实验报告
要求:
1 R6为isp,接口IP地址均为公有地址;该设备只能配置IP地址,之后不能再对其进行其他任何配置;
2 R1-R5为局域网,私有Ip地址192.168.1.0/24,请合理分配;
3 R1,R2,R4各有两个环回地址,R5,R6各有一个环回地址,所有路由器上环回均代表连接用户的接口,
4 R3下的两台Pc通过DHCP自动获取IP地址;
5 少选路最佳,路由表尽量小,避免环路;
6 R1-R5均可以访问R6的环回;
7 R6telnetR5的公有Ip地址时,实际登陆到R1上;
8 R4与R5正常通过1000M链路,故障时通过100m链路;
实验思路
1、将公网IP进行划分,并进行相应的配置
2、对R3进行DHCP配置,下发IP
3、配置静态IP路由以及防止成环
4、对R5进行EasyIP配置,是的公网私网互通
5、对R5进行telnet配置,是的R6成功登录R1
实验过程
1、为R6配置IP
[Huawei]int g0/0/0
[Huawei-GigabitEthernet0/0/0]ip address 12.0.0.2 24
[Huawei-GigabitEthernet0/0/0]display this
[V200R003C00]
#
interface GigabitEthernet0/0/0
ip address 12.0.0.2 255.255.255.0
#
return
2、为R1-5配置IP
首先进行子网划分,从拓扑中看到有六个骨干网段和八个用户网段
子网1:192.168.1.0/27-----192.168.1.000 00000/27
我们将子网1当作骨干网络,然后进行划分
192.168.1.000000 00/30-----192.168.1.0/30
192.168.1.000001 00/30-----192.168.1.4/30
192.168.1.000010 00/30-----192.168.1.8/30
192.168.1.000011 00/30-----192.168.1.12/30
192.168.1.000100 00/30-----192.168.1.16/30
192.168.1.000101 00/30-----192.168.1.20/30
192.168.1.000110 00/30-----192.168.1.24/30(多余的)
192.168.1.000111 00/30-----192.168.1.28/30(多余的)
子网2:192.168.1.32/27-----192.168.1.001 00000/27------R1环回
192.168.1.32/28----1 192.168.1.48/28----2
子网3:192.168.1.64/27-----192.168.1.010 00000/27------R2环回
192.168.1.64/28----1 192.168.1.80/28----2
子网4:192.168.1.96/27-----192.168.1.011 00000/27------R4环回
192.168.1.96/28----1 192.168.1.112/28----2
子网5:192.168.1.128/27-----192.168.1.100 00000/27------R5环回
192.168.1.128/27
子网6:192.168.1.160/27-----192.168.1.101 00000/27------R3民用网段
子网7:192.168.1.192/27-----192.168.1.110 00000/27(多余)
子网8:192.168.1.224/27-----192.168.1.111 00000/27(多余)
其余的子网2-8可作为环回地址进行分配。
R1:
[Huawei]int g0/0/0
[Huawei-GigabitEthernet0/0/0]ip add 192.168.1.1 30
[Huawei-GigabitEthernet0/0/0]int g0/0/1
[Huawei-GigabitEthernet0/0/1]ip add 192.168.1.5 30
R2:
[Huawei]int g0/0/1
[Huawei-GigabitEthernet0/0/1]ip add 192.168.1.9 30
[Huawei-GigabitEthernet0/0/1]int g0/0/0
[Huawei-GigabitEthernet0/0/0]ip add 192.168.1.2 30
R3:
[Huawei]int g0/0/0
[Huawei-GigabitEthernet0/0/0]ip add 192.168.1.6 30
[Huawei-GigabitEthernet0/0/0]int g0/0/1
[Huawei-GigabitEthernet0/0/1]ip add 192.168.1.13 30
[Huawei-GigabitEthernet0/0/1]int g0/0/2
[Huawei-GigabitEthernet0/0/2]ip add 192.168.1.161 27
R4:
[Huawei]int g0/0/0
[Huawei-GigabitEthernet0/0/0]ip add 192.168.1.10 30
[Huawei-GigabitEthernet0/0/0]int g0/0/2
[Huawei-GigabitEthernet0/0/2]ip add 192.168.1.14 30
[Huawei-GigabitEthernet0/0/2]int g0/0/1
[Huawei-GigabitEthernet0/0/1]ip add 192.168.1.17 30
[Huawei]int g4/0/0
[Huawei-GigabitEthernet4/0/0]ip add 192.168.1.21 30
R5:
[Huawei]int g 0/0/0
[Huawei-GigabitEthernet0/0/0]ip add 192.168.1.18 30
[Huawei-GigabitEthernet0/0/0]int g0/0/2
[Huawei-GigabitEthernet0/0/2]ip add 192.168.1.22 30
[Huawei-GigabitEthernet0/0/2]int g0/0/1
[Huawei-GigabitEthernet0/0/1]ip add 12.0.0.1 24
3、为R1、R2、R4、R5、R6配置换回
R1:
[Huawei]int l 0
[Huawei-LoopBack0]ip add 192.168.1.33 28
[Huawei-LoopBack0]int l 1
[Huawei-LoopBack1]ip add 192.168.1.49 28
R2:
[Huawei]int l 0
[Huawei-LoopBack0]ip add 192.168.1.65 28
[Huawei-LoopBack0]int l 1
[Huawei-LoopBack1]ip add 192.168.1.81 28
R4:
[Huawei]int l 0
[Huawei-LoopBack0]ip add 192.168.1.97 28
[Huawei-LoopBack0]int l 1
[Huawei-LoopBack1]ip add 192.168.1.113 28
R5:
[Huawei]int l 0
[Huawei-LoopBack0]ip add 192.168.1.129 28
R6:
[Huawei]int l 0
[Huawei-LoopBack0]ip add 1.1.1.1 24
4、为R3配置DHCP
R3:
[Huawei]dhcp enable
[Huawei]ip pool a
[Huawei-ip-pool-a]network 192.168.1.160 mask 27
[Huawei-ip-pool-a]gateway-list 192.168.1.161
[Huawei-ip-pool-a]dns-list 114.114.114.114
[Huawei-ip-pool-a]int g0/0/2
[Huawei-GigabitEthernet0/0/2]dhcp select global
5、配置静态路由以及防止环路
R1:
[Huawei]ip route-static 192.168.1.8 255.255.255.252 192.168.1.2
[Huawei]ip route-static 192.168.1.12 255.255.255.252 192.168.1.6
[Huawei]ip route-static 192.168.1.16 255.255.255.252 192.168.1.2
[Huawei]ip route-static 192.168.1.20 255.255.255.252 192.168.1.2
[Huawei]ip route-static 192.168.1.64 255.255.255.224 192.168.1.2
[Huawei]ip route-static 192.168.1.96 255.255.255.224 192.168.1.2
[Huawei]ip route-static 192.168.1.128 255.255.255.224 192.168.1.2
[Huawei]ip route-static 192.168.1.160 255.255.255.224 192.168.1.6
[Huawei]ip route-static 0.0.0.0 0 192.168.1.2
[Huawei]ip route-static 0.0.0.0 0 192.168.1.6
[Huawei]ip route-static 192.168.1.32 27 NULL 0
R2:
[Huawei]ip route-static 192.168.1.4 30 192.168.1.1
[Huawei]ip route-static 192.168.1.12 30 192.168.1.10
[Huawei]ip route-static 192.158.1.160 27 192.168.1.1
[Huawei]ip route-static 192.168.1.16 30 192.168.1.10
[Huawei]ip route-static 192.168.1.20 30 192.168.1.10
[Huawei]ip route-static 192.168.1.96 27 192.168.1.10
[Huawei]ip route-static 192.168.1.128 27 192.168.1.10
[Huawei]ip route-static 192.168.1.32 27 192.168.1.1
[Huawei]ip route-static 0.0.0.0 0 192.168.1.10
[Huawei]ip route-static 192.168.1.64 27 null 0
R3:
[Huawei]ip route-static 192.168.1.32 27 192.168.1.5
[Huawei]ip route-static 192.168.1.0 30 192.168.1.5
[Huawei]ip route-static 192.168.1.64 27 192.168.1.5
[Huawei]ip route-static 192.168.1.8 30 192.168.1.14
[Huawei]ip route-static 192.168.1.96 27 192.168.1.14
[Huawei]ip route-static 192.168.1.128 27 192.168.1.14
[Huawei]ip route-static 192.168.1.16 30 192.168.1.14
[Huawei]ip route-static 192.168.1.20 30 192.168.1.14
[Huawei]ip route-static 0.0.0.0 0 192.168.1.14
R4:
ip route-static 0.0.0.0 0.0.0.0 192.168.1.18
ip route-static 0.0.0.0 0.0.0.0 192.168.1.22
ip route-static 192.168.1.0 255.255.255.252 192.168.1.9
ip route-static 192.168.1.4 255.255.255.252 192.168.1.13
ip route-static 192.168.1.32 255.255.255.224 192.168.1.9
ip route-static 192.168.1.64 255.255.255.224 192.168.1.9
ip route-static 192.168.1.128 255.255.255.224 192.168.1.22
ip route-static 192.168.1.128 255.255.255.224 192.168.1.18
ip route-static 192.168.1.160 255.255.255.224 192.168.1.13
[Huawei]ip route-static 192.168.1.96 27 null 0
R5:
[Huawei]ip route-static 192.168.1.0 24 192.168.1.17
[Huawei]ip route-static 192.168.1.0 24 192.168.1.21
[Huawei]ip route-static 0.0.0.0 0 12.0.0.2
[Huawei]ip route-static 192.168.1.128 27 null 0
6、R1-R5均可以访问R6的环回
给R5配置easy IP
R5:
[Huawei]acl 2000
[Huawei-acl-basic-2000]rule 10 permit source 192.168.1.0 0.0.255.255
[Huawei-acl-basic-2000]int g0/0/1
[Huawei-GigabitEthernet0/0/1]nat outbound 2000
7、R6telnetR5的公有Ip地址时,实际登陆到R1上
R1:
[R1]aaa
[R1-aaa]local-user admin privilege level 15 password cipher 123456
[R1-aaa]local-user admin service-type telnet
[R1]user-interface vty 0 4
[R1-ui-vty0-4]authentication-mode aaa
R5:
[R5-GigabitEthernet0/0/1]nat server protocol tcp global current-interface 23 inside 192.168.1.1 23
ssword cipher 123456
[R1-aaa]local-user admin service-type telnet
[R1]user-interface vty 0 4
[R1-ui-vty0-4]authentication-mode aaa
R5:
[R5-GigabitEthernet0/0/1]nat server protocol tcp global current-interface 23 inside 192.168.1.1 23