MGRE综合实验

1.在R5路由器上开启PPP认证,并给接口配置地址。

[R5]aaa  

[R5-aaa]local-user china privilege level 15 password cipher 1949

[R5-aaa]local-user china service-type ppp   /*PPP认证*/  

[R5-aaa]q

[R5]

[R5]interface Serial 3/0/0   

[R5-Serial3/0/0]ip address 15.1.1.1 24      /*给接口配置IP*/

[R5-Serial3/0/0]ppp authentication-mode pap     /*PAP认证*/

[R5-Serial3/0/0]q

[R5]

2.

[R1]interface Serial 4/0/0   

[R1-Serial4/0/0]ip address 15.1.1.2 24       /*给接口配置IP*/

[R1-Serial4/0/0]q

[R1]

在R5路由器的S3/0/0接口上

[R5]interface Serial 3/0/0

[R5-Serial3/0/0]shutdown ---关闭此接口

[R5-Serial3/0/0]undo shutdown ---打开此接口

此时R1pingR5 ping 不通

[R1]interface Serial 4/0/0   

[R1-Serial4/0/0]ppp pap local-user china password cipher 1949

此时R1pingR5 可以ping  通

3.

[R5]interface Serial 3/0/1

[R5-Serial3/0/1]ppp authentication-mode chap ---3/0/1接口上做CHAP认证

[R5-Serial3/0/1]ip address 25.1.1.1 24  ----配置IP地址

在S3/0/0接口上

[R5-Serial3/0/1]shutdown ---关闭此接口

[R5-Serial3/0/1]undo shutdown ---打开此接口

[R2]interface Serial4/0/0    

[R2-Serial4/0/0]ip address 25.1.1.2 24

[R2-Serial4/0/0]q

[R2]

[R2]interface Serial 4/0/0

[R2-Serial4/0/0]ppp chap user china  

[R2-Serial4/0/0]ppp chap password cipher 1949

[R2-Serial4/0/0]q

[R2]

[R5]interface Serial 4/0/0   

[R5-Serial4/0/0]link-protocol hdlc    /*配置封装类型为hdlc*/

Warning:  [Y/N] : y

      

[R5-Serial4/0/0]ip address 35.1.1.1 24

[R5-Serial4/0/0]q

[R5]

[R3]interface Serial 4/0/0   

[R3-Serial4/0/0]link-protocol hdlc

Warning:  [Y/N]:y

[R3-Serial4/0/0]ip address 35.1.1.2 24

[R3-Serial4/0/0]q

[R3]

此时第二步完成

4.给路由器配置接口地址和路由。

[R5]interface GigabitEthernet 0/0/0  

[R5-GigabitEthernet0/0/0]ip address 45.1.1.1 24

[R5-GigabitEthernet0/0/0]q

[R5]

[R5]interface LoopBack 0    

[R5-LoopBack0]ip address 5.5.5.5 24

[R5-LoopBack0]q

[R5]

[R4]interface GigabitEthernet 0/0/0  

[R4-GigabitEthernet0/0/0]ip address 45.1.1.2 24

[R4-GigabitEthernet0/0/0]q

[R4]

[R4]interface GigabitEthernet 0/0/1  

[R4-GigabitEthernet0/0/1]ip address 192.168.4.1 24

[R4-GigabitEthernet0/0/1]q

[R4]

[R3]interface GigabitEthernet 0/0/0  

[R3-GigabitEthernet0/0/0]ip address 192.168.3.1 24

[R3-GigabitEthernet0/0/0]q

[R3]

[R2]interface GigabitEthernet 0/0/0  

[R2-GigabitEthernet0/0/0]ip address 192.168.2.1 24

[R2-GigabitEthernet0/0/0]q

[R2]

[R1]interface GigabitEthernet 0/0/0  

[R1-GigabitEthernet0/0/0]ip address 192.168.1.1 24

[R1-GigabitEthernet0/0/0]q

[R1]

[R1]ip route-static 0.0.0.0 0 15.1.1.1

[R2]ip route-static 0.0.0.0 0 25.1.1.1

[R3]ip route-static 0.0.0.0 0 35.1.1.1

[R4]ip route-static 0.0.0.0 0 45.1.1.1

5分别给R1/R2/R3/R4做NAT

[R1]acl 2000 

[R1-acl-basic-2000]rule permit source 192.168.1.0 0.0.0.255

[R1-acl-basic-2000]q

[R1]

[R1]interface Serial 4/0/0   

[R1-Serial4/0/0]nat outbound 2000

[R1-Serial4/0/0]q

[R1]

[R2]acl 2000 

[R2-acl-basic-2000]rule permit source 192.168.2.0 0.0.0.255

[R2-acl-basic-2000]q

[R2]

[R2]interface Serial 4/0/0   

[R2-Serial4/0/0]nat outbound 2000

[R2-Serial4/0/0]q

[R2]

[R3]acl 2000 

[R3-acl-basic-2000]rule permit source 192.168.3.0 0.0.0.255

[R3-acl-basic-2000]q

[R3]

[R3]interface Serial 4/0/0   

[R3-Serial4/0/0]nat outbound 2000

[R3-Serial4/0/0]q

[R3]

[R4]acl 2000 

[R4-acl-basic-2000]rule permit source 192.168.4.0 0.0.0.255

[R4-acl-basic-2000]q

[R4]

[R4]interface GigabitEthernet 0/0/0  

[R4-GigabitEthernet0/0/0]nat outbound 2000

[R4-GigabitEthernet0/0/0]q

[R4]

此时1、2、5步已完成

6.在R1/R4路由器上做tunnel,完成R1-R4的点到点。

[R1]interface Tunnel 0/0/0 

[R1-Tunnel0/0/0]tunnel-protocol gre     

[R1-Tunnel0/0/0]ip address 10.1.1.1 24   

[R1-Tunnel0/0/0]source 15.1.1.2

[R1-Tunnel0/0/0]description 45.1.1.2

[R1-Tunnel0/0/0]q

[R1]

[R4]interface Tunnel 0/0/0 

[R4-Tunnel0/0/0]tunnel-protocol gre     

[R4-Tunnel0/0/0]ip address 10.1.1.2 24

[R4-Tunnel0/0/0]source 45.1.1.2

[R4-Tunnel0/0/0]description 15.1.1.2

[R4-Tunnel0/0/0]q

[R4]

在R1/R2/R3路由器上

[R1]interface Tunnel 0/0/1   ----建立一个新的接口

[R1-Tunnel0/0/1]tunnel-protocol gre  p2mp ---做一个点到多点接口

[R1-Tunnel0/0/1]source 15.1.1.2  ---源IP

[R1-Tunnel0/0/1]nhrp entry multicast dynamic ---暂不确定的目标IP

[R1-Tunnel0/0/1]nhrp network-id 100----

[R1-Tunnel0/0/1]ip address 10.1.2.1 24----

[R2]interface Tunnel 0/0/0 

[R2-Tunnel0/0/0]ip address 10.1.2.2 24

[R2-Tunnel0/0/0]tunnel-protocol gre p2mp

[R2-Tunnel0/0/0]source Serial 4/0/0 ---指向接口

[R2-Tunnel0/0/0]nhrp entry 10.1.2.1 15.1.1.1 register ---将确定后的IP发送给15.1.1.1进而发送给10.1.2.1

[R2-Tunnel0/0/0]nhrp network-id 100 ---给一个id范围

<R1>display nhrp peer all ---查看nhrp 表

7.在R1/R2/R3/R4上配置RIP

[R4]rip 1

[R4-rip-1]version 2     

[R4-rip-1]un summary      

[R4-rip-1]network 192.168.4.0  

[R4-rip-1]network 10.0.0.0

[R4-rip-1]q

[R4]

[R3]rip 1

[R3-rip-1]version 2     

[R3-rip-1]un summary      

[R3-rip-1]network 192.168.3.0  

[R3-rip-1]network 10.0.0.0

[R3-rip-1]q

[R3]

[R2]rip 1

[R2-rip-1]verify-source

[R2-rip-1]version 2     

[R2-rip-1]un summary      

[R2-rip-1]network 192.168.2.0  

[R2-rip-1]network 10.0.0.0

[R2-rip-1]q

[R2]

[R1]rip   

[R1-rip-1]version 2     

[R1-rip-1]un summary      

[R1-rip-1]network 192.168.1.0  

[R1-rip-1]network 10.0.0.0

[R1-rip-1]q

[R1]

为了使R2和R3相互学到路由表。 

[R1]interface Tunnel 0/0/1

[R1-Tunnel0/0/1]undo rip split-horizon --关闭RIP的水平分割

 

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值