一.实验拓扑
二.实验要求
实验题目:
1.内网IP地址172.16.0.0/16 合理分配
2.SW1/2之间互为备份
3.VRRP /STP /VLAN /TRUNK均使用
4.所有PC通过DHCP获取IP地址
实验分析:
1.ISP公有地址,有环回存在;
2.内网IP地址172.16.0.0/16,合理分配;
3.SW1与SW2之间互为备份;
4.VLAN/Eth-Trunk/STP/SVI/VRRP技术均使用;
5.所有PC均通过DHCP自动获取IP地址;
6.PC1/3在Vlan1,PC2/4在Vlan2
三.实验步骤
1.内网ip地址进行划分
PC1/3 VLAN1 172.16.1.0 24
PC2/4 VLAN2 172.16.2.0 24
2.创建vlan并在sw1和sw2之间配置etrunk
创建好trunk干道和access
[sw1]vlan 2
interface GigabitEthernet0/0/4
port link-type trunk
port trunk allow-pass vlan 2
interface GigabitEthernet0/0/5
port link-type trunk
port trunk allow-pass vlan
[sw2]vlan 2
interface GigabitEthernet0/0/4
port link-type trunk
port trunk allow-pass vlan 2
interface GigabitEthernet0/0/2
port link-type trunk
port trunk allow-pass vlan 5
[sw3]vlan 2
interface Ethernet0/0/2
port link-type access
port default vlan 2
interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 2
interface GigabitEthernet0/0/2
port link-type trunk
port trunk allow-pass vlan 2
[sw4]vlan 2
interface Ethernet0/0/2
port link-type access
port default vlan 2
interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 2
interface GigabitEthernet0/0/2
port link-type trunk
port trunk allow-pass vlan 2
sw1
[sw1]interface Eth-Trunk 0 --创建Etrunk 0 通道接口
[sw1-Eth-Trunk0]
interface Eth-Trunk0
port link-type trunk
port trunk allow-pass vlan 2
下列通道的对端必须是同一台设备
[sw1-Eth-Trunk0]int g0/0/2 --将物理接口加入通道
[sw1-GigabitEthernet0/0/2] eth-trunk 0
[sw1-GigabitEthernet0/0/2]int g0/0/3 --将物理接口加入通道
[sw1-GigabitEthernet0/0/3]eth-trunk 0
sw2
[sw2]interface Eth-Trunk 0 --创建Etrunk 0 通道接口
[sw2-Eth-Trunk0]
interface Eth-Trunk0
port link-type trunk
port trunk allow-pass vlan 2
[sw2-Eth-Trunk0]int g0/0/2 --将物理接口加入通道
[sw2-GigabitEthernet0/0/2] eth-trunk 0
[sw2-GigabitEthernet0/0/2]int g0/0/3 --将物理接口加入通道
[sw2-GigabitEthernet0/0/3]eth-trunk 0
3.配置STP来定义主备根
sw1
[sw1]stp enable
[sw1]stp region-configuration
[sw1-mst-region]region-name a 所有设备应在一个组内 命名为a
[sw1-mst-region]instance 1 vlan 1
[sw1-mst-region]instance 2 vlan 2
[sw1-mst-region]active region-configuration 激活当前配置
[sw1]stp instance 1 root primary sw1中组1 主根组
[sw1]stp instance 2 root secondary sw1中组2 备份根
sw2
[sw2]stp enable
[sw2]stp region-configuration
[sw2-mst-region]region-name a 所有设备应在一个组内 命名为a
[sw2-mst-region]instance 1 vlan 1
[sw2-mst-region]instance 2 vlan 2
[sw2-mst-region]active region-configuration 激活当前配置
[sw2]stp instance 2 root primary sw2中组2 主根组
[sw2]stp instance 1 root secondary sw2中组1 备份根
sw3
[sw3]stp enable
[sw3]stp region-configuration
[sw3-mst-region]region-name a
[sw3-mst-region]instance 1 vlan 1 vlan划分
[sw3-mst-region]instance 2 vlan 2
[sw3-mst-region]active region-configuration ---激活MST域的配置
sw4
[sw4]stp enable
[sw4]stp region-configuration
[sw4-mst-region]region-name a
[sw4-mst-region]instance 1 vlan 1 vlan划分
[sw4-mst-region]instance 2 vlan 2
[sw4-mst-region]active region-configuration ---激活MST域的配置
通过dis stp bri进行查询是否配置stp成功
4.配置SVI并使用VRRP配置虚拟网关和定义主备设备
sw1
查看:
sw2
sw2同上述可得
5.设置DHCP
sw1
sw2
6.使用SVI为路由器的上行链路配置接口ip地址
sw1
[sw1]vlan 3
[sw1-vlan3]int vlanif 3
[sw1-Vlanif3]ip address 172.16.0.2 255.255.255.252
[sw1-Vlanif3]int g0/0/1
[sw1-GigabitEthernet0/0/1]port link-type access
[sw1-GigabitEthernet0/0/1]port default vlan 3
sw2
[sw2]vlan 3
[sw2-vlan3]int vlanif 3
[sw2-Vlanif3]ip address 172.16.0.6 255.255.255.252
[sw2-Vlanif3]int g0/0/1
[sw2-GigabitEthernet0/0/1]port link-type access
[sw2-GigabitEthernet0/0/1]port default vlan 3
R1
[r1]int g0/0/0
[r1-GigabitEthernet0/0/0]ip add 12.1.1.1 24
[r1-GigabitEthernet0/0/0]int g0/0/1
[r1-GigabitEthernet0/0/1]ip add 172.16.0.1 30
[r1-GigabitEthernet0/0/1]int g0/0/2
[r1-GigabitEthernet0/0/2]ip add 172.16.0.5 30
R2
[r2]int g0/0/0
[r2-GigabitEthernet0/0/0]ip add 12.1.1.2 24
[r2-GigabitEthernet0/0/0]int loo0
[r2-LoopBack0]ip add 6.6.6.6 24
7.启用sw1 sw2 以及r1的ospf并配置公网环境
[r1]ospf 1 router-id 1.1.1.1
default-route-advertise
area 0.0.0.0
network 172.16.0.1 0.0.0.0
network 172.16.0.5 0.0.0.0
[sw1]ospf 1 router-id 2.2.2.2
area 0.0.0.0
network 172.16.0.2 0.0.0.0
network 172.16.1.0 0.0.0.255
network 172.16.2.0 0.0.0.255
[sw2]ospf 1 router-id 3.3.3.3
area 0.0.0.0
network 172.16.0.6 0.0.0.0
network 172.16.1.0 0.0.0.255
network 172.16.2.0 0.0.0.255
r2
r1上配置缺省路由
查看是否全网可通:
实验到这里就结束了!!