全网最细-适合小白GZ032 信息安全管理与评估赛项-模块1任务一

GZ032 信息安全管理与评估赛项-模块1任务一

这边SW或者AC方面有的地方 不一样的原因是没有插线,只有down,up不一样做的顺序按照IP规划表来做,交换机的vlan10,vlan20,vlan100的IP需要计算,我提前计算好写到表里了。

在这里插入图片描述
在这里插入图片描述
在这里插入图片描述

SW

由于我已经配好了这是删除之前配置的命令

SW>
SW>en #进入特权用户配置模式
SW#dir

-rw-        16.5M           nos.img
-rw-        3.1K            startup.cfg
-rw-        47              vsf.cfg

Drive : flash:
Size:29.5M  Used:17.6M  Available:11.9M  Use:60%
SW#delete startup.cfg
Delete file, Are you sure? (Y/N)?[N]y
Delete file ok.
SW#del vsf.cfg
Delete file, Are you sure? (Y/N)?[N]y
Delete file ok.
SW#reload
Process with reboot? [Y/N] y

开始配置

#改名
CS6200-28X-Pro>en
CS6200-28X-Pro#config
CS6200-28X-Pro(config)#hostname SW
SW(config)#
#根据拓扑创建vlan
SW(config)#vlan 21;22;23;24;25;10;20;30;31;40;41;50;100
#给loopback 1 配置IP
SW(config)#interface loopback 1
SW(config-if-loopback1)#ip add 20.0.0.253 255.255.255.255
#根据拓扑来给vlan配置IP和名字
SW(config-if-loopback1)#q
SW(config)#vlan 21
SW(config-vlan21)#name TO-FW1
SW(config-vlan21)#vlan 22
SW(config-vlan22)#name TO-FW2
SW(config-vlan22)#vlan 23
SW(config-vlan23)#name TO-internet
SW(config-vlan23)#vlan 24
SW(config-vlan24)#name TO-BC
SW(config-vlan24)#vlan 25
SW(config-vlan25)#name TO-BC-N
SW(config-vlan25)#vlan 10
SW(config-vlan10)#name WIFI-vlan10
SW(config-vlan10)#vlan 20
SW(config-vlan20)#name WIFI-vlan20
SW(config-vlan30)#vlan 31   
SW(config-vlan31)#name CW
SW(config-vlan31)#vlan 30   
SW(config-vlan30)#name TO-CW
SW(config-vlan30)#vlan 40
SW(config-vlan40)#name TO-IPV6
SW(config-vlan40)#vlan 41
SW(config-vlan41)#name BG
SW(config-vlan41)#vlan 50
SW(config-vlan50)#name Sales
SW(config-vlan50)#vlan 100
SW(config-vlan100)#name AP-Manage
SW(config-vlan100)#q
SW(config)#
#开始配置IP
SW(config-vlan100)#q
SW(config)#interface vlan 21
SW(config-if-vlan21)#ip address 20.1.0.2 255.255.255.252
SW(config-if-vlan21)#interface vlan 22
SW(config-if-vlan22)#ip address 20.1.1.2 255.255.255.252
SW(config-if-vlan22)# interface vlan 23
SW(config-if-vlan23)#ip address 202.22.1.2 255.255.255.248
SW(config-if-vlan23)# interface vlan 24
SW(config-if-vlan24)#ip address 203.23.1.1 255.255.255.248
SW(config-if-vlan24)# interface vlan 25           
SW(config-if-vlan25)#ip address 20.1.0.17 255.255.255.252
SW(config-if-vlan25)# interface vlan 10
SW(config-if-vlan10)#ip address 172.16.1.254 255.255.254.0
SW(config-if-vlan10)# interface vlan 20
SW(config-if-vlan20)#ip address 172.16.2.62 255.255.255.192
SW(config-if-vlan20)# interface vlan 30
SW(config-if-vlan30)#ip address 20.1.0.5 255.255.255.252   
SW(config-if-vlan30)# interface vlan 31
SW(config-if-vlan31)#ip address 20.1.3.1 255.255.255.128
SW(config-if-vlan31)# interface vlan 40
SW(config-if-vlan40)#ip address 20.1.0.9 255.255.255.252
SW(config-if-vlan40)# interface vlan 41
SW(config-if-vlan41)#ip address 20.1.41.1 255.255.255.0 
SW(config-if-vlan41)# interface vlan 50
SW(config-if-vlan50)#ip address 20.1.50.1 255.255.255.0
SW(config-if-vlan50)#ipv6 address 2001:DA8:50::1/64
SW(config-if-vlan50)# interface vlan 100
SW(config-if-vlan100)ip address 172.16.2.126 255.255.255.192
SW(config-if-vlan100)#q
#给vlan分配端口
#将接口1-2创建一个集聚接口分配到21;22;23
SW(config)#interface ethernet 1/0/1-2
SW(config-if-port-range)#Jul 12 10:34:12:000 2024 SW MODULE_PORT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Port-Channel1, changed state to UP
SW(config-if-port-range)#port-group 1 mode active 
SW(config-if-port-range)#interface port-channel 1
#将port-channel 1分配给了所有vlan
SW(config-if-port-channel1)#switchport mode trunk 
Set the port Port-Channel1 mode Trunk successfully
SW(config-if-port-channel1)#Jul 12 10:36:09:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan10,changed state to UP
Jul 12 10:36:09:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan20,changed state to UP
Jul 12 10:36:09:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan21,changed state to UP
Jul 12 10:36:10:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan22,changed state to UP
Jul 12 10:36:10:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan23,changed state to UP
Jul 12 10:36:10:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan24,changed state to UP
Jul 12 10:36:10:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan25,changed state to UP
Jul 12 10:36:10:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan30,changed state to UP
Jul 12 10:36:10:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan31,changed state to UP
Jul 12 10:36:10:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan40,changed state to UP
Jul 12 10:36:10:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan41,changed state to UP
Jul 12 10:36:10:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan50,changed state to UP
Jul 12 10:36:10:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan100,changed state to UP
#限制port-channel 1只配置到vlan21.vlan22.vlan23
SW(config-if-port-channel1)#switchport trunk allowed vlan 21;22;23
set the trunk port Port-Channel1 allowed vlan successfully.
SW(config-if-port-channel1)#Jul 12 10:37:15:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan10,changed state to DOWN
Jul 12 10:37:15:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan20,changed state to DOWN
Jul 12 10:37:15:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan24,changed state to DOWN
Jul 12 10:37:15:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan25,changed state to DOWN
Jul 12 10:37:15:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan30,changed state to DOWN
Jul 12 10:37:15:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan31,changed state to DOWN
Jul 12 10:37:15:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan40,changed state to DOWN
Jul 12 10:37:15:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan41,changed state to DOWN
Jul 12 10:37:15:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan50,changed state to DOWN
Jul 12 10:37:15:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan100,changed state to DOWN
SW(config-if-port-channel1)#q
#开始配置其他的
SW(config)#interface ethernet 1/0/23-24
SW(config-if-port-range)#switchport access vlan 24 
Set the port Ethernet1/0/23 access vlan 24 successfully
Set the port Ethernet1/0/24 access vlan 24 successfully
SW(config-if-port-range)#q           
SW(config)#port-group 2
SW(config)#interface ethernet 1/0/18-19
SW(config-if-port-range)#port-group 2 mode on
SW(config-if-port-range)#interface port-channel 2              
SW(config-if-port-channel2)#switchport access vlan 25
Set the port Port-Channel2 access vlan 25 successfully
SW(config-if-port-channel2)#interface ethernet 1/0/4
SW(config-if-ethernet1/0/4)#switchport access vlan 30 
Set the port Ethernet1/0/4 access vlan 30 successfully                  
SW(config-if-ethernet1/0/4)#interface ethernet 1/0/10-12
SW(config-if-port-range)#switchport access vlan 31
Set the port Ethernet1/0/10 access vlan 31 successfully
Set the port Ethernet1/0/11 access vlan 31 successfully
Set the port Ethernet1/0/12 access vlan 31 successfully
#给10号口配置loopback
SW(config-if-port-range)#interface ethernet 1/0/10
SW(config-if-ethernet1/0/10)#loopback
SW(config-if-ethernet1/0/10)#Jul 12 10:47:34:000 2024 SW MODULE_PORT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet1/0/10, changed state to UP
SW(config-if-ethernet1/0/10)#Jul 12 10:47:35:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan31,changed state to UP
SW(config-if-ethernet1/0/10)#interface ethernet 1/0/5
SW(config-if-ethernet1/0/5)#switchport access vlan 40
Set the port Ethernet1/0/5 access vlan 40 successfully
SW(config-if-ethernet1/0/5)#interface ethernet 1/0/6-9
SW(config-if-port-range)#switchport access vlan 41
Set the port Ethernet1/0/6 access vlan 41 successfully
Set the port Ethernet1/0/7 access vlan 41 successfully
Set the port Ethernet1/0/8 access vlan 41 successfully
Set the port Ethernet1/0/9 access vlan 41 successfully
SW(config-if-port-range)#
SW(config-if-port-range)#
SW(config-if-port-range)#interface ethernet 1/0/13-14
SW(config-if-port-range)#switchport access vlan 50   
Set the port Ethernet1/0/13 access vlan 50 successfully
Set the port Ethernet1/0/14 access vlan 50 successfully
SW(config-if-port-range)#interface ethernet 1/0/13   
SW(config-if-ethernet1/0/13)#loopback
SW(config-if-ethernet1/0/13)#Jul 12 10:49:41:000 2024 SW MODULE_PORT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet1/0/13, changed state to UP
SW(config-if-ethernet1/0/13)#Jul 12 10:49:42:000 2024 SW DEFAULT/5/:%LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan50,changed state to UP
SW(config-if-ethernet1/0/13)#dad ns for 2001:da8:50::1 is looped-back
SW(config-if-ethernet1/0/13)#interface ethernet 1/0/20
SW(config-if-ethernet1/0/20)#switchport mode trunk 
Set the port Ethernet1/0/20 mode Trunk successfully
SW(config-if-ethernet1/0/20)#switchport trunk allowed vlan 10;20;100
set the trunk port Ethernet1/0/20 allowed vlan successfully.
SW(config-if-ethernet1/0/20)#switchport trunk native vlan 100
Set the port Ethernet1/0/20 native vlan 100 successfully
SW(config-if-ethernet1/0/20)#
SW(config-if-ethernet1/0/20)#

验证

在这里插入图片描述

在这里插入图片描述

AC

#清除配置
AC>en
AC#dir

-rw-    156     dh512.pem
-rw-    928     wssl2_cert.pem
-rw-    48      default_license.lic
-rw-    916     wssl2_key.pem
-rw-    24      portal-locale.cfg
-rw-    2.6K    startup.cfg
-rw-    245     dh1024.pem
-rw-    156     wsdh512.pem
-rw-    22.1M   nos.img
-rw-    245     wsdh1024.pem


Drive : flash:
Size:29.5M  Used:23.4M  Available:6.1M  Use:79%
AC#del startup.cfg
Delete file, Are you sure? (Y/N)?[N]y
Delete file ok.
AC#reload
Process with reboot? [Y/N] y
#改名为AC
DCWS-6028-Pro>en
DCWS-6028-Pro#config 
DCWS-6028-Pro(config)#h
hardware                   help                       history                    
hostname                   
DCWS-6028-Pro(config)#hostname AC
AC(config)#
AC(config)#vlan 30;31;40;60;61;100
AC(config)#vlan 30
AC(config-vlan30)#name TO-CW
AC(config-vlan30)#vlan 31
AC(config-vlan31)#name CW
AC(config-vlan31)#vlan 40
AC(config-vlan40)#name TO-IPV6
AC(config-vlan40)#vlan 60
AC(config-vlan60)#name sales
AC(config-vlan60)#vlan 61 
AC(config-vlan61)#name BG
AC(config-vlan61)#vlan 100 
AC(config-vlan100)#name TO-FW
AC(config-vlan100)#interface vlan 30
AC(config-if-vlan30)#ip add 20.1.0.6 255.255.255.252
AC(config-if-vlan30)#interface vlan 31
AC(config-if-vlan31)#ip add 20.1.3.129 255.255.255.128           
AC(config-if-vlan31)#interface vlan 40
AC(config-if-vlan40)#ip add 20.1.0.10 255.255.255.252
AC(config-if-vlan40)#interface vlan 60
AC(config-if-vlan60)#ip add 20.1.30.1 255.255.255.0
AC(config-if-vlan60)#ipv6 address 2001:DA8:60::1/64
AC(config-if-vlan60)#interface vlan 61 
AC(config-if-vlan61)#ip add 20.1.61.1 255.255.255.0
AC(config-if-vlan61)#interface vlan 100
AC(config-if-vlan100)#ip add 20.1.0.13 255.255.255.252
AC(config-if-vlan100)#q
AC(config)#interface loopback 1
AC(config-if-loopback1)#ip add 20.1.1.254 255.255.255.255
AC(config-if-loopback1)#interface ethernet 1/0/4
AC(config-if-ethernet1/0/4)#switchport access vlan 30
Set the port Ethernet1/0/4 access vlan 30 successfully
AC(config-if-ethernet1/0/4)#interface ethernet 1/0/6-9
AC(config-if-port-range)#switchport access vlan 31
Set the port Ethernet1/0/6 access vlan 31 successfully
Set the port Ethernet1/0/7 access vlan 31 successfully
Set the port Ethernet1/0/8 access vlan 31 successfully
Set the port Ethernet1/0/9 access vlan 31 successfully
AC(config-if-port-range)#interface ethernet 1/0/6  
AC(config-if-ethernet1/0/6)#loopback
AC(config-if-ethernet1/0/6)#interface ethernet 1/0/5
AC(config-if-ethernet1/0/5)#switchport access vlan 40
Set the port Ethernet1/0/5 access vlan 40 successfully
AC(config-if-ethernet1/0/5)#interface ethernet 1/0/13-14
AC(config-if-port-range)#switchport access vlan 60
Set the port Ethernet1/0/13 access vlan 60 successfully
Set the port Ethernet1/0/14 access vlan 60 successfully
AC(config-if-port-range)#interface ethernet 1/0/15-18
AC(config-if-port-range)#switchport access vlan 61   
Set the port Ethernet1/0/15 access vlan 61 successfully
Set the port Ethernet1/0/16 access vlan 61 successfully
Set the port Ethernet1/0/17 access vlan 61 successfully
Set the port Ethernet1/0/18 access vlan 61 successfully
AC(config-if-port-range)#interface ethernet 1/0/15   
AC(config-if-ethernet1/0/15)#loopback
AC(config-if-port-range)#q
AC(config)#port-group 1
AC(config)#interface ethernet 1/0/21-22
AC(config-if-port-range)#port-group 1 mode on 
AC(config-if-port-range)#interface port-channel 1
AC(config-if-port-channel1)#switchport access vlan 100
Set the port Port-Channel1 access vlan 100 successfully
AC(config-if-port-channel1)#q
AC(config)#q
AC#wr
Confirm to overwrite current startup-config configuration [Y/N]:y

验证

在这里插入图片描述

这里接口很多没有UP的原因是没有插线,下一期写任务2第1-10题的时候给大家看插线的插线

WAF

在这里插入图片描述

在这里插入图片描述

BC

账号:admin

初始密码:admin*PWD

在这里插入图片描述

在这里插入图片描述

在这里插入图片描述

在这里插入图片描述

在这里插入图片描述

FW

新建一个trst1的安全域和untrust1的安全域,untrust1要添加WAN安全域和启用攻击防护

在这里插入图片描述

看题目发现,这里的集聚接口要LACP动态协商
在这里插入图片描述
在这里插入图片描述

验证

在这里插入图片描述

插完线的状态

在这里插入图片描述

这里把题和答案给大家,大家就不用去网上找了
我用夸克网盘分享了「GZ032 信息安全管理与评估赛」,点击链接即可保存。打开「夸克APP」,无需下载在线播放视频,畅享原画5倍速,支持电视投屏。
链接:https://pan.quark.cn/s/8829a9c95849

  • 10
    点赞
  • 1
    收藏
    觉得还不错? 一键收藏
  • 打赏
    打赏
  • 0
    评论

“相关推荐”对你有帮助么?

  • 非常没帮助
  • 没帮助
  • 一般
  • 有帮助
  • 非常有帮助
提交
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包

打赏作者

TiAmo_睡不醒

你的鼓励将是我创作的最大动力

¥1 ¥2 ¥4 ¥6 ¥10 ¥20
扫码支付:¥1
获取中
扫码支付

您的余额不足,请更换扫码支付或充值

打赏作者

实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值