[HCIP]静态路由综合实验

1.实验拓扑如下
在这里插入图片描述
2.实验要求
1)R4为ISP,只能配置IP地址,不能进行其他配置
2)R1-R3为内网,地址192.168.1.0/24 合理分配
3)内网PC通过DHCP获取IP地址
4)内网的pc可以正常访问外网pc
5)R2与R3间浮动静态路由进行备份
6) R4TelnetR3实际登录到R1
7)减少路由条目数量,避免环路
8)R2和R3分别有两个环回地址
3.实验分析
1)先划分IP地址并分配,然后进行DHCP地址分配
2)配置静态路由
(1)尽可能减少路由条目,即对路由进行汇聚
(2)避免环路,即需要在黑洞路由出配置空接口
3)实现浮动静态
4)配置nat,并实现telnet
4.实验过程
1)进行IP地址的划分和配置,并进行DHCP的配置
R1:

[r1-GigabitEthernet0/0/0]dis th
[V200R003C00]
#
interface GigabitEthernet0/0/0
 ip address	192.168.1.16 255.255.255.224 
#

[[r1-GigabitEthernet0/0/1]dis th
[V200R003C00]
#
interface GigabitEthernet0/0/1
 ip address 192.168.1.33 255.255.255.224 
#

R2:

[r2-GigabitEthernet0/0/0]dis th
[V200R003C00]
#
interface GigabitEthernet0/0/0
 ip address 192.168.1.34 255.255.255.224 
#
[r2-GigabitEthernet0/0/1]dis th
[V200R003C00]
#
interface GigabitEthernet0/0/1
 ip address 192.168.1.65 255.255.255.224 
#
[r2-GigabitEthernet0/0/2]dis th
[V200R003C00]
#
interface GigabitEthernet0/0/2
 ip address 192.168.1.97 255.255.255.224 
#
[r2-LoopBack1]ip add 192.168.1.129 27
[r2-LoopBack2]ip add 192.168.1.161 27

R3:

[r3-GigabitEthernet0/0/0]dis th
[V200R003C00]
#
interface GigabitEthernet0/0/0
 ip address 192.168.1.66 255.255.255.224 
#
[r3-GigabitEthernet0/0/1]dis th
[V200R003C00]
#
interface GigabitEthernet0/0/1
 ip address 12.1.1.1 255.255.255.0 
#
[r3-GigabitEthernet0/0/2]dis th
[V200R003C00]
#
interface GigabitEthernet0/0/2
 ip address 192.168.1.98 255.255.255.224 
#
[r3-LoopBack1]ip add 192.168.1.193 27
[r3-LoopBack2]ip add 192.168.1.225 27

R4:

[r4-GigabitEthernet0/0/0]dis th
[V200R003C00]
#
interface GigabitEthernet0/0/0
 ip address 12.1.1.2 255.255.255.0 
#
[r4-GigabitEthernet0/0/1]dis th
[V200R003C00]
#
interface GigabitEthernet0/0/1
 ip address 1.1.1.1 255.255.255.0 
#

R1上的DHCP创建与调用

#
[r1]dis current-configuration 
#
ip pool 1
 gateway-list 192.168.1.16 
 network 192.168.1.0 mask 255.255.255.224 
 dns-list 8.8.8.8 
#

PC1

IPv4 address......................: 192.168.1.30
Subnet mask.......................: 255.255.255.224
Gateway...........................: 192.168.1.16
Physical address..................: 54-89-98-26-59-1A
DNS server........................: 8.8.8.8

PC2

IPv4 address......................: 192.168.1.29
Subnet mask.......................: 255.255.255.224
Gateway...........................: 192.168.1.16
Physical address..................: 54-89-98-1F-5A-CD
DNS server........................: 8.8.8.8

2)配置静态路由及浮动静态
R1到内网其他网段的汇总路由:

[r1]ip route-static 192.168.1.0 24 192.168.1.34

R1的缺省

[r1]ip route-static 0.0.0.0 0 192.168.1.34

R2到192.168.1.0 27网段的路由(左边):

[r2]ip route-static 192.168.1.0 27 192.168.1.33

R2到内网其他网段的汇总路由(右边):

[r2]ip route-static 192.168.1.192 26 192.168.1.66 	
[r2]ip route-static 192.168.1.192 26 192.168.1.98 preference 61

R2的缺省:

[r2]ip route-static 0.0.0.0 0 192.168.1.66
[r2]ip route-static 0.0.0.0 0 192.168.1.98 preference 61

R3到内网其他网段的汇总路由:

[r3]ip route-static 192.168.1.0 24 192.168.1.65	
[r3]ip route-static 192.168.1.0 24 192.168.1.97 preference 61

R3到外网的缺省路由:

[r3]ip route-static 0.0.0.0 0 12.1.1.2

R1、R2、R3的空接口配置:

[r1]ip route-static 192.168.1.0 24 NULL 0
[r2]ip route-static 192.168.1.0 24 NULL 0
[r3]ip route-static 192.168.1.0 24 NULL 0

3)配置nat及telnet
Easy IP

[r3]dis cu
#
interface GigabitEthernet0/0/1
 ip address 12.1.1.1 255.255.255.0 
 nat outbound 2000
#
[r3]dis acl 2000
Basic ACL 2000, 1 rule
Acl's step is 5
 rule 5 permit source 192.168.1.0 0.0.0.255 

端口映射

[r3-GigabitEthernet0/0/1]nat server protocol tcp global current-interface 23 ins
ide 192.168.1.33

配置telnet

[r1]user-interface vty 0 4	
[r1-ui-vty0-4]authentication-mode password 
Please configure the login password (maximum length 16):123
[r1-ui-vty0-4]set authentication password cipher 123
[r1-ui-vty0-4]user privilege level 15

5.测试
PC1ping外网

PC>ping 1.1.1.2

Ping 1.1.1.2: 32 data bytes, Press Ctrl_C to break
Request timeout!
From 1.1.1.2: bytes=32 seq=2 ttl=124 time=93 ms
From 1.1.1.2: bytes=32 seq=3 ttl=124 time=78 ms
From 1.1.1.2: bytes=32 seq=4 ttl=124 time=110 ms
From 1.1.1.2: bytes=32 seq=5 ttl=124 time=94 ms

PC1ping内网

PC>ping 192.168.1.193

Ping 192.168.1.193: 32 data bytes, Press Ctrl_C to break
From 192.168.1.193: bytes=32 seq=1 ttl=253 time=62 ms
From 192.168.1.193: bytes=32 seq=2 ttl=253 time=32 ms
From 192.168.1.193: bytes=32 seq=3 ttl=253 time=31 ms
From 192.168.1.193: bytes=32 seq=4 ttl=253 time=78 ms
From 192.168.1.193: bytes=32 seq=5 ttl=253 time=47 ms

外网telnet内网

<r4>telnet 12.1.1.1
  Press CTRL_] to quit telnet mode
  Trying 12.1.1.1 ...
  Connected to 12.1.1.1 ...

Login authentication


Password:
<r1>

6.实验总结
1)过长的命令记不清楚,不能很好使用问号
2)中间有些配置重复,在内网配置了汇总路由还配置了缺省路由
3)速度过慢

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值