网络拓扑即IP划分
AR1
sys
# 分配IP
int g 0/0/0
ip a 192.168.1.18 30
int g 0/0/1
ip a 192.168.1.14 30
interface LoopBack 1
ip a 192.168.1.33 28
interface LoopBack 2
ip a 192.168.1.49 28
#配置路由
q
ip route-static 192.168.1.192 27 192.168.1.17
ip route-static 192.168.1.128 27 192.168.1.17
ip route-static 192.168.1.4 30 192.168.1.17
ip route-static 192.168.1.0 30 192.168.1.17
ip route-static 192.168.1.0 30 192.168.1.13
ip route-static 192.168.1.8 30 192.168.1.13
ip route-static 192.168.1.128 27 192.168.1.13
ip route-static 192.168.1.64 27 192.168.1.13
# 配置缺省
ip route-static 0.0.0.0 0 192.168.1.13
ip route-static 0.0.0.0 0 192.168.1.17
AR2
sys
#配置IP
int g 0/0/0
ip a 192.168.1.17 30
int g 0/0/1
ip a 192.168.1.6 30
interface LoopBack 1
ip a 192.168.1.193 28
interface LoopBack 2
ip a 192.168.1.209 28
#配置路由
q
ip route-static 192.168.1.32 27 192.168.1.18
ip route-static 192.168.1.64 27 192.168.1.18
ip route-static 192.168.1.12 30 192.168.1.18
ip route-static 192.168.1.0 30 192.168.1.5
ip route-static 192.168.1.8 30 192.168.1.5
ip route-static 192.168.1.128 27 192.168.1.5
ip route-static 192.168.1.64 27 192.168.1.5
ip route-static 0.0.0.0 0 192.168.1.5
AR3
sys
# 配置IP
int g 0/0/0
ip a 192.168.1.5 30
int g 0/0/1
ip a 192.168.1.9 30
int g 0/0/2
ip a 192.168.1.2 30
int e 4/0/0
ip a 192.168.1.21 30
interface LoopBack 1
ip a 192.168.1.129 28
interface LoopBack 2
ip a 192.168.1.145 28
# 配置路由
q
ip route-static 192.168.1.192 27 192.168.1.6
ip route-static 192.168.1.16 30 192.168.1.6
ip route-static 192.168.1.32 30 192.168.1.6
ip route-static 192.168.1.32 30 192.168.1.10
ip route-static 192.168.1.12 30 192.168.1.10
ip route-static 192.168.1.64 27 192.168.1.10
ip route-static 0.0.0.0 0 192.168.1.1
ip route-static 0.0.0.0 0 192.168.1.22 preference 61
AR4
sys
# 配置IP
int g 0/0/0
ip a 192.168.1.13 30
int g 0/0/1
ip a 192.168.1.10 30
int g 0/0/2
ip a 192.168.1.65 30
q
# 配置路由
ip route-static 192.168.1.32 27 192.168.1.14
ip route-static 192.168.1.16 30 192.168.1.14
ip route-static 192.168.1.192 27 192.168.1.14
ip route-static 192.168.1.192 27 192.168.1.9
ip route-static 192.168.1.128 27 192.168.1.9
ip route-static 192.168.1.4 30 192.168.1.9
ip route-static 192.168.1.0 30 192.168.1.9
ip route-static 0.0.0.0 0 192.168.1.9
AR5
# 配置IP
int g 0/0/0
ip a 192.168.1.1 30
int g 0/0/1
ip a 8.8.8.9 16
int g 0/0/2
ip a 192.168.1.22 30
q
# 配置路由
ip route-static 192.168.1.32 27 192.168.1.2
ip route-static 192.168.1.64 27 192.168.1.2
ip route-static 192.168.1.128 27 192.168.1.2
ip route-static 192.168.1.192 27 192.168.1.2
ip route-static 192.168.1.16 30 192.168.1.2
ip route-static 192.168.1.12 30 192.168.1.2
ip route-static 192.168.1.8 30 192.168.1.2
ip route-static 192.168.1.4 30 192.168.1.2
ip route-static 0.0.0.0 0 8.8.8.8
ip route-static 192.168.1.0 24 NULL 0
# 配置浮动路由,容灾
ip route-static 192.168.1.32 27 192.168.1.21 preference 61
ip route-static 192.168.1.64 27 192.168.1.21 preference 61
ip route-static 192.168.1.128 27 192.168.1.21 preference 61
ip route-static 192.168.1.192 27 192.168.1.21 preference 61
ip route-static 192.168.1.16 30 192.168.1.21 preference 61
ip route-static 192.168.1.12 30 192.168.1.21 preference 61
ip route-static 192.168.1.8 30 192.168.1.21 preference 61
ip route-static 192.168.1.4 30 192.168.1.21 preference 61
AR6
# 配置IP
int g 0/0/0
ip a 8.8.8.8 16
补充DHCP
dhcp enable
ip pool a
network 192.168.1.64 mask 27
gateway-list 192.168.1.65
int g 0/0/2
dhcp select golbal
测试
补充nat
# 配置nat,保障能正常ping8.8.8.8
nat
acl 2000
rule permit source 192.168.1.0 0.0.0.255
q
# 配置端口映射
int g 0/0/1
nat outbound 2000
nat server protocol tcp global current-interface 23 inside 192.168.1.18 23
补充telnet
AR1上设置
int g 0/0/0
aaa
local-user wcc password cipher 123456
local-user wcc service-type telnet
user-interface vty 0 4
authentication-mode aaa
访问
telnet 8.8.8.9
测试