目录
1.实验目的
企业内网全网互通,R3配置DHCP服务为Vlan10和vlan20的域内的PC分配IP地址外网vm虚拟机测试server1的web业务测试。
2. 实验步骤
1.SW2和SW3是普通的二层交换机,划分VLAN 配置Access 和Trunk口
2.SW1是三层交换机,划分VLAN 配置Access 和Trunk口 还想逻辑接口IP地址、DHCP中继和路由信息
3.R3配置DHCP服务为Vlan10和VLAN20的域内的PC分配IP地址
4.Server1架设WEB服务让外网VM2虚拟机能访问server1服务
5.AR1路由器配NAT技术(Easy IP )让VLAN10和VLAN20 的PC能访问运营商PC5 还需将server1的WWW服务映射出去.
6.R2配置回城路由Ip地址信息,以及单臂路由
7.SW4普通的二层交换机,划分VLAN 配置Access 和Trunk口
8.VM2云绑定VM2 ,开虚拟机测试server1的web业务测试
SW2二层配置信息
[SW1]vlan batch 10 20 #划分VLAN 10 20
[SW1]int g0/0/1 #进入G0/0/1接口
[SW1-GigabitEthernet0/0/1]port link-type trunk #接口是trunk链路
[SW1-GigabitEthernet0/0/1]port trunk allow-pass vlan all #方通全VLAN
[SW1-GigabitEthernet0/0/1]int g0/0/2
[SW1-GigabitEthernet0/0/2]port link-type trunk
[SW1-GigabitEthernet0/0/2]port trunk allow-pass vlan 10 20
[SW1-GigabitEthernet0/0/2]int e0/0/1
[SW1-Ethernet0/0/1]port link-type access #接口是access标志
[SW1-Ethernet0/0/1]port default vlan 10 #划分到vlan10
[SW1-Ethernet0/0/1]int e0/0/2
[SW1-Ethernet0/0/2]port link-type access
[SW1-Ethernet0/0/2]port default vlan 20
SW3二层配置信息
[SW2]vlan batch 10 20
[SW2]int g0/0/1
[SW2-GigabitEthernet0/0/1]port link-type trunk
[SW2-GigabitEthernet0/0/1]port trunk allow-pass vlan all
[SW2-GigabitEthernet0/0/1]int e0/0/1
[SW2-Ethernet0/0/1]port link-type access
[SW2-Ethernet0/0/1]port default vlan 10
[SW2-Ethernet0/0/1]int e0/0/2
[SW2-Ethernet0/0/2]port link-type access
[SW2-Ethernet0/0/2]port default vlan 20
SW1三层配置信息
[RSW1]vlan batch 10 20 30 40 50
[RSW1]int g0/0/1
[RSW1-GigabitEthernet0/0/1]port link-type access
[RSW1-GigabitEthernet0/0/1]port default vlan 30
[RSW1-GigabitEthernet0/0/1]int g0/0/2
[RSW1-GigabitEthernet0/0/2]port link-type trunk
[RSW1-GigabitEthernet0/0/2]port trunk allow-pass vlan 10 20
[RSW1-GigabitEthernet0/0/2]int g0/0/3
[RSW1-GigabitEthernet0/0/3]port link-type access
[RSW1-GigabitEthernet0/0/3]port default vlan 40
[RSW1-GigabitEthernet0/0/3]int g0/0/4
[RSW1-GigabitEthernet0/0/4]port link-type access
[RSW1-GigabitEthernet0/0/4]port default vlan 50
[RSW1]int Vlanif 10 #进入vlanif10逻辑接口
[RSW1-Vlanif10]ip address 192.168.10.1 24 #逻辑接口IP地址
[RSW1-Vlanif10]int vlanif 20
[RSW1-Vlanif20]ip address 192.168.20.1 24
[RSW1-Vlanif20]int vlanif 30
[RSW1-Vlanif30]ip address 192.168.30.1 24
[RSW1-Vlanif30]int vlanif 40
[RSW1-Vlanif40]ip address 11.0.0.2 24
[RSW1-Vlanif40]int vlanif 50
[RSW1-Vlanif50]ip address 13.0.0.1 24
[RSW1]dhcp enable #开启DHCP服务
[RSW1]int Vlanif 10
[RSW1-Vlanif10]dhcp select relay #选择中继接口
[RSW1-Vlanif10]dhcp relay server-ip 13.0.0.3 #中继接口IP
[RSW1-Vlanif10]int vlanif 20
[RSW1-Vlanif20]dhcp select relay
[RSW1-Vlanif20]dhcp relay server-ip 13.0.0.3
[RSW1]ip route-static 0.0.0.0 0.0.0.0 11.0.0.1 #上跳默认路由
R3路由器配置信息
[R3]dhcp enable
[R3]int g0/0/0
[R3-GigabitEthernet0/0/0]ip add 13.0.0.3 24 #物理接口ip地址
[R3]ip pool DHCPvlanif10 #命名地址池
[R3-ip-pool-DHCPvlanif10]network 192.168.10.0 mask 24 #地址池网段子网掩码
[R3-ip-pool-DHCPvlanif10]gateway-list 192.168.10.1 #指定网关
[R3-ip-pool-DHCPvlanif10]dns-list 8.8.8.8 2.2.2.2 #DNS服务器
[R3]ip pool DHCPvlanif20
[R3-ip-pool-DHCPvlanif20]network 192.168.20.0 mask 24
[R3-ip-pool-DHCPvlanif20]gateway-list 192.168.20.1
[R3-ip-pool-DHCPvlanif20]dns-list 8.8.8.8 2.2.2.2
[R3-ip-pool-DHCPvlanif10]int g0/0/0
[R3-GigabitEthernet0/0/0]dhcp select global #从g0/0/0接口去找服务
[R3]ip route-static 0.0.0.0 0.0.0.0 13.0.0.1 #上跳默认路由
AR1路由器配置信息
[R1]int g0/0/1
[R1-GigabitEthernet0/0/1]ip add 11.0.0.1 24
[R1-GigabitEthernet0/0/1]int g0/0/0
[R1-GigabitEthernet0/0/0]ip add 12.0.0.1 24
[R1]acl 3000 #高级acl编号3000
[R1-acl-adv-3000]rule permit ip source 192.168.10.0 0.0.0.255 #允许此网段的数据包通过
[R1-acl-adv-3000]rule permit ip source 192.168.20.0 0.0.0.255
[R1-acl-adv-3000]int g0/0/0
[R1-GigabitEthernet0/0/0]nat outbound 3000 #地址池从G0/0/0口转换成外网
[R1-GigabitEthernet0/0/0]nat server protocol tcp global 202.0.0.2 www inside 192.168.30.10
#把server1服务器映射出并转换成公网地址让外网能访问进来
[R1]ip route-static 0.0.0.0 0.0.0.0 12.0.0.2 #默认路由
[R1]ip route-static 192.168.10.1 24 11.0.0.2 #静态路由
[R1]ip route-static 192.168.20.1 24 11.0.0.2
[R1]ip route-static 192.168.30.1 24 11.0.0.2
R2路由器配置信息
[R2]int g0/0/0
[R2-GigabitEthernet0/0/0]ip address 12.0.0.2 24
[R2]int g0/0/3.100 #进入子接口
[R2-GigabitEthernet0/0/3.100]dot1q termination vid 100 #封装dot1q协议改子接口对应vlan100
[R2-GigabitEthernet0/0/3.100]ip address 192.168.100.1 24 #子接口IP 子网
[R2-GigabitEthernet0/0/3.100]arp broadcast enable #开启arp广播
[R2-GigabitEthernet0/0/3.100]int g0/0/3.200
[R2-GigabitEthernet0/0/3.200]dot1q termination vid 200
[R2-GigabitEthernet0/0/3.200]ip address 192.168.110.1 24
[R2-GigabitEthernet0/0/3.200]arp broadcast enable
[R2]ip route-static 202.0.0.2 32 12.0.0.1
SW4二层交换机配置信息
[SW3]int g0/0/1
[SW3-GigabitEthernet0/0/1]port link-type trunk
[SW3-GigabitEthernet0/0/1]port trunk allow-pass vlan 100 200
[SW3]int e0/0/1
[SW3-Ethernet0/0/1]port link-type access
[SW3-Ethernet0/0/1]port default vlan 100
[SW3]int e0/0/2
[SW3-Ethernet0/0/2]port link-type access
[SW3-Ethernet0/0/2]port default vlan 200
3.总结
1.配置静态默认路由要仔细
2.映射IP地址
3.VM虚拟机网卡配置确认