11.1 192.168.11.30

interface GigabitEthernet 0/0/1
dhcp select global

⑤全网联通测试,PC通过自动获取IP后能够ping通所有主机。(6分)

PC全部设置成DHCP自动获取
 

PC>ipconfig /renew

IP Configuration

Can't find DHCP server!

Link local IPv6 address...........: fe80::5689:98ff:fe12:36bf
IPv6 address......................: :: / 128
IPv6 gateway......................: ::
IPv4 address......................: 192.168.10.253
Subnet mask.......................: 255.255.255.0
Gateway...........................: 192.168.10.254
Physical address..................: 54-89-98-12-36-BF
DNS server........................: 202.103.96.68
PC>ipconfig /renew

IP Configuration


Link local IPv6 address...........: fe80::5689:98ff:fe08:4d6d
IPv6 address......................: :: / 128
IPv6 gateway......................: ::
IPv4 address......................: 192.168.11.253
Subnet mask.......................: 255.255.255.0
Gateway...........................: 192.168.11.254
Physical address..................: 54-89-98-08-4D-6D
DNS server........................: 202.103.96.68
PC>ipconfig /renew

IP Configuration


Link local IPv6 address...........: fe80::5689:98ff:fe66:645d
IPv6 address......................: :: / 128
IPv6 gateway......................: ::
IPv4 address......................: 192.168.12.253
Subnet mask.......................: 255.255.255.0
Gateway...........................: 192.168.12.254
Physical address..................: 54-89-98-66-64-5D
DNS server........................: 202.103.96.68
PC>ping 192.168.11.253

Ping 192.168.11.253: 32 data bytes, Press Ctrl_C to break
From 192.168.11.253: bytes=32 seq=1 ttl=127 time=62 ms
From 192.168.11.253: bytes=32 seq=2 ttl=127 time=78 ms
From 192.168.11.253: bytes=32 seq=3 ttl=127 time=78 ms

PC>ping 192.168.12.253

Ping 192.168.12.253: 32 data bytes, Press Ctrl_C to break
From 192.168.12.253: bytes=32 seq=1 ttl=127 time=78 ms
From 192.168.12.253: bytes=32 seq=2 ttl=127 time=78 ms
From 192.168.12.253: bytes=32 seq=3 ttl=127 time=109 ms

配置命令:

AR1

system-view

sysname AR1

interface GigabitEthernet 0/0/1
ip address 192.168.1.1 255.255.255.252

ip route-static 0.0.0.0 0.0.0.0 192.168.1.2

dhcp enable

ip pool shengchanyewu
 gateway-list 192.168.10.254 
 network 192.168.10.0 mask 255.255.255.0 
 dns-list 202.103.96.68 

ip pool bangongyewu
 gateway-list 192.168.11.254 
 network 192.168.11.0 mask 255.255.255.0 
 dns-list 202.103.96.68 

ip pool wangguanyewu
 gateway-list 192.168.12.254 
 network 192.168.12.0 mask 255.255.255.0 
 dns-list 202.103.96.68 

ip pool shengchanyewu 
excluded-ip-address 192.168.10.1 192.168.10.20

ip pool bangongyewu
excluded-ip-address 192.168.11.1 192.168.11.30

interface GigabitEthernet 0/0/1
dhcp select global

LSW1

system-view

sysname LSW1

user-interface console 0
authentication-mode password
set authentication password cipher admin

vlan batch 10 20 30
vlan 10 
description shengchanyewu
vlan 20
description bangongyewu
vlan 30
description wangguanyewu

port-group trunk
group-member g 0/0/1 to g0/0/3
port link-type trunk
port trunk allow-pass vlan 10 20 30

interface Vlanif 1
ip address 192.168.1.2 255.255.255.252
interface Vlanif 10	
ip address 192.168.10.254 255.255.255.0
interface Vlanif 20	
ip address 192.168.11.254 255.255.255.0
interface Vlanif 30	
ip address 192.168.12.254 255.255.255.0

dhcp enable
interface vlanif 10
dhcp select relay
dhcp relay server-ip 192.168.1.1
interface vlanif 20
dhcp select relay
dhcp relay server-ip 192.168.1.1
interface vlanif 30
dhcp select relay
dhcp relay server-ip 192.168.1.1

LSW2

system-view

sysname LSW2

vlan 10

port-group vlan10
group-member e 0/0/11 to e0/0/15
port link-type access
port default vlan 10

interface GigabitEthernet 0/0/1
port link-type trunk
port trunk allow-pass vlan 10 20 30

LSW3

system-view

sysname LSW3

vlan 20

port-group vlan20
group-member e 0/0/11 to e0/0/15
port link-type access
port default vlan 20

interface GigabitEthernet 0/0/1
port link-type trunk
port trunk allow-pass vlan 10 20 30

LSW4

system-view

sysname LSW4

vlan 30

port-group vlan30
group-member e 0/0/11 to e0/0/15
port link-type access
port default vlan 30

interface GigabitEthernet 0/0/1
port link-type trunk
port trunk allow-pass vlan 10 20 30
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值