十三、交换路由综合实验一
![86f9f1ede27d1a78e11c7f11c412be33.png](https://i-blog.csdnimg.cn/blog_migrate/219dfac33cc5f58c4a335f0078245041.jpeg)
组网需求:
1、利用三层交换机实现不同VLAN间通信
2、实现三层交换机和路由器互联互通
3、设置三层交换机DHCP功能
4、路由器上做NAT实现主机上网
5、发布服务器映射,实现外网访问服务器
6、可以远程telnet到设备上
7、三层交换机配置dhcp需在VLAN下选择select dhcp global
操作步骤
路由器的配置
#
aaa
local-user huawei privilege level 3
local-user huawei service-type telnet
local-user huawei password cipher
local-user huawei privilege level 3
local-user huawei service-type telnet
#
user-interface vty 0 4
authentication-mode aaa
#
acl number 2000
rule 5 permit source 192.168.1.0 0.0.0.255
rule 10 permit source 192.168.2.0 0.0.0.255
rule 10 permit source 192.168.3.0 0.0.0.255
rule 15 deny
#
interface GigabitEthernet0/0/0
ip address 10.10.10.1 255.255.255.252
#
interface GigabitEthernet0/0/1
ip address 172.168.1.1 255.255.255.252
nat server protocol tcp global 1.1.1.3 www inside 192.168.3.2 www
nat outbound 2000
#
ip route-static 0.0.0.0 0.0.0.0 1.1.1.2
核心交换机的配置
undo info-center enable
#
vlan batch 2 to 4 100
#
#
dhcp enable
#
ip pool 1
gateway-list 192.168.1.1
network 192.168.1.0 mask 255.255.255.0
dns-list 8.8.8.8
#
ip pool 2
gateway-list 192.168.2.1
network 192.168.2.0 mask 255.255.255.0
excluded-ip-address 192.168.2.10
dns-list 8.8.8.8
#
Aaa
local-user admin password simple huawei
local-user admin privilege level 15
local-user admin service-type telnet
#
interface GigabitEthernet0/0/1
port link-type access
port default vlan 100
#
interface GigabitEthernet0/0/2
port link-type trunk
port trunk allow-pass vlan 2 to 4094
#
interface GigabitEthernet0/0/3
port link-type access
port default vlan 4
#
ip route-static 0.0.0.0 0.0.0.0 10.10.10.2
#
user-interface vty 0 4
authentication-mode aaa
接入交换机配置:
#
undo info-center enable
#
Aaa
local-user admin password simple huawei
local-user admin privilege level 15
local-user admin service-type telnet
#
#
vlan batch 2 to 4
#
interface GigabitEthernet0/0/1
port link-type trunk
port trunk allow-pass vlan 2 to 4094
#
interface GigabitEthernet0/0/2
port link-type access
port default vlan 3
#
interface GigabitEthernet0/0/3
port link-type access
port default vlan 2
#
user-interface vty 0 4
authentication-mode aaa
十四、配置BGP路由协议基本功能
组网需求
某个地区拥有多个AS,AS之间有相互访问的需求,因此需要A