第一配置ip
用dhcp分配ip
写静态路由
写空接口防环 指向r6的路由
r2
ip route-static 0.0.0.0 0.0.0.0 192.168.1.2
ip route-static 0.0.0.0 0.0.0.0 192.168.1.6
ip route-static 192.168.1.32 255.255.255.224 NULL0
r3
ip route-static 0.0.0.0 0.0.0.0 192.168.1.10
ip route-static 192.168.1.64 255.255.255.224 NULL0
r5
ip route-static 0.0.0.0 0.0.0.0 192.168.1.14
r4
ip route-static 0.0.0.0 0.0.0.0 192.168.1.18
ip route-static 0.0.0.0 0.0.0.0 192.168.1.22 preference 70
ip route-static 192.168.1.0 255.255.255.0 NULL0
r6
ip rout 0.0.0.0 0 12.0.0.2
测试全网可达
在边界路由做nat
[r6]acl 2000
[r6-acl-basic-2000]rule per sour 192.168.1.0 0.0.0.255
[r6-acl-basic-2000]q
[r6]int g 0/0/1
[r6-GigabitEthernet0/0/1]nat outbound 2000
[r6-GigabitEthernet0/0/1]q
测试是否可以连接1.1.1.1
r1上开启telnet
[r2]aaa
[r2-aaa]local www pri leve 15 pass cip 123456
Info: Add a new user.
[r2-aaa]local-user www service-type telnet
[r2-aaa]q
[r2]user-int vty 0 4
[r2-ui-vty0-4]aut aaa
[r2-ui-vty0-4]q
r6上端口映射
[r6]int g 0/0/1
[r6-GigabitEthernet0/0/1]nat server pro tcp g curr 23 inside 192.168.1.1
Warning:The port 23 is well-known port. If you continue it may cause function fa
ilure.
Are you sure to continue?[Y/N]:y
[r6-GigabitEthernet0/0/1]
isp登录r2