192.168.1.0/24划分ip地址
R:192.168.1.0/27
划分给骨干线路
192.168.1.0/30 192.168.1.4/30 192.168.1.12/30 192.168.1.16/30
192.168.1.20/30 192.168.1.24/30 192.168.1.28/30
R1:192.168.1.32 /27 192.168.1.32/28 192.168.1.48/28
R2:192.168.1.64/27 192.168.1.64/28 192.168.1.80/28
R3:192.168.1.96/27 192.168.1.96/28 192.168.1.112/28
R4:192.168.1.128/27 192.168.1.128/28 192.168.1.144/28
R5:192.168.1.160/27 192.168.1.160/28 192.168.1.176/28
1.接口地址配置ip
[R1-GigabitEthernet0/0/0]ip address 192.168.1.1 30
[R1-GigabitEthernet0/0/1]ip address 192.168.1.5 30
[R1-LoopBack0]ip address 192.168.1.33 28
[R1-LoopBack1]ip address 192.168.1.49 28
[R2-GigabitEthernet0/0/0]ip address 192.168.1.2 30
[R2-GigabitEthernet0/0/1]ip address 192.168.1.9 30
[R2-LoopBack0]ip address 192.168.1.65 28
[R2-LoopBack1]ip address 192.168.1.81 28
[R3-GigabitEthernet0/0/0]ip address 192.168.1.6 30
[R3-GigabitEthernet0/0/1]ip address 192.168.1.13 30
[R3-GigabitEthernet0/0/2]ip address 192.168.1.97 27
[R4-GigabitEthernet0/0/0]ip address 192.168.1.10 30
[R4-GigabitEthernet0/0/1]ip address 192.168.1.14 30
[R4-GigabitEthernet0/0/2]ip address 192.168.1.17 30
[R4-GigabitEthernet4/0/0]ip address 192.168.1.21 30
[R4-LoopBack0]ip address 192.168.1.129 28
[R4-LoopBack1]ip address 192.168.1.145 28
[R5-GigabitEthernet0/0/0]ip address 192.168.1.18 30
[R5-GigabitEthernet0/0/1]ip address 12.0.0.1 24
[R5-GigabitEthernet0/0/2]ip address 192.168.1.22 30[R5-LoopBack0]ip address 192.168.1.161 27
[ISP-GigabitEthernet0/0/0]ip address 12.0.0.2 24
[ISP-LoopBack0]ip address 1.1.1.1 24
2.配置电脑的dhcp
[R3]dhcp enable
[R3]ip pool zjl
[R3-ip-pool-zjl]network 192.168.1.96 mask 27
[R3-ip-pool-zjl]gateway-list 192.168.1.97
去接口调用开启
[R3-GigabitEthernet0/0/2]dhcp select global
3.配置缺省路由和静态路由
[R5]ip route-static 0.0.0.0 0.0.0.0 12.0.0.2
[R4]ip route-static 0.0.0.0 0 192.168.1.22 preference 61
[R4]ip route-static 0.0.0.0 0 192.168.1.18
[R2]IP route-static 0.0.0.0 0 192.168.1.10
[R1]ip route-static 0.0.0.0 0 192.168.1.6
[R1]IP route-static 0.0.0.0 0 192.168.1.2
[R3]ip route-static 0.0.0.0 0 192.168.1.14
[R1]ip route-static 192.168.1.8 30 192.168.1.2
[R1]ip route-static 192.168.1.12 30 192.168.1.6
[R1]ip route-static 192.168.1.64 27 192.168.1.2
[R1]ip route-static 192.168.1.96 27 192.168.1.6
[R1]ip route-static 192.168.1.128 27 192.168.1.2
[R1]ip route-static 192.168.1.128 27 192.168.1.6
[R2]ip route-static 192.168.1.32 27 192.168.1.1
[R2]ip route-static 192.168.1.4 30 192.168.1.1
[R2]ip route-static 192.168.1.96 27 192.168.1.1
[R2]ip route-static 192.168.1.128 27 192.168.1.10
[R2]ip route-static 192.168.1.12 30 192.168.1.10
[R3]ip route-static 192.168.1.0 30 192.168.1.5
[R3]ip route-static 192.168.1.32 27 192.168.1.5
[R3]ip route-static 192.168.1.64 27 192.168.1.5
[R3]ip route-static 192.168.1.64 27 192.168.1.14
[R3]ip route-static 192.168.1.8 30 192.168.1.14
[R4]ip route-static 192.168.1.0 255.255.255.252 192.168.1.9
[R4]ip route-static 192.168.1.0 255.255.255.252 192.168.1.13
[R4]ip route-static 192.168.1.4 255.255.255.252 192.168.1.13
[R4]ip route-static 192.168.1.32 255.255.255.224 192.168.1.9
[R4]ip route-static 192.168.1.32 255.255.255.224 192.168.1.13
[R4]ip route-static 192.168.1.64 255.255.255.224 192.168.1.9
[R4]ip route-static 192.168.1.96 255.255.255.224 192.168.1.13
[R5]ip route-static 0.0.0.0 0.0.0.0 12.0.0.2
[R5]ip route-static 192.168.1.0 255.255.255.252 192.168.1.17
[R5]ip route-static 192.168.1.4 255.255.255.252 192.168.1.17
[R5]ip route-static 192.168.1.8 255.255.255.252 192.168.1.17
[R5]ip route-static 192.168.1.12 255.255.255.252 192.168.1.17
[R5]ip route-static 192.168.1.32 255.255.255.224 192.168.1.17
[R5]ip route-static 192.168.1.64 255.255.255.224 192.168.1.17
[R5]ip route-static 192.168.1.96 255.255.255.224 192.168.1.17
[R5]ip route-static 192.168.1.128 255.255.255.224 192.168.1.17
ip route-static 192.168.1.0 255.255.255.252 192.168.1.21 p 61
ip route-static 192.168.1.4 255.255.255.252 192.168.1.21 p 61
ip route-static 192.168.1.8 255.255.255.252 192.168.1.21 p 61
ip route-static 192.168.1.12 255.255.255.252 192.168.1.21 p 61
ip route-static 192.168.1.32 255.255.255.224 192.168.1.21 p 61
ip route-static 192.168.1.64 255.255.255.224 192.168.1.21 p 61
ip route-static 192.168.1.96 255.255.255.224 192.168.1.21 p 61
ip route-static 192.168.1.128 255.255.255.224 192.168.1.21 p 61
此时全网可达
4.配置nat
[R5]acl 2000
[R5-acl-basic-2000]rule permit source 192.168.1.0 0.0.0.255
[R5-GigabitEthernet0/0/1]nat outbound 2000
5.配置空接口防止环路
[R1]ip route-static 192.168.1.32 27 NULL 0
[R2]ip route-static 192.168.1.64 27 NULL 0
[R4]ip route-static 192.168.1.128 27 NULL 0
6.在R1开启远程登录
aaa
local -user root priviledge level 15 password cipher 123456
local -user root service-type telnet
user int vty 0 4
authentication-mode aaa
7.在R5路由器做端口映射
nat server protocol tcp global current-interface 23 in inside 192.168.1.33 23