实验综合练习
一. 简答题(共8题,100分)
1. (简答题)
IP地址配置
按照如下拓扑写出配置路由器上两个接口IP地址命令:
1、进入接口命令
2、配置接口IP地址的命令
3、查看接口信息的命令
答案:
<H3C>sys
[H3C]inter g0/0
[]ip add 192.168.10.1 24
dis
2. (简答题)
按照如下拓扑在两台交换机上进行VLAN规划和TRUNK 链路的配置,具体要求如下:
1、写出在交换机上创建VLAN10、VLAN20的命令
2、写出在交换机上将对应的端口加入VLAN10、VLAN20的命令
3、写出将交换机之间互联的链路配置为TUNCK链路的命令
4、写出允许trunk链路上VLAN10 、VLAN20通过的命令。
答案:
vlan 10
vlan 20
quit
inter g0/1
port link-type access
port access vlan 10
quit
inter g0/10
port link-type access
port access vlan 20
quit
inter g0/30
port link-type trunk
port trunk permit vlan 10 20
3. (简答题)
按照如下拓扑写出动态路由RIP的配置命令
1、写出在MST36-20-1上的动态RIP路由配置命令
2、写出在MST36-20-2上的动态RIP路由配置命令
3、写出在MST36-20-5上的动态RIP路由配置命令
答案:
======================
MST36-20-1:
inter g0/1
ip add 100.0.10.2 24
quit
inter g0/0
ip add 100.0.20.1 24
quit
rip
network 100.0.10.0
network 100.0.20.0
========================
MST36-20-:
inter g0/0
ip add 100.0.20.2 24
quit
inter g1/1
ip add 100.0.30.1 24
quit
rip
network 100.0.30.0
network 100.0.20.0
===============================
MST36-20-5:
inter g0/0
ip add 100.0.10.1 24
quit
inter g1/1
ip add 100.0.20.1 24
quit
rip
network 100.0.30.0
network 100.0.40.0
4. (简答题)
按照如下拓扑写出静态路由的配置命令
1、写出在MST36-20-1上的静态路由配置命令
2、写出在MST36-20-2上的静态路由配置命令
3、写出在MST36-20-5上的静态路由配置命令(可以使用默认路由配置)
答案:
==================================
MST36-20-1:
sys
inter g0/1
ip add 100.0.10.2 24
quit
inter g0/0
ip add 100.0.20.1 24
quit
ip router-static 100.0.30.0 255.255.255.0 100.0.20.0
ip router-static 100.0.40.0 255.255.255.0 100.0.20.0
===========================================
MST36-20-2:
inter g0/0
ip add 100.0.20.2 24
quit
inter g1/1
ip add 100.0.30.1 24
quit
ip router-static 100.0.10.0 255.255.255.0 100.0.20.1
ip router-static 100.0.40.0 255.255.255.0 100.0.30.2
=======================================
MST36-20-5:
inter g0/0
ip add 100.0.10.1 24
quit
inter g1/1
ip add 100.0.20.1 24
ip router-static 100.0.10.0 255.255.255.0 100.0.30.1
ip router static 100.0.20.0 255.255.255.0 100.0.30.1
5. (简答题)
按照如下拓扑写出配置链路聚合的命令
1、配置交换机之间的两条链路类型为trunk链路类型
2、在交换机上创建聚合组
3、将端口加入到聚合组中
答案:
=================
SWA:
inter bridge-aggregation 36
inter g0/2
port link-aggregation group 36
port link-type trunk
port trunk permit vlan all
quit
inter g0/1
port link-aggregation group 36
port link-type trunk
port trunk permit vlan all
quit
========================
SWB:
inter bridge-aggregation 36
inter g0/2
port link-aggregation group 36
port link-type trunk
port trunk permit vlan all
quit
inter g0/1
port link-aggregation group 36
port link-type trunk
port trunk permit vlan all
quit
=============================
6. (简答题)
按照如下拓扑OSPF区域,并完成多区域OSPF配置。
1、写出在MST36-20-1上的动态OSPF路由配置命令
2、写出在MST36-20-2上的动态OSPF路由配置命令
3、写出在MST36-20-5上的动态OSPF路由配置命令
答案:
=================
MST36-20-1
[H3C-GigabitEthernet0/0]ip address 100.0.10.1 24
[H3C]interface loopback 0
[H3C-LoopBack0]ip address 1.1.1.1 255.255.255.255
[H3C-LoopBack0]quit
[H3C]router id 1.1.1.1
[H3C]ospf 1
[H3C-ospf-1]area 0
[H3C-ospf-1-area-0.0.0.0]network 1.1.1.1 0.0.0.0
[H3C-ospf-1-area-0.0.0.0]network 100.0.10.0 0.0.0.255
[H3C-ospf-1-area-0.0.0.0]network 100.0.20.0 0.0.0.255
======================
MST36-20-2
[H3C-GigabitEthernet0/0]interface g0/1
[H3C-GigabitEthernet0/1]ip address 100.0.20.1 24
[H3C-GigabitEthernet0/1]interface g0/0
[H3C-GigabitEthernet0/0]ip address 100.0.10.2 24
[H3C]interface loopback 0
[H3C-LoopBack0]ip address 2.2.2.2 255.255.255.0
[H3C-LoopBack0]quit
[H3C]route id 2.2.2.2
[H3C]ospf 100
[H3C-ospf-100]area 0
[H3C-ospf-100-area-0.0.0.0]network 2.2.2.2 0.0.0.0
[H3C-ospf-100-area-0.0.0.0]network 100.0.10.0 0.0.0.255
[H3C-ospf-100-area-0.0.0.0]quit
[H3C-ospf-100]area 1
[H3C-ospf-100-area-0.0.0.1]network 100.0.20.0 0.0.0.255
============================
MST36-20-5
[H3C-GigabitEthernet0/0]ip address 100.0.20.2 24
[H3C]interface loopback 0
[H3C-LoopBack0]ip address 3.3.3.3 255.255.255.255
[H3C-LoopBack0]router id 3.3.3.3
[H3C]ospf 1
[H3C-ospf-1]area 1
[H3C-ospf-1-area-0.0.0.1]network 3.3.3.3 0.0.0.0
[H3C-ospf-1-area-0.0.0.1]network 100.0.10.0 0.0.0.255
[H3C-ospf-1-area-0.0.0.1]network 100.0.20.0 0.0.0.255
7. (简答题)
按找拓扑图写出ACL的配置命令,并把它应用到对应的接口上。
1、创建高级ACL 3000
2、定义第一条rule 规则:不允许来自100.0.20.0 目的地是100.0.30.0网段的IP的数据包通过
3、定义第二条rule 规则:允许来自100.0.40.0 目的地是100.0.30.0网段的IP的数据包通过
4、讲ACL 3000规则应用到对应的接口上。
我的答案:
acl advanced 3000
rule deny ip source 100.0.20.0 0.0.0.255 destination 100.0.30.0 0.0.0.255
rule permit ip source 100.0.40.0 0.0.0.255 destination 100.0.30.0 0.0.0.255
packet-filter 3000 outbound
8. (简答题)
在MST36-20-1的GE0/0号接口上完成NAT server配置,写出命令
1、pc3的IP地址100.0.10.2上的web服务转换为,100.0.10.5 端口号为80的公网地址
2、pc4的IP地址100.0.40.2上的ftp服务转换为,100.0.10.6 端口号为21的公网地址
我的答案:
interface g0/0
nat server protocol tcp global 100.0.10.5 80 inside 100.0.20.2 80
nat server protocol icp global 100.0.10.6 21 inside 100.0.40.2 21