网络工程——HCNA网络技术的简单配置

关于某些 路由器和交换机的配置方法

我要开始表演了

请看下图

在这里插入图片描述

具体操作如下

单臂路由+链路聚合
S1:
vlan 10
[S1-vlan10]q
[S1]int Eth-Trunk 1
[S1-Eth-Trunk1]port link-type trunk
[S1-Eth-Trunk1]port trunk allow-pass vlan 10
[S1-Eth-Trunk1]q
[S1]int g0/0/1
[S1-GigabitEthernet0/0/1]eth-trunk 1
[S1-GigabitEthernet0/0/1]int g0/0/2
[S1-GigabitEthernet0/0/2]eth-trunk 1
[S1-GigabitEthernet0/0/2]q
[S1]int g0/0/3
[S1-GigabitEthernet0/0/3]port link-type access
[S1-GigabitEthernet0/0/3]port default vlan 10
[S1-GigabitEthernet0/0/3]q
[S1]q
记得保存 sa

R1:
[R1]int Eth-Trunk 1
[R1-Eth-Trunk1]undo portswitch
[R1-Eth-Trunk1]q
[R1]int Eth-Trunk 1.10
[R1-Eth-Trunk1.10]dot1q termination vid 10
[R1-Eth-Trunk1.10]q
[R1]int Eth-Trunk 1.10
[R1-Eth-Trunk1.10]ip add 192.168.1.1 24
[R1-Eth-Trunk1.10]arp broadcast enable
[R1-Eth-Trunk1.10]q
[R1]vlan 10
[R1-vlan10]q
[R1] int g 0/0/1
[R1-GigabitEthernet0/0/1]eth-trunk 1
[R1-GigabitEthernet0/0/1]int g 0/0/2
[R1-GigabitEthernet0/0/2]eth-trunk 1
[R1-GigabitEthernet0/0/2]q
[R1]int g 0/0/0
[R1-GigabitEthernet0/0/0]ip add 192.168.2.1 24
[R1-GigabitEthernet0/0/0]q
[R1]q
记得保存 sa
//

OSPF
R1:
[R1]int g0/0/0
[R1-GigabitEthernet0/0/0]ip add 192.168.1.1 24
[R1-GigabitEthernet0/0/0]q
[R1]int LoopBack 1
[R1-LoopBack1]ip add 1.1.1.1 32
[R1-LoopBack1]q
[R1]int g0/0/1
[R1-GigabitEthernet0/0/1]ip add 11.0.0.1 24
[R1-GigabitEthernet0/0/1]q
[R1]ospf router-id 1.1.1.1
[R1-ospf-1]area 1
[R1-ospf-1-area-0.0.0.1]network 192.168.1.0 0.0.0.255
[R1-ospf-1-area-0.0.0.1]network 11.0.0.0 0.0.0.255
[R1-ospf-1-area-0.0.0.1]q
[R1-ospf-1]q
[R1]q
记得保存 sa
R2:
[R2]int g0/0/1
[R2-GigabitEthernet0/0/1]ip add 11.0.0.2 24
[R2-GigabitEthernet0/0/1]q
[R2]int g0/0/2
[R2-GigabitEthernet0/0/2]ip add 10.0.0.1 24
[R2-GigabitEthernet0/0/2]q
[R2]int LoopBack 1
[R2-LoopBack1]ip add 2.2.2.2 32
[R2-LoopBack1]q
[R2]ospf router-id 2.2.2.2
[R2-ospf-1]area 1
[R2-ospf-1-area-0.0.0.1]network 11.0.0.2 0.0.0.255
[R2-ospf-1-area-0.0.0.1]q
[R2-ospf-1]area 0
[R2-ospf-1-area-0.0.0.0]network 10.0.0.1 0.0.0.255
[R2-ospf-1-area-0.0.0.0]q
R3:
[R3]int g0/0/2
[R3-GigabitEthernet0/0/2]ip add 10.0.0.2 24
[R3-GigabitEthernet0/0/2]q
[R3]int g0/0/1
[R3-GigabitEthernet0/0/1]ip add 11.0.0.1 24
[R3-GigabitEthernet0/0/1]q
[R3]int LoopBack 1
[R3-LoopBack1]ip add 3.3.3.3 32
[R3-LoopBack1]q
[R3]ospf router-id 3.3.3.3
[R3-ospf-1]area 0
[R3-ospf-1-area-0.0.0.0]network 10.0.0.2 0.0.0.255
[R3-ospf-1-area-0.0.0.0]q
[R3-ospf-1]area 2
[R3-ospf-1-area-0.0.0.2]network 11.0.0.1 0.0.0.255
[R3-ospf-1-area-0.0.0.2]q
[R3-ospf-1]q
[R3]q
记得保存 sa
R4:
[R4]int g 0/0/1
[R4-GigabitEthernet0/0/1]ip add 11.0.0.2 24
[R4-GigabitEthernet0/0/1]q
[R4]int g 0/0/0
[R4-GigabitEthernet0/0/0]ip add 172.16.0.1 24
[R4-GigabitEthernet0/0/0]q
[R4]int LoopBack 1
[R4-LoopBack1]ip add 4.4.4.4 32
[R4-LoopBack1]q
[R4]ospf router-id 4.4.4.4
[R4-ospf-1]area 2
[R4-ospf-1-area-0.0.0.2]network 11.0.0.2 0.0.0.255
[R4-ospf-1-area-0.0.0.2]network 172.16.0.1 0.0.0.255
[R4-ospf-1-area-0.0.0.2]q
[R4-ospf-1]q
[R4]q
记得保存 sa
//
NAT:

[R1]int g 0/0/0
[R1-GigabitEthernet0/0/0]ip add 172.16.0.1 24
[R1-GigabitEthernet0/0/0]q
[R1]int g 0/0/1
[R1-GigabitEthernet0/0/1]ip add 202.203.85.1 24
[R1-GigabitEthernet0/0/1]q
[R1]acl 2000
[R1-acl-basic-2000]rule 5 permit
[R1-acl-basic-2000]q
[R1]nat address-group 1 172.16.1.100 172.16.1.200
[R1]int g 0/0/1
[R1-GigabitEthernet0/0/1]nat outbound 2000 address-group 1 no-pat
[R1-GigabitEthernet0/0/1]nat static enable
[R1-GigabitEthernet0/0/1]q
[R1]q
记得保存 sa
//
高级ACL:
R1:
[R1]int g 0/0/0
[R1-GigabitEthernet0/0/0]ip add 192.168.0.1 24
[R1-GigabitEthernet0/0/0]q
[R1]int g 0/0/2
[R1-GigabitEthernet0/0/2]ip add 192.168.1.1 24
[R1-GigabitEthernet0/0/2]q
[R1]int g 0/0/1
[R1-GigabitEthernet0/0/1]ip add 10.0.0.1 24
[R1-GigabitEthernet0/0/1]
[R1-GigabitEthernet0/0/1]q
[R1]ip route-static 202.203.85.0 24 10.0.0.2
[R1]ip route-static 202.203.86.0 24 10.0.0.2
[R1]q
记得保存 sa
R2:
[R2]int g 0/0/0
[R2-GigabitEthernet0/0/0]ip add 202.203.85.1 24
[R2-GigabitEthernet0/0/0]q
[R2]int g 0/0/2
[R2-GigabitEthernet0/0/2]ip add 202.203.86.1 24
[R2-GigabitEthernet0/0/2]q
[R2]int g 0/0/1
[R2-GigabitEthernet0/0/1]ip add 10.0.0.2 24
[R2-GigabitEthernet0/0/1]traffic-filter inbound acl 3000
[R2-GigabitEthernet0/0/1]q
[R2]ip route-static 192.168.0.0 255.255.255.0 10.0.0.1
[R2]ip route-static 192.168.1.0 255.255.255.0 10.0.0.1
[R2]acl 3000
[R2-acl-adv-3000]rule 5 deny tcp source 192.168.0.100 0 destination 202.203.86.2
54 0 destination-port eq 80
[R2-acl-adv-3000]rule 10 deny tcp source 192.168.1.100 0 destination 202.203.85.
254 0 destination-port eq ftp
[R2]q
记得保存 sa

标准acl
R1:
[R1]int g 0/0/0
[R1-GigabitEthernet0/0/0]ip add 192.168.0.1 24
[R1-GigabitEthernet0/0/0]q
[R1]int g 0/0/1
[R1-GigabitEthernet0/0/1]ip add 10.0.0.1 24
[R1-GigabitEthernet0/0/1]traffic-filter outbound acl 2000
[R1-GigabitEthernet0/0/1]q
[R1]ip route-static 192.168.1.0 24 10.0.0.2
[R1]acl 2000
[R1-acl-basic-2000]rule 5 deny source 192.168.0.100 0
[R1-acl-basic-2000]rule 10 deny source 192.168.1.100 0
sa
R2:
[R2]int g 0/0/0
[R2-GigabitEthernet0/0/0]ip add 192.168.1.1 24
[R2-GigabitEthernet0/0/0]q
[R2]int g 0/0/1
[R2-GigabitEthernet0/0/1]ip add 10.0.0.2 24
[R2-GigabitEthernet0/0/1]traffic-filter outbound acl 2000
[R2-GigabitEthernet0/0/1]q
[R2]ip route-static 192.168.0.0 24 10.0.0.1
记得保存 sa

  • 14
    点赞
  • 20
    收藏
    觉得还不错? 一键收藏
  • 6
    评论

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论 6
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值