实验拓扑
实验要求
1、R6为Isp,接口rP地址均为公有地址,该设备只能配置P地址,之后不能冉对其进行任何配置﹔
2、R1-R5为局域网,私有IP地址192,168.1.0/24,请合理分配;
3、R1、R2、R4,各有两个环回rp地址﹔R5,R6各有一个环回地址﹔所有路由器上环回均代表连接用户的接口;
4、R3下面的两台Pc通过DHcP自动获取IP地址;
5、选路最佳,路由表尽量小,避免环路;
6、R1-R5均可以访问R6的环回;
7、在R1上配置telnet服务,使R6能通过R5的公有地址telnet到R1上;
8、R4与R5正常通过1000M链路,故障时通过100M链路;
实验思路
- IP划分:
分析:考虑环回地址,要汇总方便,先分成子网掩码为27的网段,后续在分成28的小网段,这样写路由条目会减少;采用30掩码作为主路地址,节约IP资源:
IP划分如下:
L0:192.168.1.32/28
L1:192.168.1.48/28
192.168.1.64/27----R2环回
L0: 192.168.1,64/28
L1:192.168.1.80/28
192.168.1.96/27----R3
192.168.1.128/27----R4环回
L0:192.168.1.128/28
L1:192.168.1.144/28
192.168.1.160/27----R4环回 - 配置DHCP,使r3下面两台pc自动获取IP地址;
- 编写所有路由(外网除外);
- 配置缺省路由,实现到1.0.0.0/24互通,可以通过动态NAT实现;
- 汇总,防环,防黑洞(空接口);
- 做备份,修改路由优先级;
- 测试,;
- 在r1上配置telnet,在r5上用静态NAT进行转化,通过nat server发布到r5的0/0/2接口
实验过程
- IP配置如下:
r1:
Interface IP Address/Mask Physical Protocol
GigabitEthernet0/0/0 192.168.1.1/30 up up
GigabitEthernet0/0/1 192.168.1.5/30 up up
GigabitEthernet0/0/2 unassigned down down
LoopBack0 192.168.1.33/28 up up(s)
LoopBack1 192.168.1.49/28 up up(s)
NULL0 unassigned up up(s)
r2:
Interface IP Address/Mask Physical Protocol
GigabitEthernet0/0/0 192.168.1.2/30 up up
GigabitEthernet0/0/1 192.168.1.9/30 up up
GigabitEthernet0/0/2 unassigned down down
LoopBack0 192.168.1.65/28 up up(s)
LoopBack1 192.168.1.81/28 up up(s)
NULL0 unassigned up up(s)
r3:
Interface IP Address/Mask Physical Protocol
GigabitEthernet0/0/0 192.168.1.6/30 up up
GigabitEthernet0/0/1 192.168.1.13/30 up up
GigabitEthernet0/0/2 192.168.1.97/27 up up
NULL0 unassigned up up(s)
r4:
Interface IP Address/Mask Physical Protocol
GigabitEthernet0/0/0 192.168.1.10/30 up up
GigabitEthernet0/0/1 192.168.1.14/30 up up
GigabitEthernet0/0/2 192.168.1.21/30 up up
GigabitEthernet4/0/0 192.168.1.17/30 up up
LoopBack0 192.168.1.129/28 up up(s)
LoopBack1 192.168.1.145/28 up up(s)
NULL0 unassigned up up(s)
r5:
Interface IP Address/Mask Physical Protocol
GigabitEthernet0/0/0 192.168.1.22/30 up up
GigabitEthernet0/0/1 192.168.1.18/30 up up
GigabitEthernet0/0/2 12.0.0.1/24 up up
LoopBack0 192.168.1.161/27 up up(s)
NULL0 unassigned up up(s) - DHCP配置
成功 - 所有IP完成后开始添加路由
r1:
0.0.0.0/0 Static 60 0 RD 192.168.1.2 GigabitEthernet
0/0/0
Static 60 0 RD 192.168.1.6 GigabitEthernet
192.168.1.0/30 Direct 0 0 D 192.168.1.1 GigabitEthernet
0/0/0
192.168.1.4/30 Direct 0 0 D 192.168.1.5 GigabitEthernet
0/0/1
192.168.1.5/32 Direct 0 0 D 127.0.0.1 GigabitEthernet
0/0/1
192.168.1.7/32 Direct 0 0 D 127.0.0.1 GigabitEthernet
0/0/1
192.168.1.8/30 Static 60 0 RD 192.168.1.2 GigabitEthernet
0/0/0
192.168.1.12/30 Static 60 0 RD 192.168.1.6 GigabitEthernet
0/0/1
192.168.1.16/30 Static 60 0 RD 192.168.1.6 GigabitEthernet
0/0/1
Static 60 0 RD 192.168.1.2 GigabitEthernet
0/0/0
192.168.1.20/30 Static 60 0 RD 192.168.1.2 GigabitEthernet
0/0/0
Static 60 0 RD 192.168.1.6 GigabitEthernet
0/0/1
192.168.1.32/27 Static 60 0 D 0.0.0.0 NULL0
192.168.1.32/28 Direct 0 0 D 192.168.1.33 LoopBack0
192.168.1.48/28 Direct 0 0 D 192.168.1.49 LoopBack1
192.168.1.64/27 Static 60 0 RD 192.168.1.2 GigabitEthernet
0/0/0
192.168.1.96/27 Static 60 0 RD 192.168.1.6 GigabitEthernet
0/0/1
192.168.1.128/27 Static 60 0 RD 192.168.1.2 GigabitEthernet
0/0/0
Static 60 0 RD 192.168.1.6 GigabitEthernet
0/0/1
192.168.1.160/27 Static 60 0 RD 192.168.1.6 GigabitEthernet
0/0/1
Static 60 0 RD 192.168.1.2 GigabitEthernet
0/0/0
r2:
0.0.0.0/0 Static 60 0 RD 192.168.1.10 GigabitEthernet
0/0/1
192.168.1.0/30 Direct 0 0 D 192.168.1.2 GigabitEthernet
0/0/0
192.168.1.4/30 Static 60 0 RD 192.168.1.1 GigabitEthernet
0/0/0
192.168.1.8/30 Direct 0 0 D 192.168.1.9 GigabitEthernet
0/0/1
192.168.1.12/30 Static 60 0 RD 192.168.1.10 GigabitEthernet
0/0/1
192.168.1.16/30 Static 60 0 RD 192.168.1.10 GigabitEthernet
0/0/1
192.168.1.20/30 Static 60 0 RD 192.168.1.10 GigabitEthernet
0/0/1
192.168.1.32/27 Static 60 0 RD 192.168.1.1 GigabitEthernet
0/0/0
192.168.1.64/27 Static 60 0 D 0.0.0.0 NULL0
192.168.1.64/28 Direct 0 0 D 192.168.1.65 LoopBack0
192.168.1.80/28 Direct 0 0 D 192.168.1.81 LoopBack1
192.168.1.96/27 Static 60 0 RD 192.168.1.1 GigabitEthernet
0/0/0
Static 60 0 RD 192.168.1.10 GigabitEthernet
0/0/1
192.168.1.128/27 Static 60 0 RD 192.168.1.10 GigabitEthernet
0/0/1
192.168.1.160/27 Static 60 0 RD 192.168.1.10 GigabitEthernet
后边的都类似 - 互相ping检验路由是否正确
- 在r2的g0/0/2口配置动态nat,将局域网IP转化为12.0.0.4-12.0.0.8
- 修改路由优先级
- 在r1上配置telnet,设置用户为yonghu,密码为123456
- 在r5上的g0/0/2口上配置静态nat,将192.168.1.1转化为12.0.0.3
- 检验